PT-2025-35086 · Unknown · Puneethreddyhc Online-Shopping-System-Advanced

·

CVE-2025-51969

·

Published

2025-08-28

·

Updated

2025-08-28

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions PuneethReddyHC Online Shopping System Advanced version 1.0
Description A SQL Injection flaw exists in the product.php page. The product id GET parameter is not properly validated before being included in a SQL statement.
Recommendations Ensure proper validation of the product id GET parameter before using it in SQL queries.

Exploit

Fix

SQL injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2025-51969

Affected Products

Puneethreddyhc Online-Shopping-System-Advanced