A vulnerability was determined in SourceCodester Pizzafy Ecommerce System 1.0. This vulnerability affects the function save_user of the file /admin/ajax.php?action=save_user. Executing a manipulation of the argument Name can lead to cross site scripting. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized.
Metrics
Affected Vendors & Products
References
History
Tue, 28 Apr 2026 23:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Sourcecodester
Sourcecodester pizzafy Ecommerce System |
|
| Vendors & Products |
Sourcecodester
Sourcecodester pizzafy Ecommerce System |
Tue, 28 Apr 2026 22:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was determined in SourceCodester Pizzafy Ecommerce System 1.0. This vulnerability affects the function save_user of the file /admin/ajax.php?action=save_user. Executing a manipulation of the argument Name can lead to cross site scripting. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized. | |
| Title | SourceCodester Pizzafy Ecommerce System ajax.php save_user cross site scripting | |
| Weaknesses | CWE-79 CWE-94 |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published: 2026-04-28T18:45:12.251Z
Updated: 2026-04-28T18:45:12.251Z
Reserved: 2026-04-28T10:26:35.815Z
Link: CVE-2026-7297
No data.
Status : Received
Published: 2026-04-28T22:16:50.557
Modified: 2026-04-29T01:00:01.613
Link: CVE-2026-7297
No data.
ReportizFlow