cbcvebase.

Sourcecodester Simple Online Book Store System vulnerabilities

5 known vulnerabilities affecting sourcecodester/simple_online_book_store_system.

Total CVEs
5
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL4MEDIUM1

Vulnerabilities

Page 1 of 1
CVE-2024-6951P3CRITICALCVSS 9.8v1.02024-07-21
CVE-2024-6951 [CRITICAL] CWE-89 CVE-2024-6951: A vulnerability, which was classified as critical, was found in SourceCodester Simple Online Book St A vulnerability, which was classified as critical, was found in SourceCodester Simple Online Book Store System 1.0. This affects an unknown part of the file admin_delete.php. The manipulation of the argument bookisbn leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. T
nvd
CVE-2022-2746P3CRITICALCVSS 9.8vn/a2022-08-11
CVE-2022-2746 [CRITICAL] CWE-434 CVE-2022-2746: A vulnerability has been found in SourceCodester Simple Online Book Store System and classified as c A vulnerability has been found in SourceCodester Simple Online Book Store System and classified as critical. This vulnerability affects unknown code of the file Admin_ add.php. The manipulation leads to unrestricted upload. The attack can be initiated remotely. VDB-206014 is the identifier assigned to this vulnerability.
nvd
CVE-2022-2770P3CRITICALCVSS 9.8vn/a2022-08-11
CVE-2022-2770 [CRITICAL] CWE-89 CVE-2022-2770: A vulnerability, which was classified as critical, was found in SourceCodester Simple Online Book St A vulnerability, which was classified as critical, was found in SourceCodester Simple Online Book Store System. Affected is an unknown function of the file /obs/book.php. The manipulation of the argument bookisbn leads to sql injection. It is possible to launch the attack remotely. VDB-206166 is the identifier assigned to this vulnerability.
nvd
CVE-2022-2771P3CRITICALCVSS 9.8vn/a2022-08-11
CVE-2022-2771 [CRITICAL] CWE-89 CVE-2022-2771: A vulnerability has been found in SourceCodester Simple Online Book Store System and classified as c A vulnerability has been found in SourceCodester Simple Online Book Store System and classified as critical. Affected by this vulnerability is an unknown functionality of the file /obs/bookPerPub.php. The manipulation of the argument bookisbn leads to sql injection. The attack can be launched remotely. The associated identifier of this vulnerability
nvd
CVE-2022-2748P4MEDIUMCVSS 6.1vn/a2022-08-11
CVE-2022-2748 [MEDIUM] CWE-79 CVE-2022-2748: A vulnerability was found in SourceCodester Simple Online Book Store System. It has been classified A vulnerability was found in SourceCodester Simple Online Book Store System. It has been classified as problematic. Affected is an unknown function of the file /admin/edit.php. The manipulation of the argument eid leads to cross site scripting. It is possible to launch the attack remotely. The identifier of this vulnerability is VDB-206016.
nvd
Sourcecodester Simple Online Book Store System vulnerabilities | cvebase