SQL Injection Vulnerability in Secure E-commerce Script from Secure E-commerce
CVE-2017-17629
9.8CRITICAL
Key Information:
- Status
- Vendor
- CVE Published:
- 13 December 2017
What is CVE-2017-17629?
The Secure E-commerce Script version 2.0.1 is susceptible to SQL Injection attacks through the parameters in category.php (searchmain or searchcat) and single_detail.php (sid). This vulnerability allows attackers to manipulate SQL queries, potentially leading to unauthorized access to sensitive database information.
