Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
SQL Injection vulnerability in the orderGoodsDelivery() function in Niushop B2B2C V5 allows attackers to run arbitrary SQL commands via the order_id parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
niushop b2b2c SQL注入漏洞
Vulnerability Description
Niushop niushop b2b2c是中国牛酷信息科技(Niushop)公司的一套PHP的开源电商多商户系统。 niushop b2b2c V5版本存在SQL注入漏洞,该漏洞源于orderGoodsDelivery()函数中存在 SQL 注入,允许攻击者通过order_id参数运行任意SQL命令。
CVSS Information
N/A
Vulnerability Type
N/A