Search Results (1 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2018-25206 1 Sitemakin 1 Komseo Cart 2026-03-27 8.2 High
KomSeo Cart 1.3 contains an SQL injection vulnerability that allows attackers to inject SQL commands through the 'my_item_search' parameter in edit.php. Attackers can submit POST requests with malicious SQL payloads to extract sensitive database information using boolean-based blind or error-based injection techniques.