Kashipara Ecommerce Website 1.0 is vulnerable to SQL Injection via the user_email parameter in user_login.php.
References
| Link | Resource |
|---|---|
| https://github.com/leexsoyoung/CVEs/blob/main/CVE-2024-44653.md | Exploit Third Party Advisory |
| https://www.kashipara.com/project/php/322/ecommerce-website-in-php-with-source-code-download | Product |
Configurations
History
No history.
Information
Published : 2025-11-17 18:15
Updated : 2025-11-19 13:09
NVD link : CVE-2024-44653
Mitre link : CVE-2024-44653
CVE.ORG link : CVE-2024-44653
JSON object : View
Products Affected
kashipara
- ecommerce_website
CWE
CWE-89
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')
