PT-2025-47198 · Phpgurukul · Phpgurukul Online Shopping Portal

CVE-2024-44662

·

Publicado

2025-11-17

·

Atualizado

2025-11-18

CVSS v3.1

6.5

Média

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions PHPGurukul Online Shopping Portal version 2.0
Description The PHPGurukul Online Shopping Portal version 2.0 is susceptible to SQL Injection. This issue affects the username parameter within the admin page. Exploitation of this flaw could allow an attacker to manipulate database queries, potentially leading to unauthorized access, data modification, or disclosure. The vulnerable parameter is username.
Recommendations Apply input validation and sanitization to the username parameter in the admin page.

Exploit

Correção

SQL injection

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2024-44662

Produtos afetados

Phpgurukul Online Shopping Portal