Vulnerabilities > CSE Bookstore Project

DATE CVE VULNERABILITY TITLE RISK
2021-01-04 CVE-2020-36112 SQL Injection vulnerability in CSE Bookstore Project CSE Bookstore 1.0
CSE Bookstore version 1.0 is vulnerable to time-based blind, boolean-based blind and OR error-based SQL injection in pubid parameter in bookPerPub.php and in cart.php.
network
low complexity
cse-bookstore-project CWE-89
critical
9.8