Simple Mobile Comparison Website Project Simple Mobile Comparison Website vulnerabilities

4 known vulnerabilities affecting simple_mobile_comparison_website_project/simple_mobile_comparison_website.

Total CVEs
4
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL3MEDIUM1

Vulnerabilities

Page 1 of 1
CVE-2023-2397MEDIUMCVSS 4.8v1.02023-04-28
CVE-2023-2397 [LOW] CWE-79 CVE-2023-2397: A vulnerability, which was classified as problematic, has been found in SourceCodester Simple Mobile A vulnerability, which was classified as problematic, has been found in SourceCodester Simple Mobile Comparison Website 1.0. This issue affects some unknown processing of the file classes/Master.php?f=save_field. The manipulation of the argument Field Name leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed
nvd
CVE-2023-1908CRITICALCVSS 9.8v1.02023-04-06
CVE-2023-1908 [MEDIUM] CWE-89 CVE-2023-1908: A vulnerability was found in SourceCodester Simple Mobile Comparison Website 1.0. It has been classi A vulnerability was found in SourceCodester Simple Mobile Comparison Website 1.0. It has been classified as critical. Affected is an unknown function of the file /admin/categories/view_category.php of the component GET Parameter Handler. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploi
nvd
CVE-2023-1792CRITICALCVSS 9.8v1.02023-04-02
CVE-2023-1792 [MEDIUM] CWE-89 CVE-2023-1792: A vulnerability was found in SourceCodester Simple Mobile Comparison Website 1.0 and classified as c A vulnerability was found in SourceCodester Simple Mobile Comparison Website 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/fields/manage_field.php of the component GET Parameter Handler. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit
nvd
CVE-2022-26170CRITICALCVSS 9.8v1.02022-03-02
CVE-2022-26170 [CRITICAL] CWE-89 CVE-2022-26170: Simple Mobile Comparison Website v1.0 was discovered to contain a SQL injection vulnerability via th Simple Mobile Comparison Website v1.0 was discovered to contain a SQL injection vulnerability via the search parameter.
nvd