All intelligence
// vulnerability record
cached · NVD via COSMOS syncCVE-2026-19923
LOWpublished 2026-08-16 01:17 UTC · 2 days ago
2.1
CVSS / 10
// description
A weakness has been identified in code-projects Online Shopping System 1.0. This affects an unknown part of the file /checkout_process.php. Executing a manipulation of the argument total_count can lead to sql injection. The attack can be launched remotely. The exploit has been made available to the public and could be used for attacks.
// weaknesses (CWE)
- CWE-74
- CWE-89