VYPR

E-Commerce System

by Sourcecodester

CVEs (8)

  • CVE-2024-8086HigAug 22, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability has been found in SourceCodester E-Commerce System 1.0 and classified as critical. This vulnerability affects unknown code of the file /ecommerce/admin/login.php of the component Admin Login. The manipulation of the argument user_email leads to sql injection. The…

  • CVE-2024-8089MedAug 23, 2024
    risk 0.41cvss 6.3epss 0.01

    A vulnerability was found in SourceCodester E-Commerce System 1.0. It has been classified as critical. Affected is an unknown function of the file /ecommerce/admin/products/controller.php. The manipulation of the argument photo leads to unrestricted upload. It is possible to…

  • CVE-2024-8087MedAug 22, 2024
    risk 0.41cvss 6.3epss 0.01

    A vulnerability was found in SourceCodester E-Commerce System 1.0 and classified as critical. This issue affects some unknown processing of the file /ecommerce/popup_Item.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The…

  • CVE-2023-1557MedMar 22, 2023
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was found in SourceCodester E-Commerce System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /ecommerce/admin/user/controller.php?action=edit of the component Username Handler. The manipulation of the argument…

  • CVE-2023-1506MedMar 20, 2023
    risk 0.36cvss 5.6epss 0.01

    A vulnerability, which was classified as critical, was found in SourceCodester E-Commerce System 1.0. Affected is an unknown function of the file login.php. The manipulation of the argument U_USERNAME leads to sql injection. It is possible to launch the attack remotely. The…

  • CVE-2023-1505MedMar 20, 2023
    risk 0.33cvss 5.0epss 0.01

    A vulnerability, which was classified as critical, has been found in SourceCodester E-Commerce System 1.0. This issue affects some unknown processing of the file /ecommerce/admin/settings/setDiscount.php. The manipulation of the argument id with the input 201737 AND (SELECT 8973…

  • CVE-2023-1569LowMar 22, 2023
    risk 0.23cvss 3.5epss 0.00

    A vulnerability classified as problematic was found in SourceCodester E-Commerce System 1.0. Affected by this vulnerability is an unknown functionality of the file admin/user/controller.php?action=edit. The manipulation of the argument U_NAME with the input…

  • CVE-2023-1507LowMar 20, 2023
    risk 0.23cvss 3.5epss 0.00

    A vulnerability has been found in SourceCodester E-Commerce System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /ecommerce/admin/category/controller.php of the component Category Name Handler. The manipulation of the…