CNNVD-202508-3332 Information

CNNVD ID

CNNVD-202508-3332

CVE-2025-51972

  • CNNVD Published: 2025-08-28

Description (Chinese)

PuneethReddyHc Online Shopping System Advanced是印度Puneeth Reddy HC个人开发者的一个开源在线购物系统。 PuneethReddyHC Online Shopping System Advanced 1.0版本存在安全漏洞,该漏洞源于keyword参数未清理用户输入,可能导致SQL注入攻击。

Description (English)

PunjabReddyHc Online Shoping Systems Advanced is an open-source online shopping system for personal developers of Punjab Reddy HC in India. There is a security loophole in version 1.0 of PunetethReddyHC Online Shoping Systems Advanced, which originates from the uncleaned user input of the Keyword parameter, which could lead to an attack by SQL.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

个人开发者

Published

2025-08-28

Last Modified

2026-02-24

References

https://github.com/jairajparyani/CVE-s/blob/main/CVE-2025-51972%20%E2%80%93%20SQL%20Injection%20in%20Online%20Shopping%20System https://nvd.nist.gov/vuln/detail/CVE-2025-51972

Share on: