Note:
This project will be discontinued after December 13, 2021. [more]
Product:
E\-Negosyo_system
(E\-Negosyo_system_project)Repositories |
Unknown: This might be proprietary software. |
#Vulnerabilities | 2 |
Date | Id | Summary | Products | Score | Patch | Annotated |
---|---|---|---|---|---|---|
2021-10-29 | CVE-2021-41674 | An SQL Injection vulnerability exists in Sourcecodester E-Negosyo System 1.0 via the user_email parameter in /admin/login.php. | E\-Negosyo_system | 9.8 | ||
2021-10-29 | CVE-2021-41675 | A Remote Code Execution (RCE) vulnerabilty exists in Sourcecodester E-Negosyo System 1.0 in /admin/produts/controller.php via the doInsert function, which validates images with getImageSizei. . | E\-Negosyo_system | 7.2 |