Description
A vulnerability was found in code-projects Simple Shopping Cart 1.0. This vulnerability affects unknown code of the file /Customers/settings.php. Performing manipulation of the argument user_id results in sql injection. Remote exploitation of the attack is possible. The exploit has been made public and could be used.
Problem types
Product status
Timeline
| 2025-12-08: | Advisory disclosed |
| 2025-12-08: | VulDB entry created |
| 2025-12-08: | VulDB entry last update |
Credits
zzb1 (VulDB User)
References
vuldb.com/?id.334756 (VDB-334756 | code-projects Simple Shopping Cart settings.php sql injection)
vuldb.com/?ctiid.334756 (VDB-334756 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/?submit.702461 (Submit #702461 | code-projects Simple Shopping Cart V1.0 SQL injection)
github.com/zzb1388/cve/issues/90
code-projects.org/