Alphaware Simple E-Commerce System是razormist个人开发者的一个电子商务系统。 Alphaware Simple E-Commerce System 1.0版本存在SQL注入漏洞,该漏洞源于对参数username/password的错误操作导致sql注入。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| SourceCodester | Alphaware Simple E-Commerce System | 1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2023-1506 | 5.6 MEDIUM | SourceCodester E-Commerce System login.php sql injection |
| CVE-2023-1504 | 5.6 MEDIUM | SourceCodester Alphaware Simple E-Commerce System sql injection |
| CVE-2023-1502 | 5.6 MEDIUM | SourceCodester Alphaware Simple E-Commerce System edit_customer.php sql injection |
| CVE-2023-1505 | 5.0 MEDIUM | SourceCodester E-Commerce System setDiscount.php sql injection |
| CVE-2023-1507 | 3.5 LOW | SourceCodester E-Commerce System Category Name controller.php cross site scripting |
No comments yet