CVE-2020-25905

An SQL Injection vulnerabilty exists in Sourcecodester Mobile Shop System in PHP MySQL 1.0 via the email parameter in (1) login.php or (2) LoginAsAdmin.php.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:mobile_shop_system_project:mobile_shop_system:1.0:*:*:*:*:*:*:*

Information

Published : 2022-01-28 08:15

Updated : 2023-02-27 08:15


NVD link : CVE-2020-25905

Mitre link : CVE-2020-25905


JSON object : View

CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')

Advertisement

dedicated server usa

Products Affected

mobile_shop_system_project

  • mobile_shop_system