CNNVD-202508-3333 Information

CNNVD ID

CNNVD-202508-3333

CVE-2025-51971

  • CNNVD Published: 2025-08-28

Description (Chinese)

PuneethReddyHc Online Shopping System Advanced是印度Puneeth Reddy HC个人开发者的一个开源在线购物系统。 PuneethReddyHc Online Shopping System Advanced 1.0版本存在安全漏洞,该漏洞源于f_name参数未清理用户输入,可能导致反射型跨站脚本攻击。

Description (English)

PunjabReddyHc Online Shoping Systems Advanced is an open-source online shopping system for personal developers of Punjab Reddy HC in India. There is a security loophole in version 1.0 of PunetethReddyHc Online Shoping Systems Advanced, which stems from the uncleaned user input of the f name parameter and may result in a cross-script attack.

Hazard Level

High

Vulnerability Type

其他

Affected Vendor

个人开发者

Published

2025-08-28

Last Modified

2026-02-24

References

https://github.com/jairajparyani/CVE-s/blob/main/CVE-2025-51971%20%E2%80%93%20Reflected%20Cross-Site%20Scripting%20%28XSS%29%20in%20Online%20Shopping%20System https://nvd.nist.gov/vuln/detail/CVE-2025-51971

Share on: