Kashipara Online Furniture Shopping Ecommerce Website prodInfo.php sql injection
Published Apr 23, 2024
8.8
HIGHCVSS 3.1
EPSS 0.66%
Description
A vulnerability was found in Kashipara Online Furniture Shopping Ecommerce Website 1.0 and classified as critical. This issue affects some unknown processing of the file prodInfo.php. The manipulation of the argument prodId leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-261797 was assigned to this vulnerability.
Affected products
-
- Version 1.0StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| Kashipara | Online Furniture Shopping Ecommerce Website | n/a |
|
- 1.0
-
- Version 1.0StatusaffectedConstraints-
- Version
Default status is the baseline for the product, each version can override it (e.g. patched versions marked unaffected).
| Vendor | Product | Default status | Versions | ||||||
|---|---|---|---|---|---|---|---|---|---|
| Kashipara | Online Furniture Shopping Ecommerce Website | n/a |
|
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (4)
- https://github.com/E1CHO/cve_hub/blob/main/Online%20Furniture%20Shopping%20Ecommerce%20Website/Online%20Furniture%20Shopping%20Ecommerce%20Website%20Project%20-%20vuln%203.pdf exploitThird Party Advisory
- https://vuldb.com/?ctiid.261797 signaturepermissions-requiredThird Party Advisory
- https://vuldb.com/?id.261797 vdb-entrytechnical-descriptionThird Party Advisory
- https://vuldb.com/?submit.321445 third-party-advisoryExploitThird Party Advisory
| Link | Providers | Tags |
|---|---|---|
| https://github.com/E1CHO/cve_hub/blob/main/Online%20Furniture%20Shopping%20Ecommerce%20Website/Online%20Furniture%20Shopping%20Ecommerce%20Website%20Project%20-%20vuln%203.pdf | exploitThird Party Advisory | |
| https://vuldb.com/?ctiid.261797 | signaturepermissions-requiredThird Party Advisory | |
| https://vuldb.com/?id.261797 | vdb-entrytechnical-descriptionThird Party Advisory | |
| https://vuldb.com/?submit.321445 | third-party-advisoryExploitThird Party Advisory |
Change history (0)
No recorded changes yet.