CVE-2026-63106: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') in Razinsoft Ready eCommerce
Ready eCommerce before version 4.5.2 has an unauthenticated SQL injection vulnerability in its product listing API. The vulnerability arises because the rating parameter is directly concatenated into a MySQL HAVING clause without proper parameterization. This allows attackers to perform time-based blind SQL injection to extract sensitive database contents, including user credentials and administrator password hashes. The database connection runs as root, potentially enabling further file system access.
AI Analysis
Technical Summary
CVE-2026-63106 describes an unauthenticated SQL injection vulnerability in Razinsoft Ready eCommerce versions prior to 4.5.2. The flaw exists in the product listing API where the rating parameter is unsafely concatenated into a MySQL HAVING clause within ProductController.php without parameterization or sanitization. This allows attackers to conduct time-based blind SQL injection attacks to extract the entire database, including sensitive credentials. The database connection operates with root privileges, increasing the risk of additional system compromise.
Potential Impact
Exploitation of this vulnerability can lead to full disclosure of the database contents, including user credentials and administrator password hashes. Because the database connection runs as root, attackers may also gain unauthorized file system access, potentially leading to complete system compromise. The vulnerability requires no authentication and has a critical severity score of 9.3, indicating a high risk of severe impact.
Mitigation Recommendations
Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Until an official fix is available, restrict access to the vulnerable API endpoint and monitor for suspicious activity. Avoid using the affected versions in production environments if possible.
CVE-2026-63106: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') in Razinsoft Ready eCommerce
Description
Ready eCommerce before version 4.5.2 has an unauthenticated SQL injection vulnerability in its product listing API. The vulnerability arises because the rating parameter is directly concatenated into a MySQL HAVING clause without proper parameterization. This allows attackers to perform time-based blind SQL injection to extract sensitive database contents, including user credentials and administrator password hashes. The database connection runs as root, potentially enabling further file system access.
CVSS v4.0
Score 9.3critical
Affected software
Razinsoft
Ready eCommerce
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
CVE-2026-63106 describes an unauthenticated SQL injection vulnerability in Razinsoft Ready eCommerce versions prior to 4.5.2. The flaw exists in the product listing API where the rating parameter is unsafely concatenated into a MySQL HAVING clause within ProductController.php without parameterization or sanitization. This allows attackers to conduct time-based blind SQL injection attacks to extract the entire database, including sensitive credentials. The database connection operates with root privileges, increasing the risk of additional system compromise.
Potential Impact
Exploitation of this vulnerability can lead to full disclosure of the database contents, including user credentials and administrator password hashes. Because the database connection runs as root, attackers may also gain unauthorized file system access, potentially leading to complete system compromise. The vulnerability requires no authentication and has a critical severity score of 9.3, indicating a high risk of severe impact.
Mitigation Recommendations
Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Until an official fix is available, restrict access to the vulnerable API endpoint and monitor for suspicious activity. Avoid using the affected versions in production environments if possible.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- VulnCheck
- Date Reserved
- 2026-07-15T15:45:44.602Z
- Cvss Version
- 4.0
- State
- PUBLISHED
Threat ID: 6a79dc5fbf8831d539cf70aa
Added to database: 08/10/2026, 14:12:47 UTC
Last enriched: 08/17/2026, 15:27:38 UTC
Last updated: 09/24/2026, 13:47:47 UTC
Views: 60
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.