Show filters
104 Total Results
Displaying 61-70 of 104
Sort by:
Attacker Value
Unknown
CVE-2023-37772
Disclosure Date: August 01, 2023 (last updated February 25, 2025)
Online Shopping Portal Project v3.1 was discovered to contain a SQL injection vulnerability via the Email parameter at /shopping/login.php.
0
Attacker Value
Unknown
CVE-2023-3605
Disclosure Date: July 10, 2023 (last updated February 25, 2025)
A vulnerability was found in PHPGurukul Online Shopping Portal 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Registration Page. The manipulation leads to improper restriction of excessive authentication attempts. The attack can be launched remotely. The associated identifier of this vulnerability is VDB-233467.
0
Attacker Value
Unknown
CVE-2023-3337
Disclosure Date: June 20, 2023 (last updated February 25, 2025)
A vulnerability was found in PuneethReddyHC Online Shopping System Advanced 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /admin/reg.php of the component Admin Registration. The manipulation leads to improper authentication. The attack can be launched remotely. The identifier VDB-232009 was assigned to this vulnerability.
0
Attacker Value
Unknown
CVE-2023-3311
Disclosure Date: June 18, 2023 (last updated February 25, 2025)
A vulnerability, which was classified as problematic, was found in PuneethReddyHC online-shopping-system-advanced 1.0. This affects an unknown part of the file addsuppliers.php. The manipulation of the argument First name leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-231807.
0
Attacker Value
Unknown
CVE-2023-2244
Disclosure Date: April 22, 2023 (last updated February 24, 2025)
A vulnerability was found in SourceCodester Online Eyewear Shop 1.0. It has been classified as critical. This affects an unknown part of the file /admin/orders/update_status.php of the component GET Parameter Handler. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-227229 was assigned to this vulnerability.
0
Attacker Value
Unknown
CVE-2023-27777
Disclosure Date: April 19, 2023 (last updated February 24, 2025)
Cross-site scripting (XSS) vulnerability was discovered in Online Jewelry Shop v1.0 that allows attackers to execute arbitrary script via a crafted URL.
0
Attacker Value
Unknown
CVE-2023-27776
Disclosure Date: April 19, 2023 (last updated February 24, 2025)
A stored cross-site scripting (XSS) vulnerability in /index.php?page=category_list of Online Jewelry Shop v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Category Name parameter.
0
Attacker Value
Unknown
CVE-2023-1969
Disclosure Date: April 10, 2023 (last updated February 24, 2025)
A vulnerability classified as critical was found in SourceCodester Online Eyewear Shop 1.0. This vulnerability affects unknown code of the file /admin/inventory/manage_stock.php of the component GET Parameter Handler. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-225406 is the identifier assigned to this vulnerability.
0
Attacker Value
Unknown
CVE-2023-1042
Disclosure Date: February 26, 2023 (last updated February 24, 2025)
A vulnerability has been found in SourceCodester Online Pet Shop We App 1.0 and classified as problematic. This vulnerability affects unknown code of the file /pet_shop/admin/orders/update_status.php. The manipulation of the argument oid with the input 1"><script>alert(1111)</script> leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-221800.
0
Attacker Value
Unknown
CVE-2023-0966
Disclosure Date: February 22, 2023 (last updated February 24, 2025)
A vulnerability classified as problematic was found in SourceCodester Online Eyewear Shop 1.0. Affected by this vulnerability is an unknown functionality of the file admin/?page=orders/view_order. The manipulation of the argument id leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-221635.
0