AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2024-4826

CRITICAL · CVSS 9.8 EPSS 0.41%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2024-05-16 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 9.8. It involves a SQL injection risk.

CVE
CVE-2024-4826
Severity
CRITICAL
CVSS
9.8
EPSS
0.41%

Original NVD Description

SQL injection vulnerability in Simple PHP Shopping Cart affecting version 0.9. This vulnerability could allow an attacker to retrieve all the information stored in the database by sending a specially crafted SQL query, due to the lack of proper sanitisation of the category_id parameter in the category.php file.