Vulnerability Description
Ecommerce-project-with-php-and-mysqli-Fruits-Bazar 1.0 is vulnerable to SQL Injection in \search_product.php via the keyword parameters.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ecommerce-Project-With-Php-And-Mysqli-Fruits-Bazar Project | Ecommerce-Project-With-Php-And-Mysqli-Fruits-Bazar | 1.0 |
Related Weaknesses (CWE)
References
- https://github.com/APTX-4879/CVEThird Party Advisory
- https://github.com/APTX-4879/CVE/blob/main/CVE-2022-30478.pdfExploitThird Party Advisory
- https://github.com/creativesaiful/Ecommerce-project-with-php-and-mysqli-Fruits-BProduct
- https://github.com/APTX-4879/CVEThird Party Advisory
- https://github.com/APTX-4879/CVE/blob/main/CVE-2022-30478.pdfExploitThird Party Advisory
- https://github.com/creativesaiful/Ecommerce-project-with-php-and-mysqli-Fruits-BProduct
FAQ
What is CVE-2022-30478?
CVE-2022-30478 is a vulnerability with a CVSS score of 9.8 (CRITICAL). Ecommerce-project-with-php-and-mysqli-Fruits-Bazar 1.0 is vulnerable to SQL Injection in \search_product.php via the keyword parameters.
How severe is CVE-2022-30478?
CVE-2022-30478 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2022-30478?
Check the references section above for vendor advisories and patch information. Affected products include: Ecommerce-Project-With-Php-And-Mysqli-Fruits-Bazar Project Ecommerce-Project-With-Php-And-Mysqli-Fruits-Bazar.