« Volver al listado

Carmelo

Carmelo Simple Food Order System: vulnerabilidades y CVE

Carmelo Simple Food Order System tiene 10 vulnerabilidades publicadas, 10 de ellas en los últimos 12 meses. 4 son críticas y 0 figuran en el catálogo de explotación activa de CISA.

CVE10
Últimos 12 meses10
Críticas4
Explotadas activamente0

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2026-5019Media (5.5)0.57%—29 mar 2026
A security vulnerability has been detected in code-projects Simple Food Order System 1.0. Affected by this vulnerability is an unknown functionality of the file all-orders.php of the component Parameter Handler. The…
CVE-2026-5018Media (5.5)0.57%—28 mar 2026
A weakness has been identified in code-projects Simple Food Order System 1.0. Affected is an unknown function of the file register-router.php of the component Parameter Handler. Executing a manipulation of the argument…
CVE-2026-5017Media (5.5)0.57%—28 mar 2026
A security flaw has been discovered in code-projects Simple Food Order System 1.0. This impacts an unknown function of the file /all-tickets.php of the component Parameter Handler. Performing a manipulation of the…
CVE-2026-4533Baja (2.1)0.47%—22 mar 2026
A vulnerability was detected in code-projects Simple Food Ordering System 1.0. Affected by this issue is some unknown functionality of the file all-tickets.php. The manipulation of the argument Status results in sql…
CVE-2026-4532Media (5.5)0.67%—22 mar 2026
A security vulnerability has been detected in code-projects Simple Food Ordering System up to 1.0. Affected by this vulnerability is an unknown functionality of the file /food/sql/food.sql of the component Database…
CVE-2026-4319Media (5.5)0.57%—17 mar 2026
A vulnerability was identified in code-projects Simple Food Order System 1.0. Affected by this vulnerability is an unknown functionality of the file /routers/add-item.php. Such manipulation of the argument price leads…
CVE-2026-26713Crítica (9.8)0.52%—2 mar 2026
code-projects Simple Food Order System v1.0 is vulnerable to SQL Injection in /food/routers/cancel-order.php.
CVE-2026-26712Crítica (9.8)0.52%—2 mar 2026
code-projects Simple Food Order System v1.0 is vulnerable to SQL Injection in /food/view-ticket-admin.php.
CVE-2026-26711Crítica (9.8)0.52%—2 mar 2026
code-projects Simple Food Order System v1.0 is vulnerable to SQL Injection in /food/view-ticket.php.
CVE-2026-26710Crítica (9.8)0.52%—2 mar 2026
code-projects Simple Food Order System v1.0 is vulnerable to SQL Injection in /food/routers/edit-orders.php.

🎯 Cómo se explota (técnicas ATT&CK)

  1. T1005 Data from Local System4
  2. T1190 Exploit Public-Facing Application4

Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.

Otros productos de Carmelo