Page 2 of 18 results (0.010 seconds)

CVSS: 6.5EPSS: 0%CPEs: 1EXPL: 1

A vulnerability was found in SourceCodester Online Eyewear Shop 1.0. It has been declared as critical. Affected by this vulnerability is the function delete_product of the file /classes/Master.php?f=delete_product. The manipulation of the argument id leads to sql injection. • https://github.com/wuyanzu-lab/cve/blob/main/sql.md https://vuldb.com/?ctiid.279961 https://vuldb.com/?id.279961 https://vuldb.com/?submit.420745 https://www.sourcecodester.com • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •

CVSS: 6.5EPSS: 0%CPEs: 1EXPL: 1

A vulnerability was found in SourceCodester Online Eyewear Shop 1.0. It has been classified as critical. Affected is an unknown function of the file /admin/?page=products/view_product. The manipulation of the argument id leads to sql injection. • https://github.com/r1ckyL/cve/blob/main/sql.md https://vuldb.com/?ctiid.279960 https://vuldb.com/?id.279960 https://vuldb.com/?submit.420744 https://www.sourcecodester.com • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •

CVSS: 6.5EPSS: 0%CPEs: 1EXPL: 1

A vulnerability classified as critical was found in SourceCodester Online Eyewear Shop 1.0. Affected by this vulnerability is the function delete_category of the file /classes/Master.php?f=delete_category. The manipulation of the argument id leads to sql injection. The attack can be launched remotely. • https://github.com/o0wll/cve/blob/main/sql.md https://vuldb.com/?ctiid.278821 https://vuldb.com/?id.278821 https://vuldb.com/?submit.412748 https://www.sourcecodester.com • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •

CVSS: 6.5EPSS: 0%CPEs: 1EXPL: 1

A vulnerability was found in SourceCodester Online Eyewear Shop 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /Users.phpf=save of the component User Creation Handler. The manipulation of the argument type with the input 1 leads to improper authorization. The attack may be launched remotely. • https://github.com/41lai/cve/blob/main/add.md https://vuldb.com/?ctiid.278252 https://vuldb.com/?id.278252 https://vuldb.com/?submit.411565 https://www.sourcecodester.com • CWE-285: Improper Authorization •

CVSS: 6.5EPSS: 0%CPEs: 1EXPL: 1

A vulnerability was found in SourceCodester Online Eyewear Shop 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file view_category.php. The manipulation of the argument id leads to sql injection. The attack can be launched remotely. • https://github.com/41lai/cve/blob/main/sql.md https://vuldb.com/?ctiid.278251 https://vuldb.com/?id.278251 https://vuldb.com/?submit.411564 https://www.sourcecodester.com • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •