Home
Description
SQL Injection vulnerability exists in Bhabishya-123 E-commerce 1.0, specifically within the signup.inc.php endpoint. The application directly incorporates unsanitized user inputs into SQL queries, allowing unauthenticated attackers to bypass authentication and gain full access.
References
github.com/tansique-17/CVE-2025-61455
Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.