Filtered by vendor Canteen Management System Project Subscriptions
Total 33 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2022-43144 1 Canteen Management System Project 1 Canteen Management System 2022-11-09 5.4 Medium
A cross-site scripting (XSS) vulnerability in Canteen Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
CVE-2022-43278 1 Canteen Management System Project 1 Canteen Management System 2022-11-09 7.2 High
Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the categoriesId parameter at /php_action/fetchSelectedCategories.php.
CVE-2022-43277 1 Canteen Management System Project 1 Canteen Management System 2022-11-09 7.2 High
Canteen Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via ip/youthappam/php_action/editFile.php. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.
CVE-2022-43049 1 Canteen Management System Project 1 Canteen Management System 2022-11-08 7.2 High
Canteen Management System Project v1.0 was discovered to contain a SQL injection vulnerability via the component /youthappam/add-food.php.
CVE-2022-43330 1 Canteen Management System Project 1 Canteen Management System 2022-11-01 7.2 High
Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /editorder.php.
CVE-2022-43329 1 Canteen Management System Project 1 Canteen Management System 2022-11-01 7.2 High
Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /print.php.
CVE-2022-43328 1 Canteen Management System Project 1 Canteen Management System 2022-11-01 7.2 High
Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /editorder.php.
CVE-2022-43331 1 Canteen Management System Project 1 Canteen Management System 2022-11-01 7.2 High
Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /php_action/printOrder.php.
CVE-2022-43233 1 Canteen Management System Project 1 Canteen Management System 2022-10-28 7.2 High
Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the userid parameter at /php_action/fetchSelectedUser.php.
CVE-2022-43232 1 Canteen Management System Project 1 Canteen Management System 2022-10-28 7.2 High
Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the userid parameter at /php_action/fetchOrderData.php.
CVE-2022-43231 1 Canteen Management System Project 1 Canteen Management System 2022-10-28 7.2 High
Canteen Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via /youthappam/manage_website.php. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.
CVE-2022-43276 1 Canteen Management System Project 1 Canteen Management System 2022-10-28 7.2 High
Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the productId parameter at /php_action/fetchSelectedfood.php.
CVE-2022-43275 1 Canteen Management System Project 1 Canteen Management System 2022-10-28 7.2 High
Canteen Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via /youthappam/php_action/editProductImage.php. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.