Online Book Store ProjectCVEs & Vulnerabilities
4 CVEs affecting Online Book Store Project products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.
4 CVEs→ All vendors
Most Affected Products
online book store 4
CVE-2021-34249HIGH
SQL injection vulnerability in sourcecodester online-book-store 1.0 allows remote attackers to view sensitive information via the id paremeter in application URL.
25 Feb 2023
7.5
CVSS
CVE-2020-23763CRITICAL
SQL injection in admin.php in Online Book Store 1.0 allows remote attackers to execute arbitrary SQL commands and bypass authentication.
9 Apr 2021
9.8
CVSS
CVE-2020-36003HIGH
The id parameter in detail.php of Online Book Store v1.0 is vulnerable to union-based blind SQL injection, which leads to the ability to retrieve all databases.
17 Feb 2021
7.5
CVSS
CVE-2020-24115CRITICAL
In projectworlds Online Book Store 1.0 Use of Hard-coded Credentials in source code leads to admin panel access.
31 Aug 2020
9.8
CVSS
← PrevPage 1 / 1Next →