Vulnerabilities (CVE)

Filtered by vendor Angeljudesuarez Subscribe
Filtered by product Online Book Store Project
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-37848 1 Angeljudesuarez 1 Online Book Store Project 2025-11-05 N/A 8.4 HIGH
SQL Injection vulnerability in Online-Bookstore-Project-In-PHP v1.0 allows a local attacker to execute arbitrary code via the admin_delete.php component.
CVE-2024-9036 1 Angeljudesuarez 1 Online Book Store Project 2025-09-26 6.5 MEDIUM 6.3 MEDIUM
A vulnerability was found in itsourcecode Online Bookstore 1.0. It has been rated as critical. This issue affects some unknown processing of the file admin_add.php. The manipulation of the argument image leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.