php_multivendor_ecommerce_project CVE Vulnerabilities & CVE List (11)

Products (CPE): — CVEs: 11

php_multivendor_ecommerce_project vulnerability overview

Aggregates CVE and security vulnerability intelligence across all php_multivendor_ecommerce_project-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Historical issues mainly involve vendor risk cross-site scripting and vendor risk sql injection and related problems; some flaws may lead to vendor impact session compromise.

Vulnerability distribution trend (last 24 months)

Showing 111 of 11 CVEs
«« First « Prev Page 1 / 1 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2017-17960 PHP Scripts Mall PHP Multivendor Ecommerce has CSRF via admin/sellerupd.php. [email protected] 8.8 0.14% 2017-12-28 2026-05-13
CVE-2017-17959 PHP Scripts Mall PHP Multivendor Ecommerce has SQL Injection via the seller-view.php usid parameter. [email protected] 9.8 0.26% 2017-12-28 2026-05-13
CVE-2017-17958 PHP Scripts Mall PHP Multivendor Ecommerce has XSS via the my_wishlist.php fid parameter. [email protected] 6.1 0.24% 2017-12-28 2026-05-13
CVE-2017-17957 PHP Scripts Mall PHP Multivendor Ecommerce has SQL Injection via the my_wishlist.php fid parameter. [email protected] 9.8 0.26% 2017-12-28 2026-05-13
CVE-2017-17956 PHP Scripts Mall PHP Multivendor Ecommerce has XSS via the admin/sellerupd.php companyname parameter. [email protected] 6.1 0.24% 2017-12-28 2026-05-13
CVE-2017-17955 PHP Scripts Mall PHP Multivendor Ecommerce has XSS via the shopping-cart.php cusid parameter. [email protected] 6.1 0.24% 2017-12-28 2026-05-13
CVE-2017-17954 PHP Scripts Mall PHP Multivendor Ecommerce has XSS via the seller-view.php usid parameter. [email protected] 6.1 0.24% 2017-12-28 2026-05-13
CVE-2017-17953 PHP Scripts Mall PHP Multivendor Ecommerce has XSS via the category.php chid1 parameter. [email protected] 6.1 0.24% 2017-12-28 2026-05-13
CVE-2017-17952 PHP Scripts Mall PHP Multivendor Ecommerce has a predicable registration URL, which makes it easier for remote attackers to register with an invalid or spoofed e-mail address. [email protected] 8.6 0.25% 2017-12-28 2026-05-13
CVE-2017-17951 PHP Scripts Mall PHP Multivendor Ecommerce has SQL Injection via the shopping-cart.php cusid parameter. [email protected] 9.8 0.26% 2017-12-28 2026-05-13
CVE-2017-17624 PHP Multivendor Ecommerce 1.0 has SQL Injection via the single_detail.php sid parameter, or the category.php searchcat or chid1 parameter. [email protected] 9.8 2.51% 2017-12-13 2026-05-13
«« First « Prev Page 1 / 1 Next »
cvelogic Threat Intelligence