A vulnerability was found in Codezips E-Commerce Website 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /login.php. The manipulation of the argument email leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
Metrics
Affected Vendors & Products
References
History
Sat, 21 Dec 2024 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in Codezips E-Commerce Website 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /login.php. The manipulation of the argument email leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. | |
Title | Codezips E-Commerce Website login.php sql injection | |
Weaknesses | CWE-74 CWE-89 |
|
References |
| |
Metrics |
cvssV2_0
|
MITRE
Status: PUBLISHED
Assigner: VulDB
Published: 2024-12-21T14:00:09.828Z
Updated: 2024-12-21T14:00:09.828Z
Reserved: 2024-12-20T22:35:28.620Z
Link: CVE-2024-12884
Vulnrichment
No data.
NVD
Status : Received
Published: 2024-12-21T14:15:21.063
Modified: 2024-12-21T14:15:21.063
Link: CVE-2024-12884
Redhat
No data.