Show filters
24 Total Results
Displaying 11-20 of 24
Sort by:
Attacker Value
Unknown

CVE-2019-7432

Disclosure Date: March 21, 2019 (last updated November 27, 2024)
PHP Scripts Mall Rental Bike Script 2.0.3 has HTML injection via the STREET field in the Profile Edit section.
0
Attacker Value
Unknown

CVE-2018-20647

Disclosure Date: March 21, 2019 (last updated November 27, 2024)
PHP Scripts Mall Car Rental Script 2.0.8 has directory traversal via a direct request for a listing of an image directory such as an images/ directory.
0
Attacker Value
Unknown

CVE-2018-20648

Disclosure Date: March 21, 2019 (last updated November 27, 2024)
PHP Scripts Mall Car Rental Script 2.0.8 has Cross-Site Request Forgery (CSRF) via accountedit.php.
0
Attacker Value
Unknown

CVE-2018-15182

Disclosure Date: August 09, 2018 (last updated November 27, 2024)
PHP Scripts Mall Car Rental Script 2.0.8 has XSS via the FirstName and LastName fields.
0
Attacker Value
Unknown

CVE-2018-6904

Disclosure Date: April 12, 2018 (last updated November 26, 2024)
PHP Scripts Mall Car Rental Script 2.0.8 has XSS via the User Name field in an Edit Profile action.
0
Attacker Value
Unknown

CVE-2017-17907

Disclosure Date: December 27, 2017 (last updated November 26, 2024)
PHP Scripts Mall Car Rental Script has XSS via the admin/areaedit.php carid parameter or the admin/sitesettings.php websitename parameter.
0
Attacker Value
Unknown

CVE-2017-17905

Disclosure Date: December 27, 2017 (last updated November 26, 2024)
PHP Scripts Mall Car Rental Script has CSRF via admin/sitesettings.php.
0
Attacker Value
Unknown

CVE-2017-17906

Disclosure Date: December 27, 2017 (last updated November 26, 2024)
PHP Scripts Mall Car Rental Script has SQL Injection via the admin/carlistedit.php carid parameter.
0
Attacker Value
Unknown

CVE-2017-17637

Disclosure Date: December 13, 2017 (last updated November 26, 2024)
Car Rental Script 2.0.4 has SQL Injection via the countrycode1.php val parameter.
0
Attacker Value
Unknown

CVE-2012-4324

Disclosure Date: August 14, 2012 (last updated October 04, 2023)
Cross-site request forgery (CSRF) vulnerability in PHPJabbers Vacation Rental Script allows remote attackers to hijack the authentication of administrators for requests that add administrator accounts via a create action in the AdminUsers module to index.php.
0