online-shopping-system-advanced_project Vulnerabilities and Affected Products
Vulnerabilities associated with online-shopping-system-advanced.
Products
Clear product- online-shopping-system-advanced1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2021-41649CRITICAL | online-shopping-system-advanced_project online-shopping-system-advanced Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')An un-authenticated SQL Injection exists in PuneethReddyHC online-shopping-system-advanced through the /homeaction.php cat_id parameter. Using a post request does not sanitize the user input. | CVSS9.8v3.1 | EPSS51.8% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei template | STIX |