Show filters
6 Total Results
Displaying 1-6 of 6
Sort by:
Attacker Value
Moderate

CVE-2020-5307

Disclosure Date: January 07, 2020 (last updated February 21, 2025)
PHPGurukul Dairy Farm Shop Management System 1.0 is vulnerable to SQL injection, as demonstrated by the username parameter in index.php, the category and CategoryCode parameters in add-category.php, the CompanyName parameter in add-company.php, and the ProductName and ProductPrice parameters in add-product.php.
Attacker Value
Very Low

CVE-2020-5308

Disclosure Date: January 07, 2020 (last updated February 21, 2025)
PHPGurukul Dairy Farm Shop Management System 1.0 is vulnerable to XSS, as demonstrated by the category and CategoryCode parameters in add-category.php, the CompanyName parameter in add-company.php, and the ProductName parameter in add-product.php.
Attacker Value
Unknown

CVE-2022-40943

Disclosure Date: September 30, 2022 (last updated October 09, 2023)
Dairy Farm Shop Management System 1.0 is vulnerable to SQL Injection via bwdate-report-ds.php file.
Attacker Value
Unknown

CVE-2022-40944

Disclosure Date: September 30, 2022 (last updated October 09, 2023)
Dairy Farm Shop Management System 1.0 is vulnerable to SQL Injection via sales-report-ds.php file.
Attacker Value
Unknown

CVE-2022-29007

Disclosure Date: May 11, 2022 (last updated October 09, 2023)
Multiple SQL injection vulnerabilities via the username and password parameters in the Admin panel of Dairy Farm Shop Management System v1.0 allows attackers to bypass authentication.
Attacker Value
Unknown

CVE-2020-36062

Disclosure Date: February 11, 2022 (last updated October 09, 2023)
Dairy Farm Shop Management System v1.0 was discovered to contain hardcoded credentials in the source code which allows attackers access to the control panel if compromised.