Critical severity9.1NVD Advisory· Published Oct 1, 2021· Updated Jun 17, 2026
CVE-2021-41647
CVE-2021-41647
Description
An un-authenticated error-based and time-based blind SQL injection vulnerability exists in Kaushik Jadhav Online Food Ordering Web App 1.0. An attacker can exploit the vulnerable "username" parameter in login.php and retrieve sensitive database information, as well as add an administrative user.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3(expand)+ 1 more
- (no CPE)
- (no CPE)range: 1.0
- cpe:2.3:a:online_food_ordering_web_app_project:online_food_ordering_web_app:1.0:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
2- packetstormsecurity.com/files/164422/Online-Food-Ordering-Web-App-SQL-Injection.htmlnvdExploitThird Party Advisory
- github.com/nu11secur1ty/CVE-mitre/tree/main/CVE-2021-41647nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.