CNNVD-202510-1192 Information

CNNVD ID

CNNVD-202510-1192

CVE-2025-11430

  • CNNVD Published: 2025-10-08

Description (Chinese)

SourceCodester Simple E-Commerce Bookstore是SourceCodester开源的一个简易电子商务书店。 SourceCodester Simple E-Commerce Bookstore 1.0版本存在安全漏洞,该漏洞源于对文件/cart.php中参数remove的错误操作,可能导致SQL注入攻击。

Description (English)

SourceCodester Simple E-Commerce Bookstore is a simple e-commerce bookshop, which is an open-source source of SourceCodester. The security loophole in version 1.0 of SourceCodester Simple E-Commerce Bookstore stems from a mishandling of the argument remove in file/cart.php, which could lead to an attack on SQL.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

SourceCodester

Published

2025-10-08

Last Modified

2026-02-24

References

https://github.com/DrNbnonono/CVE/issues/2 https://vuldb.com/?ctiid.327367 https://vuldb.com/?id.327367 https://vuldb.com/?submit.666275 https://www.sourcecodester.com/

Share on: