E-negosyo System ProjectCVEs & Vulnerabilities
2 CVEs affecting E-negosyo System Project products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.
2 CVEs→ All vendors
Most Affected Products
e-negosyo system 2
CVE-2021-41675HIGH
A Remote Code Execution (RCE) vulnerabilty exists in Sourcecodester E-Negosyo System 1.0 in /admin/produts/controller.php via the doInsert function, which validates images with getImageSizei. .
29 Oct 2021
7.2
CVSS
CVE-2021-41674CRITICAL
An SQL Injection vulnerability exists in Sourcecodester E-Negosyo System 1.0 via the user_email parameter in /admin/login.php.
29 Oct 2021
9.8
CVSS
← PrevPage 1 / 1Next →