Vulnerabilities > Oretnom23 > Medium

DATE CVE VULNERABILITY TITLE RISK
2025-04-16 CVE-2025-3692 Code Injection vulnerability in Oretnom23 Online Eyewear Shop 1.0
A vulnerability was found in SourceCodester Online Eyewear Shop 1.0.
network
low complexity
oretnom23 CWE-94
5.4
2025-03-23 CVE-2025-2651 Information Exposure Through Directory Listing vulnerability in Oretnom23 Online Eyewear Shop 1.0
A vulnerability, which was classified as problematic, was found in SourceCodester Online Eyewear Shop 1.0.
network
low complexity
oretnom23 CWE-548
5.3
2025-01-14 CVE-2025-0464 Cross-site Scripting vulnerability in Oretnom23 Task Reminder System 1.0
A vulnerability was found in SourceCodester Task Reminder System 1.0.
network
low complexity
oretnom23 CWE-79
4.8
2024-11-15 CVE-2024-11247 Unspecified vulnerability in Oretnom23 Online Eyewear Shop 1.0
A vulnerability has been found in SourceCodester Online Eyewear Shop 1.0 and classified as problematic.
network
low complexity
oretnom23
5.4
2024-11-08 CVE-2024-51030 SQL Injection vulnerability in Oretnom23 CAB Management System 1.0
A SQL injection vulnerability in manage_client.php and view_cab.php of Sourcecodester Cab Management System 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter, leading to unauthorized access and potential compromise of sensitive data within the database.
network
low complexity
oretnom23 CWE-89
6.5
2024-11-08 CVE-2024-51031 Cross-site Scripting vulnerability in Oretnom23 CAB Management System 1.0
A Cross-site Scripting (XSS) vulnerability in manage_account.php in Sourcecodester Cab Management System 1.0 allows remote authenticated users to inject arbitrary web scripts via the "First Name," "Middle Name," and "Last Name" fields.
network
low complexity
oretnom23 CWE-79
5.4
2024-11-08 CVE-2024-51032 Cross-site Scripting vulnerability in Oretnom23 Toll TAX Management System 1.0
A Cross-site Scripting (XSS) vulnerability in manage_recipient.php of Sourcecodester Toll Tax Management System 1.0 allows remote authenticated users to inject arbitrary web scripts via the "owner" input field.
network
low complexity
oretnom23 CWE-79
5.4
2024-10-15 CVE-2024-9952 Cross-site Scripting vulnerability in Oretnom23 Online Eyewear Shop 1.0
A vulnerability was found in SourceCodester Online Eyewear Shop 1.0 and classified as problematic.
network
low complexity
oretnom23 CWE-79
4.8
2024-10-13 CVE-2024-9906 Cross-site Scripting vulnerability in Oretnom23 Online Eyewear Shop 1.0
A vulnerability, which was classified as problematic, was found in SourceCodester Online Eyewear Shop 1.0.
network
low complexity
oretnom23 CWE-79
5.4
2024-10-10 CVE-2024-9808 SQL Injection vulnerability in Oretnom23 Online Eyewear Shop 1.0
A vulnerability was found in SourceCodester Online Eyewear Shop 1.0.
network
low complexity
oretnom23 CWE-89
6.5