Online-shopping-system-advanced Project
Online-shopping-system-advanced Project Online-shopping-system-advanced: vulnerabilidades y CVE
Online-shopping-system-advanced Project Online-shopping-system-advanced tiene 4 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 2 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE4
Últimos 12 meses0
Críticas2
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2023-3311 | Media (5.4) | 0.59% | — | 18 jun 2023 | A vulnerability, which was classified as problematic, was found in PuneethReddyHC online-shopping-system-advanced 1.0. This affects an unknown part of the file addsuppliers.php. The manipulation of the argument First… |
| CVE-2022-42109 | Crítica (9.8) | 1.2% | — | 29 nov 2022 | Online-shopping-system-advanced 1.0 was discovered to contain a SQL injection vulnerability via the p parameter at /shopping/product.php. |
| CVE-2021-41649 | Crítica (9.8) | 52% | — | 1 oct 2021 | An un-authenticated SQL Injection exists in PuneethReddyHC online-shopping-system-advanced through the /homeaction.php cat_id parameter. Using a post request does not sanitize the user input. |
| CVE-2021-41648 | Alta (7.5) | 10% | — | 1 oct 2021 | An un-authenticated SQL Injection exists in PuneethReddyHC online-shopping-system-advanced through the /action.php prId parameter. Using a post request does not sanitize the user input. |