Total
3 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2023-48206 | 1 Mayurik | 1 Courier Management System | 2024-10-09 | N/A | 6.1 MEDIUM |
A Cross Site Scripting (XSS) vulnerability in GaatiTrack Courier Management System 1.0 allows a remote attacker to inject JavaScript via the page parameter to login.php or header.php. | |||||
CVE-2023-48823 | 1 Mayurik | 1 Courier Management System | 2024-02-05 | N/A | 9.8 CRITICAL |
A Blind SQL injection issue in ajax.php in GaatiTrack Courier Management System 1.0 allows an unauthenticated attacker to inject a payload via the email parameter during login. | |||||
CVE-2023-46974 | 1 Mayurik | 1 Courier Management System | 2024-02-05 | N/A | 5.4 MEDIUM |
Cross Site Scripting vulnerability in Best Courier Management System v.1.000 allows a remote attacker to execute arbitrary code via a crafted payload to the page parameter in the URL. |