CVE-2021-41649
01.10.2021, 14:15
An un-authenticated SQL Injection exists in PuneethReddyHC online-shopping-system-advanced through the /homeaction.php cat_id parameter. Using a post request does not sanitize the user input.
Vendor | Product | Version |
---|---|---|
online-shopping-system-advanced_project | online-shopping-system-advanced | - |
𝑥
= Vulnerable software versions
References