Description
A vulnerability was found in SourceCodester E-Commerce Site 1.0. This vulnerability affects unknown code of the file /products.php. The manipulation of the argument Search results in sql injection. The attack can be executed remotely. The exploit has been made public and could be used.
Problem types
Product status
Timeline
| 2026-03-23: | Advisory disclosed |
| 2026-03-23: | VulDB entry created |
| 2026-03-23: | VulDB entry last update |
Credits
WeQi (VulDB User)
References
vuldb.com/?id.352477 (VDB-352477 | SourceCodester E-Commerce Site products.php sql injection)
vuldb.com/?ctiid.352477 (VDB-352477 | CTI Indicators (IOB, IOC, TTP, IOA))
vuldb.com/?submit.775689 (Submit #775689 | sourcecodester e-Commerce Site Using PHP/MySQL V1.0 SQL Injection)
github.com/WHOAMI-xiaoyu/CVE/blob/main/CVE_4.md
www.sourcecodester.com/