SQL Injection Vulnerability in Kashipara Ecommerce Website by Kashipara
CVE-2024-44652
6.5MEDIUM
What is CVE-2024-44652?
The Kashipara Ecommerce Website version 1.0 is susceptible to SQL Injection through multiple parameters including user_email, username, user_firstname, user_lastname, and user_address within the user_register.php file. This vulnerability allows attackers to manipulate database queries, potentially leading to unauthorized access to sensitive user information and compromising the integrity of the application's database.
