Vulnerabilities (CVE)

Filtered by vendor Rental Bike Script Project Subscribe
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-7434 1 Rental Bike Script Project 1 Rental Bike Script 2024-02-28 4.0 MEDIUM 6.5 MEDIUM
PHP Scripts Mall Rental Bike Script 2.0.3 has directory traversal via a direct request for a listing of an uploads directory.
CVE-2019-7432 1 Rental Bike Script Project 1 Rental Bike Script 2024-02-28 3.5 LOW 5.4 MEDIUM
PHP Scripts Mall Rental Bike Script 2.0.3 has HTML injection via the STREET field in the Profile Edit section.
CVE-2019-7433 1 Rental Bike Script Project 1 Rental Bike Script 2024-02-28 6.8 MEDIUM 8.8 HIGH
PHP Scripts Mall Rental Bike Script 2.0.3 has Cross-Site Request Forgery (CSRF) via the Edit Profile feature.