Alphaware Simple E-Commerce System是razormist个人开发者的一个电子商务系统。 Alphaware Simple E-Commerce System 1.0版本存在SQL注入漏洞,该漏洞源于对参数firstname/mi/lastname的错误操作会导致sql注入。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| SourceCodester | Alphaware Simple E-Commerce System | 1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-1506 | 5.6 MEDIUM | SourceCodester E-Commerce System login.php sql injection |
| CVE-2023-1504 | 5.6 MEDIUM | SourceCodester Alphaware Simple E-Commerce System sql injection |
| CVE-2023-1503 | 5.6 MEDIUM | SourceCodester Alphaware Simple E-Commerce System admin_index.php sql injection |
| CVE-2023-1505 | 5.0 MEDIUM | SourceCodester E-Commerce System setDiscount.php sql injection |
| CVE-2023-1507 | 3.5 LOW | SourceCodester E-Commerce System Category Name controller.php cross site scripting |
No comments yet