Medium
CVSS 5.1
Overview
SQL injection vulnerability in admin/password_forgotten.php in Zen Cart 1.2.6d and earlier allows remote attackers to execute arbitrary SQL commands via the admin_email parameter.
SQL injection vulnerability in admin/password_forgotten.php in Zen Cart 1.2.6d a...
SQL injection vulnerability in admin/password_forgotten.php in Zen Cart 1.2.6d and earlier allows remote attackers to execute arbitrary SQL commands via the admin_email parameter.
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: