📦

advance_gift_shop_pro_script

Vendor: phpscriptsmall

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 0 Remote Access
Total CVEs 2 Total Indexed
Avg. EPSS 0.40% Exploit Prob.
Latest CVE CVE-2019-25680 Apr 05

Security Vulnerability Index

Page 1 / 1
8.8 CVSS

Advance Gift Shop Pro Script 2.0.3 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the search parameter. Attackers can submit crafted SQL payloads in the 's' parameter of search requests to extract sensitive database information including version details and other data.

EPSS: 0.40%