Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2570▼ 305 respecto a la semana anterior
Críticas / altas1353▲ 102 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 7 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 472 respecto a la semana anterior
5 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (8.1) | 0.61% | — | Alphaware - Simple E-commerce System Project Alphaware - Simple E-commerce System | 20/3/2023 | 17/6/2026 | A vulnerability classified as critical was found in SourceCodester Alphaware Simple E-Commerce System 1.0. This vulnerability affects unknown code. The manipulation of the argument email/password with the input test1%40test.com ' AND (SELECT 6077 FROM (SELECT(SLEEP(5)))dltn) AND 'PhRa'='PhRa leads to sql injection.… | |
| Modificada | Alta (8.1) | 0.61% | — | Alphaware - Simple E-commerce System Project Alphaware - Simple E-commerce System | 20/3/2023 | 17/6/2026 | A vulnerability classified as critical has been found in SourceCodester Alphaware Simple E-Commerce System 1.0. This affects an unknown part of the file admin/admin_index.php. The manipulation of the argument username/password with the input admin' AND (SELECT 8062 FROM (SELECT(SLEEP(5)))meUD)-- hLiX leads to sql… | |
| Modificada | Alta (8.1) | 0.61% | — | Alphaware - Simple E-commerce System Project Alphaware - Simple E-commerce System | 20/3/2023 | 17/6/2026 | A vulnerability was found in SourceCodester Alphaware Simple E-Commerce System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file function/edit_customer.php. The manipulation of the argument firstname/mi/lastname with the input a' RLIKE SLEEP(5) AND 'dAbu'='dAbu leads… | |
| Modificada | Crítica (9.8) | 0.75% | — | Alphaware - Simple E-commerce System Project Alphaware - Simple E-commerce System | 19/3/2023 | 17/6/2026 | An issue was discovered in Alphaware - Simple E-Commerce System v1.0. There is a SQL injection that can directly issue instructions to the background database system via /alphaware/details.php?id. | |
| Modificada | Media (5.4) | 0.59% | — | Alphaware - Simple E-commerce System Project Alphaware - Simple E-commerce System | 5/8/2022 | 17/6/2026 | A vulnerability, which was classified as problematic, has been found in SourceCodester Alphaware Simple E-Commerce System. Affected by this issue is some unknown functionality of the file stockin.php. The manipulation of the argument id with the input '"><script>alert(/xss/)</script> leads to cross site scripting. The… |