SourceCodester SUP Online Shopping是SourceCodester开源的一个网上购物系统。 SourceCodester SUP Online Shopping 1.0版本存在注入漏洞,该漏洞源于文件wishlist.php中参数delwlistid操作导致SQL注入,可能远程攻击。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| SourceCodester | SUP Online Shopping | 1.0 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| SourceCodester | SUP Online Shopping | 1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-8126 | 7.3 HIGH | SourceCodester Comment System post_comment.php sql injection |
| CVE-2026-8128 | 7.3 HIGH | SourceCodester SUP Online Shopping viewmsg.php sql injection |
| CVE-2026-8130 | 7.3 HIGH | SourceCodester SUP Online Shopping message.php sql injection |
| CVE-2026-8131 | 7.3 HIGH | SourceCodester SUP Online Shopping replymsg.php sql injection |
| CVE-2026-8136 | 2.4 LOW | SourceCodester Pharmacy Sales and Inventory System index.php users cross site scripting |
No comments yet