An unauthenticated SQL injection vulnerability exists in PuneethReddyHC Online Shopping through the /action.php prId parameter. Using a post request does not sanitize the user input.
id: CVE-2021-41648
info:
name: PuneethReddyHC action.php SQL Injection
author: daffainfo
seve
...