Vulnerabilities (CVE)

Filtered by vendor Automotive Shop Management System Project Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-30495 1 Automotive Shop Management System Project 1 Automotive Shop Management System 2022-06-10 7.5 HIGH 9.8 CRITICAL
In oretnom23 Automotive Shop Management System v1.0, the name id parameter is vulnerable to IDOR - Broken Access Control allowing attackers to change the admin password(vertical privilege escalation)
CVE-2022-30493 1 Automotive Shop Management System Project 1 Automotive Shop Management System 2022-06-03 10.0 HIGH 9.8 CRITICAL
In oretnom23 Automotive Shop Management System v1.0, the product id parameter suffers from a blind SQL Injection Vulnerability allowing remote attackers to dump all database credential and gain admin access(privilege escalation).