PT-2025-47200 · Phpgurukul · Phpgurukul Online Shopping Portal

Published

2025-11-17

·

Updated

2025-11-18

·

CVE-2024-44664

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions PHPGurukul Online Shopping Portal version 2.0
Description The PHPGurukul Online Shopping Portal version 2.0 is susceptible to SQL Injection. This issue affects the name, summary, review, quality, price, and value parameters within the product-details.php file. Exploitation occurs through these parameters, potentially allowing an attacker to manipulate database queries.
Recommendations Apply appropriate input validation and sanitization techniques to the name, summary, review, quality, price, and value parameters in the product-details.php file.

Exploit

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2024-44664

Affected Products

Phpgurukul Online Shopping Portal