Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-95928
HistoryJul 24, 2021 - 12:00 a.m.

SourceCodester E-Commerce Website SQL Injection Vulnerability

2021-07-2400:00:00
China National Vulnerability Database
www.cnvd.org.cn
8
sourcecodester e-commerce sqlinjection vulnerability validation remoteattackers executesqlstatements.

EPSS

0.002

Percentile

54.5%

SourceCodester E-Commerce Website is an application. SourceCodester E-Commerce Website version V1.0 is vulnerable to SQL injection. The vulnerability stems from a lack of validation of externally entered SQL statements in the update parameter of empViewUpdate.php, which can be exploited by remote attackers to execute arbitrary SQL statements.

EPSS

0.002

Percentile

54.5%

Related for CNVD-2021-95928