Vulnerabilities > Ingredient Stock Management System Project > Ingredient Stock Management System > Critical
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-07-05 | CVE-2022-32311 | SQL Injection vulnerability in Ingredient Stock Management System Project Ingredient Stock Management System 1.0 Ingredient Stock Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /isms/admin/stocks/view_stock.php. | 9.8 |
2022-07-05 | CVE-2022-32310 | Incorrect Authorization vulnerability in Ingredient Stock Management System Project Ingredient Stock Management System 1.0 An access control issue in Ingredient Stock Management System v1.0 allows attackers to take over user accounts via a crafted POST request to /isms/classes/Users.php. | 9.8 |