Book Store Management System Project
Book Store Management System Project Book Store Management System: vulnerabilidades y CVE
Book Store Management System Project Book Store Management System tiene 11 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 3 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE11
Últimos 12 meses0
Críticas3
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2023-49543 | Crítica (9.8) | 0.95% | — | 1 mar 2024 | Incorrect access control in Book Store Management System v1 allows attackers to access unauthorized pages and execute administrative functions without authenticating. |
| CVE-2023-23024 | Media (6.1) | 0.42% | — | 20 ene 2023 | Book Store Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in /bsms_ci/index.php/book. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a… |
| CVE-2022-45613 | Media (5.4) | 0.46% | — | 18 ene 2023 | Book Store Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in /bsms_ci/index.php/book. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a… |
| CVE-2022-45217 | Media (5.4) | 0.55% | — | 7 dic 2022 | A cross-site scripting (XSS) vulnerability in Book Store Management System v1.0.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Level parameter under the Add New… |
| CVE-2022-45215 | Media (5.4) | 0.40% | — | 2 dic 2022 | A cross-site scripting (XSS) vulnerability in Book Store Management System v1.0.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Name parameter under the Add New System… |
| CVE-2022-4229 | Crítica (9.8) | 0.96% | — | 30 nov 2022 | A vulnerability classified as critical was found in SourceCodester Book Store Management System 1.0. This vulnerability affects unknown code of the file /bsms_ci/index.php. The manipulation leads to improper access… |
| CVE-2022-4228 | Alta (7.5) | 1.3% | — | 30 nov 2022 | A vulnerability classified as problematic has been found in SourceCodester Book Store Management System 1.0. This affects an unknown part of the file /bsms_ci/index.php/user/edit_user/. The manipulation of the argument… |
| CVE-2022-44097 | Crítica (9.8) | 0.80% | — | 30 nov 2022 | Book Store Management System v1.0 was discovered to contain hardcoded credentials which allows attackers to escalate privileges and access the admin panel. |
| CVE-2022-45225 | Media (6.1) | 0.51% | — | 25 nov 2022 | Book Store Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in /bsms_ci/index.php/book. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a… |
| CVE-2022-3453 | Media (5.4) | 0.39% | — | 11 oct 2022 | A vulnerability was found in SourceCodester Book Store Management System 1.0. It has been rated as problematic. This issue affects some unknown processing of the file /transcation.php. The manipulation of the argument… |
| CVE-2022-3452 | Media (5.4) | 0.43% | — | 11 oct 2022 | A vulnerability was found in SourceCodester Book Store Management System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file /category.php. The manipulation of the argument… |