A vulnerability was found in Itech Multi Vendor Script 6.49 and classified as critical. This issue affects some unknown processing of the file /multi-vendor-shopping-script/product-list.php. The manipulation of the argument pl leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-11139 | A vulnerability was found in Itech Multi Vendor Script 6.49 and classified as critical. This issue affects some unknown processing of the file /multi-vendor-shopping-script/product-list.php. The manipulation of the argument pl leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 15 Apr 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2025-04-15T14:05:43.699Z
Reserved: 2022-06-28T00:00:00.000Z
Link: CVE-2017-20132
Updated: 2024-08-05T21:45:26.014Z
Status : Modified
Published: 2022-07-16T07:15:08.047
Modified: 2024-11-21T03:22:42.767
Link: CVE-2017-20132
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD