Php-multivendor-ecommerce-project
11 CVEs tracked since 2017. Since Dec 2017, none of them reached CISA KEV.
Php-multivendor-ecommerce-project CVEs per month
| Month | CVEs | In CISA KEV |
|---|---|---|
| 2017-12 | 11 | 0 |
Products
The products that kept showing up in Php-multivendor-ecommerce-project's monthly top three, with their CVEs summed over those months.
Latest CVEs
The 11 most recently published vulnerabilities affecting Php-multivendor-ecommerce-project.
- CVE-2017-17952PHP Scripts Mall PHP Multivendor Ecommerce has a predicable registration URL, which makes it easier for remote attackers to register with an invalid or spoofed e-mail address.8.6
- CVE-2017-17951PHP Scripts Mall PHP Multivendor Ecommerce has SQL Injection via the shopping-cart.php cusid parameter.9.8
- CVE-2017-17956PHP Scripts Mall PHP Multivendor Ecommerce has XSS via the admin/sellerupd.php companyname parameter.6.1
- CVE-2017-17955PHP Scripts Mall PHP Multivendor Ecommerce has XSS via the shopping-cart.php cusid parameter.6.1
- CVE-2017-17954PHP Scripts Mall PHP Multivendor Ecommerce has XSS via the seller-view.php usid parameter.6.1
- CVE-2017-17958PHP Scripts Mall PHP Multivendor Ecommerce has XSS via the my_wishlist.php fid parameter.6.1
- CVE-2017-17957PHP Scripts Mall PHP Multivendor Ecommerce has SQL Injection via the my_wishlist.php fid parameter.9.8
- CVE-2017-17953PHP Scripts Mall PHP Multivendor Ecommerce has XSS via the category.php chid1 parameter.6.1
- CVE-2017-17960PHP Scripts Mall PHP Multivendor Ecommerce has CSRF via admin/sellerupd.php.8.8
- CVE-2017-17959PHP Scripts Mall PHP Multivendor Ecommerce has SQL Injection via the seller-view.php usid parameter.9.8
- CVE-2017-17624PHP Multivendor Ecommerce 1.0 has SQL Injection via the single_detail.php sid parameter, or the category.php searchcat or chid1 parameter.9.8
The record
- Peak rank
- #26 in Dec 2017
- Busiest month shown
- Dec 2017, 11 CVEs
- Months with a KEV entry
- 0 since Dec 2017
- Monthly snapshots
- 1 since 2017