High severity7.3NVD Advisory· Published Aug 22, 2024· Updated Jun 17, 2026
CVE-2024-8086
CVE-2024-8086
Description
A vulnerability has been found in SourceCodester E-Commerce System 1.0 and classified as critical. This vulnerability affects unknown code of the file /ecommerce/admin/login.php of the component Admin Login. The manipulation of the argument user_email leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Range: = 1.0
- SourceCodester/E-Commerce Systemv5Range: 1.0
Patches
Vulnerability mechanics
References
5- github.com/0xffaaa/cve/blob/main/ecommerce-Universal%20password%20bypasses%20login%20verification.mdnvdExploit
- vuldb.comnvdThird Party AdvisoryVDB Entry
- vuldb.comnvdThird Party AdvisoryVDB Entry
- vuldb.comnvdPermissions Required
- www.sourcecodester.comnvdProduct
News mentions
0No linked articles in our index yet.