CVE Report: CVE-2024-44651 Basic Information CVE ID: CVE-2024-44651 Product: Ecommerce Website project in PHP Vendor: kashipara Affected Version: V1.0 Vulnerability Type: SQL injection Description The Kashipara Ecommerce Website 1.0 is vulnerable to SQL Injection via the parameter in . Proof of Concept (PoC) The attacker can exploit the vulnerability by injecting SQL queries through vulnerable parameters. The attacker also uses a time-based payload (e.g., ) to prevent the server from responding to benign users. References Ecommerce website in PHP with source code download