PT-2026-1824 · Unknown · Indieka900 Online-Shopping-System-Php

Published

2026-01-08

·

Updated

2026-01-09

·

CVE-2025-61246

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions indieka900 online-shopping-system-php version 1.0
Description The software is susceptible to a SQL Injection issue in the 'master/review action.php' file through the proId parameter.
Recommendations Apply updates to address the SQL Injection issue in the 'master/review action.php' file related to the proId parameter.

Exploit

Fix

SQL injection

Weakness Enumeration

Related Identifiers

CVE-2025-61246

Affected Products

Indieka900 Online-Shopping-System-Php