Vulnerabilities (CVE)

Filtered by vendor Cse Bookstore Project Subscribe
Filtered by product Cse Bookstore
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-36112 1 Cse Bookstore Project 1 Cse Bookstore 2024-02-28 7.5 HIGH 9.8 CRITICAL
CSE Bookstore version 1.0 is vulnerable to time-based blind, boolean-based blind and OR error-based SQL injection in pubid parameter in bookPerPub.php and in cart.php. A successful exploitation of this vulnerability will lead to an attacker dumping the entire database on which the web application is running.