CVE-2024-40498
CRITICALPuneethReddyHC Online Shopping <1.0 - SQL Injection
Title source: llmDescription
SQL Injection vulnerability in PuneethReddyHC Online Shopping sysstem advanced v.1.0 allows an attacker to execute arbitrary code via the register.php
Exploits (1)
References (1)
Scores
CVSS v3
9.8
EPSS
0.1178
EPSS Percentile
93.7%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Details
CWE
CWE-89
Status
published
Published
Aug 05, 2024
Tracked Since
Feb 18, 2026