Security Advisory

CVE-2021-41648

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-10-01 13:53:37
Last updated 2024-08-04 03:15:29
Assigner mitre
State PUBLISHED

Description

An un-authenticated SQL Injection exists in PuneethReddyHC online-shopping-system-advanced through the /action.php prId parameter. Using a post request does not sanitize the user input.