CVE-2013-10008

A vulnerability was found in sheilazpy eShop. It has been classified as critical. Affected is an unknown function. The manipulation leads to sql injection. The name of the patch is e096c5849c4dc09e1074104531014a62a5413884. It is recommended to apply a patch to fix this issue. The identifier of this vulnerability is VDB-217572.
References
Link Resource
https://github.com/sheilazpy/eShop/commit/e096c5849c4dc09e1074104531014a62a5413884 Patch Third Party Advisory
https://vuldb.com/?ctiid.217572 Permissions Required Third Party Advisory
https://vuldb.com/?id.217572 Permissions Required Third Party Advisory
https://github.com/sheilazpy/eShop/commit/e096c5849c4dc09e1074104531014a62a5413884 Patch Third Party Advisory
https://vuldb.com/?ctiid.217572 Permissions Required Third Party Advisory
https://vuldb.com/?id.217572 Permissions Required Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:eshop_project:eshop:*:*:*:*:*:-:*:*

History

21 Nov 2024, 01:48

Type Values Removed Values Added
CVSS v2 : 5.2
v3 : 9.8
v2 : 5.2
v3 : 5.5
References () https://github.com/sheilazpy/eShop/commit/e096c5849c4dc09e1074104531014a62a5413884 - Patch, Third Party Advisory () https://github.com/sheilazpy/eShop/commit/e096c5849c4dc09e1074104531014a62a5413884 - Patch, Third Party Advisory
References () https://vuldb.com/?ctiid.217572 - Permissions Required, Third Party Advisory () https://vuldb.com/?ctiid.217572 - Permissions Required, Third Party Advisory
References () https://vuldb.com/?id.217572 - Permissions Required, Third Party Advisory () https://vuldb.com/?id.217572 - Permissions Required, Third Party Advisory

29 Feb 2024, 01:13

Type Values Removed Values Added
Summary
  • (es) Se encontró una vulnerabilidad en sheilazpy eShop. Ha sido clasificada como crítica. Una función desconocida es afectada por esta función. La manipulación conduce a la inyección de SQL. El nombre del parche es e096c5849c4dc09e1074104531014a62a5413884. Se recomienda aplicar un parche para solucionar este problema. El identificador de esta vulnerabilidad es VDB-217572.

Information

Published : 2023-01-06 22:15

Updated : 2024-11-21 01:48


NVD link : CVE-2013-10008

Mitre link : CVE-2013-10008

CVE.ORG link : CVE-2013-10008


JSON object : View

Products Affected

eshop_project

  • eshop
CWE
CWE-89

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')