Show filters
104 Total Results
Displaying 81-90 of 104
Sort by:
Attacker Value
Unknown

CVE-2021-43629

Disclosure Date: December 22, 2021 (last updated February 23, 2025)
Projectworlds Hospital Management System v1.0 is vulnerable to SQL injection via multiple parameters in admin_home.php.
Attacker Value
Unknown

CVE-2021-43628

Disclosure Date: December 22, 2021 (last updated February 23, 2025)
Projectworlds Hospital Management System v1.0 is vulnerable to SQL injection via the email parameter in hms-staff.php.
Attacker Value
Unknown

CVE-2021-43158

Disclosure Date: December 22, 2021 (last updated February 23, 2025)
In ProjectWorlds Online Shopping System PHP 1.0, a CSRF vulnerability in cart_remove.php allows a remote attacker to remove any product in the customer's cart.
Attacker Value
Unknown

CVE-2021-43157

Disclosure Date: December 22, 2021 (last updated February 23, 2025)
Projectsworlds Online Shopping System PHP 1.0 is vulnerable to SQL injection via the id parameter in cart_remove.php.
Attacker Value
Unknown

CVE-2021-43156

Disclosure Date: December 22, 2021 (last updated February 23, 2025)
In ProjectWorlds Online Book Store PHP 1.0 a CSRF vulnerability in admin_delete.php allows a remote attacker to delete any book.
Attacker Value
Unknown

CVE-2021-43155

Disclosure Date: December 22, 2021 (last updated February 23, 2025)
Projectsworlds Online Book Store PHP v1.0 is vulnerable to SQL injection via the "bookisbn" parameter in cart.php.
Attacker Value
Unknown

CVE-2020-29205

Disclosure Date: May 17, 2021 (last updated February 22, 2025)
XSS in signup form in Project Worlds Online Examination System 1.0 allows remote attacker to inject arbitrary code via the name field
Attacker Value
Unknown

CVE-2020-19109

Disclosure Date: May 06, 2021 (last updated February 22, 2025)
SQL Injection vulnerability in Online Book Store v1.0 via the bookisbn parameter to admin_edit.php, which could let a remote malicious user execute arbitrary code.
Attacker Value
Unknown

CVE-2020-19107

Disclosure Date: May 06, 2021 (last updated February 22, 2025)
SQL Injection vulnerability in Online Book Store v1.0 via the isbn parameter to edit_book.php, which could let a remote malicious user execute arbitrary code.
Attacker Value
Unknown

CVE-2020-19114

Disclosure Date: May 06, 2021 (last updated February 22, 2025)
SQL Injection vulnerability in Online Book Store v1.0 via the publisher parameter to edit_book.php, which could let a remote malicious user execute arbitrary code.