Code-Projects Online Shopping Store是Code-Projects开源的一个网上商店。 Code-Projects Online Shopping Store 1.0版本存在安全漏洞,该漏洞源于对文件/action.php中参数cat_id/brand_id/keyword/proId/pid的错误操作导致SQL注入。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| code-projects | Online Shopping Store | 1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2025-6469 | 7.3 HIGH | code-projects Online Bidding System details.php sql injection |
| CVE-2025-6448 | 7.3 HIGH | code-projects Simple Online Hotel Reservation System delete_room.php sql injection |
| CVE-2025-6449 | 7.3 HIGH | code-projects Simple Online Hotel Reservation System checkout_query.php sql injection |
| CVE-2025-6450 | 7.3 HIGH | code-projects Simple Online Hotel Reservation System confirm_reserve.php sql injection |
| CVE-2025-6451 | 7.3 HIGH | code-projects Simple Online Hotel Reservation System delete_pending.php sql injection |
| CVE-2025-6455 | 7.3 HIGH | code-projects Online Hotel Reservation System messageexec.php sql injection |
| CVE-2025-6456 | 7.3 HIGH | code-projects Online Hotel Reservation System order.php sql injection |
| CVE-2025-6457 | 7.3 HIGH | code-projects Online Hotel Reservation System demo.php sql injection |
| CVE-2025-6458 | 7.3 HIGH | code-projects Online Hotel Reservation System execedituser.php sql injection |
| CVE-2025-6467 | 7.3 HIGH | code-projects Online Bidding System login.php sql injection |
| CVE-2025-6468 | 7.3 HIGH | code-projects Online Bidding System bidnow.php sql injection |
| CVE-2025-6483 | 7.3 HIGH | code-projects Simple Pizza Ordering System edituser.php sql injection |
| CVE-2025-6470 | 7.3 HIGH | code-projects Online Bidding System bidlog.php sql injection |
| CVE-2025-6471 | 7.3 HIGH | code-projects Online Bidding System administrator sql injection |
| CVE-2025-6472 | 7.3 HIGH | code-projects Online Bidding System showprod.php sql injection |
| CVE-2025-6474 | 7.3 HIGH | code-projects Inventory Management System changeUsername.php sql injection |
| CVE-2025-6479 | 7.3 HIGH | code-projects Simple Pizza Ordering System salesreport.php sql injection |
| CVE-2025-6480 | 7.3 HIGH | code-projects Simple Pizza Ordering System addcatexec.php sql injection |
| CVE-2025-6481 | 7.3 HIGH | code-projects Simple Pizza Ordering System update.php sql injection |
| CVE-2025-6482 | 7.3 HIGH | code-projects Simple Pizza Ordering System edituser-exec.php sql injection |
Showing top 20 of 22 CVEs. View all on vendor page → →
No comments yet