RSS   Vulnerabilities for 'Online clothing store'   RSS

2020-11-17
 
CVE-2020-28140

CWE-434
 

 
SourceCodester Online Clothing Store 1.0 is affected by an arbitrary file upload via the image upload feature of Products.php.

 
 
CVE-2020-28139

CWE-79
 

 
SourceCodester Online Clothing Store 1.0 is affected by a cross-site scripting (XSS) vulnerability via a Offer Detail field in offer.php.

 
 
CVE-2020-28138

CWE-89
 

 
SourceCodester Online Clothing Store 1.0 is affected by a SQL Injection via the txtUserName parameter to login.php.

 


Copyright 2024, cxsecurity.com

 

Back to Top