Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Online Shopping Portal — Vulnerabilities & Security Advisories 29

All 29 CVE vulnerabilities found in Online Shopping Portal, with AI-generated Chinese analysis, references, and POCs.

This page documents common software weaknesses associated with the Online Shopping Portal product and its third-party vendors. It aggregates data related to web application vulnerabilities, focusing on risks inherent to e-commerce architectures, payment processing systems, and user data handling mechanisms. The repository collects vulnerability reports and advisory notices spanning from 2018 through 2024, ensuring a comprehensive historical perspective on security incidents affecting this commercial platform. Here, you can track a vendor's advisories to stay informed about patched flaws and emerging threats. You may also understand a specific weakness class by analyzing its manifestation across different modules within the portal, such as authentication bypasses or injection attacks. Additionally, the page allows you to look up a product's vulnerability history, providing context on how security postures have evolved over time. This structured approach helps security professionals and developers identify patterns in defect types and prioritize remediation efforts based on actual incident data rather than theoretical risks. By centralizing these details, the resource supports proactive risk management and informed decision-making for teams maintaining the integrity of online shopping infrastructure. Users can filter entries by severity, release date, or component to isolate relevant information efficiently. The content is strictly technical, avoiding speculative commentary or promotional language, to ensure objective analysis of each reported flaw. This clarity aids in accurate impact assessment and effective mitigation planning for stakeholders involved in the development and operation of the platform.

Vendor: PHPGurukul

CVE ID Title CVSS Severity Published
CVE-2025-5079 PHPGurukul/Campcodes Online Shopping Portal updateorder.php sql injection CWE-89 7.3 High 2025-05-22
CVE-2025-5078 PHPGurukul/Campcodes Online Shopping Portal subcategory.php sql injection CWE-89 7.3 High 2025-05-22
CVE-2025-5077 Campcodes Online Shopping Portal edit-subcategory.php sql injection CWE-89 7.3 High 2025-05-22
CVE-2025-5059 Campcodes Online Shopping Portal edit-subcategory.php unrestricted upload CWE-434 4.7 Medium 2025-05-21
CVE-2025-5057 Campcodes Online Shopping Portal insert-product.php sql injection CWE-89 7.3 High 2025-05-21
CVE-2025-5056 Campcodes Online Shopping Portal edit-products.php sql injection CWE-89 7.3 High 2025-05-21
CVE-2025-5032 Campcodes Online Shopping Portal edit-category.php sql injection CWE-89 7.3 High 2025-05-21
CVE-2025-5006 Campcodes Online Shopping Portal category.php sql injection CWE-89 7.3 High 2025-05-20
CVE-2025-4930 Campcodes Online Shopping Portal my-cart.php sql injection CWE-89 7.3 High 2025-05-19
CVE-2025-4929 Campcodes Online Shopping Portal my-account.php sql injection CWE-89 7.3 High 2025-05-19
CVE-2025-4875 Campcodes Online Shopping Portal forgot-password.php sql injection CWE-89 7.3 High 2025-05-18
CVE-2025-1855 PHPGurukul Online Shopping Portal product-details.php sql injection CWE-89 6.3 Medium 2025-03-03
CVE-2025-1578 PHPGurukul/Campcodes Online Shopping Portal search-result.php sql injection CWE-89 6.3 Medium 2025-02-23
CVE-2024-10768 PHPGurukul Online Shopping Portal two_tables.php cross site scripting CWE-79 3.5 Low 2024-11-04
CVE-2024-10757 PHPGurukul Online Shopping Portal js_data.php cross site scripting CWE-79 3.5 Low 2024-11-04
CVE-2024-10756 PHPGurukul Online Shopping Portal html_table.php cross site scripting CWE-79 3.5 Low 2024-11-04
CVE-2024-10755 PHPGurukul Online Shopping Portal empty_table.php cross site scripting CWE-79 3.5 Low 2024-11-04
CVE-2024-10754 PHPGurukul Online Shopping Portal dymanic_table.php cross site scripting CWE-79 3.5 Low 2024-11-04
CVE-2024-10753 PHPGurukul Online Shopping Portal dom_data_two_headers.php cross site scripting CWE-79 3.5 Low 2024-11-04
CVE-2024-10747 PHPGurukul Online Shopping Portal dom_data_th.php cross site scripting CWE-79 3.5 Low 2024-11-04
CVE-2024-10746 PHPGurukul Online Shopping Portal dom_data.php cross site scripting CWE-79 3.5 Low 2024-11-03
CVE-2024-10745 PHPGurukul Online Shopping Portal deferred_table.php cross site scripting CWE-79 3.5 Low 2024-11-03
CVE-2024-10744 PHPGurukul Online Shopping Portal complex_header_2.php cross site scripting CWE-79 3.5 Low 2024-11-03
CVE-2024-10743 PHPGurukul Online Shopping Portal editable_ajax.php cross site scripting CWE-79 3.5 Low 2024-11-03
CVE-2024-9794 Codezips Online Shopping Portal update-image1.php unrestricted upload CWE-434 6.3 Medium 2024-10-10
CVE-2024-9460 Codezips Online Shopping Portal index.php sql injection CWE-89 7.3 High 2024-10-03
CVE-2024-9326 PHPGurukul Online Shopping Portal Admin Panel index.php sql injection CWE-89 7.3 High 2024-09-29
CVE-2024-9038 Codezips Online Shopping Portal insert-product.php unrestricted upload CWE-434 4.3 Medium 2024-09-20
CVE-2023-3605 PHPGurukul Online Shopping Portal Registration Page excessive authentication CWE-307 6.5 Medium 2023-07-10

All 29 known CVE vulnerabilities affecting Online Shopping Portal with full Chinese analysis, references, and POCs where available.