Known vulnerabilities in Gadget Works Online Ordering System
Vendor:
sourcecodester
Software:
Gadget Works Online Ordering System
Software CPE:
cpe:2.3:a:sourcecodester:gadget_works_online_ordering_system:*:*:*:*:*:*:*:*
Website:
https://www.sourcecodester.com/
Total vulnerabilities:
4
Public exploits:
0
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
Vulnerabilities (4)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU52896 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') |
CWE-89 | High | - | 05.05.2021 |
SB2021050514 |
||
| #VU52895 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') |
CWE-89 | High | - | 05.05.2021 |
SB2021050514 |
||
| #VU52894 - Improper Control of Generation of Code ('Code Injection') |
CWE-94 | High | - | 05.05.2021 |
SB2021050514 |
||
| #VU52893 - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') |
CWE-89 | High | - | 05.05.2021 |
SB2021050514 |