VendorsPHP Multivendor Ecommerce Projectphp_multivendor_ecommerceall versions
Vulnerabilities

PHP Multivendor Ecommerce Project PHP Multivendor Ecommerce

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

11CVEs
CVE-2017-17624
PHP Multivendor Ecommerce 1.0 has SQL Injection via the single_detail.php sid parameter, or the category.php searchcat or chid1 parameter.
Published 2017-12-13 · Modified
9.81 PoCEPSS 0.031
CVE-2017-17951
PHP Scripts Mall PHP Multivendor Ecommerce has SQL Injection via the shopping-cart.php cusid parameter.
Published 2017-12-28 · Modified
9.8EPSS 0.012
CVE-2017-17957
PHP Scripts Mall PHP Multivendor Ecommerce has SQL Injection via the my_wishlist.php fid parameter.
Published 2017-12-28 · Modified
9.8EPSS 0.012
CVE-2017-17959
PHP Scripts Mall PHP Multivendor Ecommerce has SQL Injection via the seller-view.php usid parameter.
Published 2017-12-28 · Modified
9.8EPSS 0.012
CVE-2017-17960
PHP Scripts Mall PHP Multivendor Ecommerce has CSRF via admin/sellerupd.php.
Published 2017-12-28 · Modified
8.8EPSS 0.005
CVE-2017-17952
PHP Scripts Mall PHP Multivendor Ecommerce has a predicable registration URL, which makes it easier for remote attackers to register with an invalid or spoofed e-mail address.
Published 2017-12-28 · Modified
8.6EPSS 0.011
CVE-2017-17953
PHP Scripts Mall PHP Multivendor Ecommerce has XSS via the category.php chid1 parameter.
Published 2017-12-28 · Modified
6.1EPSS 0.007
CVE-2017-17954
PHP Scripts Mall PHP Multivendor Ecommerce has XSS via the seller-view.php usid parameter.
Published 2017-12-28 · Modified
6.1EPSS 0.007
CVE-2017-17955
PHP Scripts Mall PHP Multivendor Ecommerce has XSS via the shopping-cart.php cusid parameter.
Published 2017-12-28 · Modified
6.1EPSS 0.007
CVE-2017-17956
PHP Scripts Mall PHP Multivendor Ecommerce has XSS via the admin/sellerupd.php companyname parameter.
Published 2017-12-28 · Modified
6.1EPSS 0.007
CVE-2017-17958
PHP Scripts Mall PHP Multivendor Ecommerce has XSS via the my_wishlist.php fid parameter.
Published 2017-12-28 · Modified
6.1EPSS 0.007