CNNVD-202506-2917 Information

CNNVD ID

CNNVD-202506-2917

CVE-2025-6484

  • CNNVD Published: 2025-06-22

Description (Chinese)

Code-Projects Online Shopping Store是Code-Projects开源的一个网上商店。 Code-Projects Online Shopping Store 1.0版本存在安全漏洞,该漏洞源于对文件/action.php中参数cat_id/brand_id/keyword/proId/pid的错误操作导致SQL注入。

Description (English)

Code-Projects Online Shoping Store is an online shop open to Code-Projects. A security loophole exists in version 1.0 of Code-Projects Online Shoping Store, which results from an error in the operation of the parameter cat id/brand id/keyword/proId/pid in the document/action.php, resulting in the injection of SQL.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

Code-Projects

Published

2025-06-22

Last Modified

2026-02-24

References

https://access.redhat.com/security/cve/cve-2025-6484 https://nvd.nist.gov/vuln/detail/CVE-2025-6484

Share on: