← Voltar à pesquisa de CVEs

CVE-2026-5583

PHPGurukul Online Shopping Portal

Descrição

A security vulnerability has been detected in PHPGurukul Online Shopping Portal Project 2.1. This affects an unknown part of the file /my-profile.php of the component Parameter Handler. The manipulation of the argument fullname leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed publicly and may be used.

CVSS 6.3EPSS 0.246%Risco 0.64
Ver fonte
Publicação
2026-04-05 17:16:57
Versões afetadas
==2.1
Tipo
Installed app
Última alteração
2026-07-24 20:10:00
Vetor
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L