📦 E Commerce Website

by Fabian

🔍 What is E Commerce Website?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-11596

HIGH CVSS 7.3 Oct 11, 2025

This vulnerability allows remote attackers to execute SQL injection attacks against code-projects E-Commerce Website 1.0 by manipulating the order_id parameter in the delete_order_details.php file. At...

CVE-2025-11558

HIGH CVSS 7.3 Oct 9, 2025

This SQL injection vulnerability in code-projects E-Commerce Website 1.0 allows remote attackers to execute arbitrary SQL commands via the Search parameter in /pages/user_index_search.php. Attackers c...

CVE-2025-11513

HIGH CVSS 7.3 Oct 9, 2025

This SQL injection vulnerability in code-projects E-Commerce Website 1.0 allows attackers to manipulate database queries through the supp_id parameter in /pages/supplier_update.php. Remote attackers c...

CVE-2025-11036

HIGH CVSS 7.3 Sep 26, 2025

This SQL injection vulnerability in code-projects E-Commerce Website 1.0 allows remote attackers to execute arbitrary SQL commands via the user_id parameter in the admin_account_update.php file. This ...

CVE-2023-7107

HIGH CVSS 7.3 Feb 29, 2024

This critical SQL injection vulnerability in code-projects E-Commerce Website 1.0 allows remote attackers to manipulate database queries via user input fields (firstname, middlename, email, address, c...

CVE-2025-12335

MEDIUM CVSS 4.3 Oct 28, 2025

This vulnerability allows attackers to inject malicious scripts into the supplier_update.php page of code-projects E-Commerce Website 1.0 through the supp_name or supp_address parameters. When adminis...

CVE-2025-12334

MEDIUM CVSS 4.3 Oct 27, 2025

This vulnerability allows attackers to inject malicious scripts into the product name, description, or cost fields in code-projects E-Commerce Website 1.0. When users view affected product pages, the ...

CVE-2025-12333

MEDIUM CVSS 4.3 Oct 27, 2025

This vulnerability in code-projects E-Commerce Website 1.0 allows attackers to inject malicious scripts via the supplier name or address fields in the supplier_add.php page. When exploited, it enables...

CVE-2025-11597

MEDIUM CVSS 6.3 Oct 11, 2025

This SQL injection vulnerability in code-projects E-Commerce Website 1.0 allows attackers to manipulate database queries through the prod_id parameter in product_add_qty.php. Attackers can potentially...

CVE-2025-11511

MEDIUM CVSS 6.3 Oct 8, 2025

This SQL injection vulnerability in code-projects E-Commerce Website 1.0 allows attackers to manipulate database queries through the supp_email parameter in /pages/supplier_add.php. Attackers can pote...

CVE-2025-11509

MEDIUM CVSS 6.3 Oct 8, 2025

This SQL injection vulnerability in code-projects E-Commerce Website 1.0 allows attackers to manipulate database queries through the prod_name parameter in product_add.php. Attackers can potentially r...