Medium severity4.3NVD Advisory· Published Dec 22, 2021· Updated Jun 17, 2026
CVE-2021-43158
CVE-2021-43158
Description
In ProjectWorlds Online Shopping System PHP 1.0, a CSRF vulnerability in cart_remove.php allows a remote attacker to remove any product in the customer's cart.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:projectworlds:online_shopping_system:1.0:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:projectworlds:online_shopping_system:1.0:*:*:*:*:*:*:*
- (no CPE)range: = 1.0
- ProjectWorlds/Online Shopping System PHPdescription
Patches
Vulnerability mechanics
References
2- github.com/projectworldsofficial/online-shopping-webvsite-in-php/issues/2nvdExploitIssue TrackingThird Party Advisory
- projectworlds.in/free-projects/php-projects/free-download-online-shopping-system/nvdProduct
News mentions
0No linked articles in our index yet.