Medium severity6.3NVD Advisory· Published Jul 4, 2023· Updated Jun 17, 2026
CVE-2023-3502
CVE-2023-3502
Description
A vulnerability, which was classified as critical, was found in SourceCodester Shopping Website 1.0. Affected is an unknown function of the file search-result.php. The manipulation of the argument product leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-232950 is the identifier assigned to this vulnerability.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:sanchitkmr:shopping_website:1.0:*:*:*:*:*:*:*
= 1.0+ 1 more
- (no CPE)range: = 1.0
- (no CPE)range: 1.0
Patches
Vulnerability mechanics
References
3- github.com/MoeMion233/VulHub/blob/main/Shopping%20Website%20(E-Commerce)%20search-result.php%20has%20Sqlinjection.pdfnvdExploit
- vuldb.comnvdPermissions RequiredThird Party AdvisoryVDB Entry
- vuldb.comnvdPermissions RequiredThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.