Description
A vulnerability was determined in SourceCodester Online Shop Project 1.0. Impacted is an unknown function of the file /shop/register.php. This manipulation of the argument f_name causes cross site scripting. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized.
Problem types
Product status
Timeline
| 2025-11-19: | Advisory disclosed |
| 2025-11-19: | VulDB entry created |
| 2025-11-19: | VulDB entry last update |
Credits
xiaojuzirr (VulDB User)
References
vuldb.com/?id.333020 (VDB-333020 | SourceCodester Online Shop Project register.php cross site scripting)
vuldb.com/?ctiid.333020 (VDB-333020 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/?submit.694780 (Submit #694780 | SourceCodester Online Shop Project V1.0 Cross Site Scripting)
github.com/xiaojuzirr/cve/issues/5
www.sourcecodester.com/