CNNVD-202508-3333 Information
CNNVD ID
CNNVD-202508-3333
Related CVE
- CNNVD Published: 2025-08-28
Description (Chinese)
PuneethReddyHc Online Shopping System Advanced是印度Puneeth Reddy HC个人开发者的一个开源在线购物系统。 PuneethReddyHc Online Shopping System Advanced 1.0版本存在安全漏洞,该漏洞源于f_name参数未清理用户输入,可能导致反射型跨站脚本攻击。
Description (English)
PunjabReddyHc Online Shoping Systems Advanced is an open-source online shopping system for personal developers of Punjab Reddy HC in India. There is a security loophole in version 1.0 of PunetethReddyHc Online Shoping Systems Advanced, which stems from the uncleaned user input of the f name parameter and may result in a cross-script attack.
Hazard Level
High
Vulnerability Type
其他
Affected Vendor
个人开发者
Published
2025-08-28
Last Modified
2026-02-24
References
https://github.com/jairajparyani/CVE-s/blob/main/CVE-2025-51971%20%E2%80%93%20Reflected%20Cross-Site%20Scripting%20%28XSS%29%20in%20Online%20Shopping%20System https://nvd.nist.gov/vuln/detail/CVE-2025-51971
Share on: