7 results (0.004 seconds)

CVSS: 5.4EPSS: 0%CPEs: 1EXPL: 3

15 Jul 2022 — Cross Site Scripting (XSS) vulnerability in sourcecodester Multi Restaurant Table Reservation System 1.0 via the Restaurant Name field to /dashboard/profile.php. Una vulnerabilidad de tipo Cross Site Scripting (XSS) en sourcecodester Multi Restaurant Table Reservation System versión 1.0, por medio del campo Restaurant Name en el archivo /dashboard/profile.php • https://github.com/yunaranyancat/poc-dump/tree/main/MultiRestaurantReservationSystem/1.0 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 5.4EPSS: 0%CPEs: 1EXPL: 3

15 Jul 2022 — Cross Site Scripting (XSS) vulnerability in sourcecodester Multi Restaurant Table Reservation System 1.0 via the Table Name field to /dashboard/table-list.php. Una vulnerabilidad de tipo Cross Site Scripting (XSS) en sourcecodester Multi Restaurant Table Reservation System versión 1.0, por medio del campo Table Name en el archivo /dashboard/table-list.php • https://github.com/yunaranyancat/poc-dump/tree/main/MultiRestaurantReservationSystem/1.0 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 5.4EPSS: 0%CPEs: 1EXPL: 3

15 Jul 2022 — Cross Site Scripting (XSS) vulnerability in sourcecodester Multi Restaurant Table Reservation System 1.0 via the Item Name field to /dashboard/menu-list.php. Una vulnerabilidad de tipo Cross Site Scripting (XSS) en sourcecodester Multi Restaurant Table Reservation System versión 1.0, por medio del campo Item Name en el archivo /dashboard/menu-list.php • https://github.com/yunaranyancat/poc-dump/tree/main/MultiRestaurantReservationSystem/1.0 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 5.4EPSS: 0%CPEs: 1EXPL: 3

15 Jul 2022 — Cross Site Scripting (XSS) vulnerability in sourcecodester Multi Restaurant Table Reservation System 1.0 via the Made field to /dashboard/menu-list.php. Una vulnerabilidad de tipo Cross Site Scripting (XSS) en sourcecodester Multi Restaurant Table Reservation System versión 1.0, por medio del campo Made en el archivo /dashboard/menu-list.php • https://github.com/yunaranyancat/poc-dump/tree/main/MultiRestaurantReservationSystem/1.0 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 5.4EPSS: 0%CPEs: 1EXPL: 3

15 Jul 2022 — Cross Site Scripting (XSS) vulnerability in sourcecodester Multi Restaurant Table Reservation System 1.0 via the Area(food_type) field to /dashboard/menu-list.php. Una vulnerabilidad de tipo Cross Site Scripting (XSS) en sourcecodester Multi Restaurant Table Reservation System versión 1.0, por medio del campo Area(food_type) en el archivo /dashboard/menu-list.php • https://github.com/yunaranyancat/poc-dump/tree/main/MultiRestaurantReservationSystem/1.0 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 5.4EPSS: 0%CPEs: 1EXPL: 2

20 Jan 2022 — A Cross-Site Scripting (XSS) vulnerability exists in Courcecodester Multi Restaurant Table Reservation System 1.0 in register.php via the (1) fullname, (2) phone, and (3) address parameters. Se presenta una vulnerabilidad de tipo Cross-Site Scripting (XSS) en Courcecodester Multi Restaurant Table Reservation System versión 1.0, en el archivo register.php por medio de los parámetros (1) fullname, (2) phone, y (3) address • https://github.com/nu11secur1ty/CVE-nu11secur1ty/tree/main/vendors/janobe/Multi%20Restaurant%20Table%20Reservation%20System • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 9.8EPSS: 25%CPEs: 1EXPL: 2

02 Dec 2020 — The file view-chair-list.php in Multi Restaurant Table Reservation System 1.0 does not perform input validation on the table_id parameter which allows unauthenticated SQL Injection. An attacker can send malicious input in the GET request to /dashboard/view-chair-list.php?table_id= to trigger the vulnerability. El archivo view-chair-list.php en Multi Restaurant Table Reservation System versión 1.0, no lleva a cabo la comprobación de entrada en el parámetro table_id, lo que permite una inyección SQL no autent... • https://github.com/BigTiger2020/-Multi-Restaurant-Table-Reservation-System/blob/main/README.md • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •