Vulnerabilities > Online Shopping Alphaware Project

DATE CVE VULNERABILITY TITLE RISK
2021-06-02 CVE-2020-25362 SQL Injection vulnerability in Online Shopping Alphaware Project Online Shopping Alphaware 1.0
The id paramater in Online Shopping Alphaware 1.0 has been discovered to be vulnerable to an Error-Based blind SQL injection in the /alphaware/details.php path.
network
low complexity
online-shopping-alphaware-project CWE-89
7.5
2020-08-17 CVE-2020-24208 SQL Injection vulnerability in Online Shopping Alphaware Project Online Shopping Alphaware 1.0
A SQL injection vulnerability in SourceCodester Online Shopping Alphaware 1.0 allows remote unauthenticated attackers to bypass the authentication process via email and password parameters.
network
low complexity
online-shopping-alphaware-project CWE-89
critical
9.8