Loading market data...
← Back to CVE feed

CVE-2026-5583

MEDIUM CVSS 6.3 View on NVD ↗

Description

A security vulnerability has been detected in PHPGurukul Online Shopping Portal Project 2.1. This affects an unknown part of the file /my-profile.php of the component Parameter Handler. The manipulation of the argument fullname leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed publicly and may be used.

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Published: Apr 05, 2026 17:16 UTC Modified: Apr 05, 2026 17:16 UTC