CVE-2017-17629: Secure E-Commerce Script Project Secure E-Commerce Script

Critical severity, CVSS 9.8. EPSS: 2.2% chance of exploitation in the next 30 days.

Secure E-commerce Script 2.0.1 has SQL Injection via the category.php searchmain or searchcat parameter, or the single_detail.php sid parameter.

Affected products

Published 2017-12-13. Last modified 2026-06-17.