Vulnerabilities > Online Food Ordering System Project > Online Food Ordering System > 1.0

DATE CVE VULNERABILITY TITLE RISK
2024-01-05 CVE-2024-0247 Unspecified vulnerability in Online Food Ordering System Project Online Food Ordering System 1.0
A vulnerability classified as critical was found in CodeAstro Online Food Ordering System 1.0.
network
low complexity
online-food-ordering-system-project
critical
9.8
2023-03-14 CVE-2023-27073 Cross-Site Request Forgery (CSRF) vulnerability in Online Food Ordering System Project Online Food Ordering System 1.0
A Cross-Site Request Forgery (CSRF) in Online Food Ordering System v1.0 allows attackers to change user details and credentials via a crafted POST request.
6.5
2023-01-20 CVE-2020-29297 SQL Injection vulnerability in Online Food Ordering System Project Online Food Ordering System 1.0
Multiple SQL Injection vulnerabilities in tourist5 Online-food-ordering-system 1.0.
network
low complexity
online-food-ordering-system-project CWE-89
critical
9.8
2022-09-02 CVE-2022-36759 SQL Injection vulnerability in Online Food Ordering System Project Online Food Ordering System 1.0
Online Food Ordering System v1.0 was discovered to contain a SQL injection vulnerability via the component /dishes.php?res_id=.
network
low complexity
online-food-ordering-system-project CWE-89
critical
9.8
2022-05-25 CVE-2022-29650 SQL Injection vulnerability in Online Food Ordering System Project Online Food Ordering System 1.0
Online Food Ordering System v1.0 was discovered to contain a SQL injection vulnerability via the Search parameter at /online-food-order/food-search.php.
network
low complexity
online-food-ordering-system-project CWE-89
critical
9.8
2022-05-25 CVE-2022-29651 Unrestricted Upload of File with Dangerous Type vulnerability in Online Food Ordering System Project Online Food Ordering System 1.0
An arbitrary file upload vulnerability in the Select Image function of Online Food Ordering System v1.0 allows attackers to execute arbitrary code via a crafted PHP file.
7.2