CVE-2017-17956: PHP Multivendor Ecommerce Project PHP Multivendor Ecommerce

Medium severity, CVSS 6.1. EPSS: 0.7% chance of exploitation in the next 30 days.

PHP Scripts Mall PHP Multivendor Ecommerce has XSS via the admin/sellerupd.php companyname parameter.

Affected products

Published 2017-12-28. Last modified 2026-06-17.