Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
merchandise online store project merchandise online store 1.0 vulnerabilities and exploits
(subscribe to this query)
668
VMScore
CVE-2022-30386
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/classes/Master.php?f=delete_featured.
Merchandise Online Store Project Merchandise Online Store 1.0
668
VMScore
CVE-2022-30391
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/classes/Master.php?f=delete_category.
Merchandise Online Store Project Merchandise Online Store 1.0
578
VMScore
CVE-2022-30393
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/admin/?page=product/manage_product&id=.
Merchandise Online Store Project Merchandise Online Store 1.0
578
VMScore
CVE-2022-30396
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/admin/?page=inventory/manage_inventory&id=.
Merchandise Online Store Project Merchandise Online Store 1.0
578
VMScore
CVE-2022-30399
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/admin/?page=maintenance/manage_category&id=.
Merchandise Online Store Project Merchandise Online Store 1.0
578
VMScore
CVE-2022-30400
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/admin/orders/view_order.php?view=user&id=.
Merchandise Online Store Project Merchandise Online Store 1.0
NA
CVE-2022-42236
A Stored XSS issue in Merchandise Online Store v.1.0 allows to injection of Arbitrary JavaScript in edit account form.
Merchandise Online Store Project Merchandise Online Store 1.0
1 Github repository
NA
CVE-2022-42237
A SQL Injection issue in Merchandise Online Store v.1.0 allows an malicious user to log in to the admin account.
Merchandise Online Store Project Merchandise Online Store 1.0
668
VMScore
CVE-2022-30384
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/classes/Master.php?f=delete_inventory.
Merchandise Online Store Project Merchandise Online Store 1.0
668
VMScore
CVE-2022-30385
Merchandise Online Store v1.0 is vulnerable to SQL Injection via /vloggers_merch/classes/Master.php?f=delete_order.
Merchandise Online Store Project Merchandise Online Store 1.0
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-5248
CVE-2024-3110
CVE-2024-5552
CVE-2024-29415
HTML injection
CVE-2024-3095
TCP
type confusion
CVE-2024-1800
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
1
2
NEXT »