SQL injection vulnerability in Simple PHP Shopping Cart affecting version 0.9. This vulnerability could allow an attacker to retrieve all the information stored in the database by sending a specially crafted SQL query, due to the lack of proper sanitisation of the category_id parameter in the category.php file.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: INCIBE
Published: 2024-05-16T12:07:01.613Z
Updated: 2024-06-18T19:13:43.664Z
Reserved: 2024-05-13T09:34:38.290Z
Link: CVE-2024-4826
JSON object: View
NVD Information
Status : Awaiting Analysis
Published: 2024-05-16T12:15:14.330
Modified: 2024-05-16T13:15:48.163
Link: CVE-2024-4826
JSON object: View
Redhat Information
No data.
CWE