Vulnerabilities (CVE)

Filtered by vendor Simple Bakery Shop Management System Project Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-32987 1 Simple Bakery Shop Management System Project 1 Simple Bakery Shop Management System 2022-06-29 3.5 LOW 4.8 MEDIUM
Multiple cross-site scripting (XSS) vulnerabilities in /bsms/?page=manage_account of Simple Bakery Shop Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Username or Full Name fields.
CVE-2022-28063 1 Simple Bakery Shop Management System Project 1 Simple Bakery Shop Management System 2022-04-27 4.0 MEDIUM 4.9 MEDIUM
Simple Bakery Shop Management System v1.0 contains a file disclosure via /bsms/?page=products.