Vulnerabilities > Simple Water Refilling Station Management System Project

DATE CVE VULNERABILITY TITLE RISK
2021-09-07 CVE-2021-38840 SQL Injection vulnerability in Simple Water Refilling Station Management System Project Simple Water Refilling Station Management System 1.0
SQL Injection can occur in Simple Water Refilling Station Management System 1.0 via the water_refilling/classes/Login.php username parameter.
7.5
2021-09-07 CVE-2021-38841 Unrestricted Upload of File with Dangerous Type vulnerability in Simple Water Refilling Station Management System Project Simple Water Refilling Station Management System 1.0
Remote Code Execution can occur in Simple Water Refilling Station Management System 1.0 via the System Logo option on the system_info page in classes/SystemSettings.php with an update_settings action.
6.5