Vulnerabilities (CVE)

Filtered by vendor Merchandise Online Store Project Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-30423 1 Merchandise Online Store Project 1 Merchandise Online Store 2022-06-10 7.5 HIGH 9.8 CRITICAL
Merchandise Online Store v1.0 by oretnom23 has an arbitrary code execution (RCE) vulnerability in the user profile upload point in the system information.
CVE-2022-30454 1 Merchandise Online Store Project 1 Merchandise Online Store 2022-05-28 7.5 HIGH 9.8 CRITICAL
Merchandise Online Store 1.0 is vulnerable to SQL Injection via /vloggers_merch/classes/Master.php?f=delete_product.
CVE-2022-30395 1 Merchandise Online Store Project 1 Merchandise Online Store 2022-05-23 7.5 HIGH 9.8 CRITICAL
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/classes/Master.php?f=delete_cart.
CVE-2022-30392 1 Merchandise Online Store Project 1 Merchandise Online Store 2022-05-23 7.5 HIGH 9.8 CRITICAL
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/classes/Master.php?f=delete_sub_category.
CVE-2022-30391 1 Merchandise Online Store Project 1 Merchandise Online Store 2022-05-23 7.5 HIGH 9.8 CRITICAL
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/classes/Master.php?f=delete_category.
CVE-2022-30387 1 Merchandise Online Store Project 1 Merchandise Online Store 2022-05-23 7.5 HIGH 9.8 CRITICAL
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/classes/Master.php?f=pay_order.
CVE-2022-30385 1 Merchandise Online Store Project 1 Merchandise Online Store 2022-05-23 7.5 HIGH 9.8 CRITICAL
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/classes/Master.php?f=delete_order.
CVE-2022-30386 1 Merchandise Online Store Project 1 Merchandise Online Store 2022-05-23 7.5 HIGH 9.8 CRITICAL
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/classes/Master.php?f=delete_featured.
CVE-2022-30384 1 Merchandise Online Store Project 1 Merchandise Online Store 2022-05-23 7.5 HIGH 9.8 CRITICAL
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/classes/Master.php?f=delete_inventory.