Vulnerabilities > Webvendome Project

DATE CVE VULNERABILITY TITLE RISK
2022-11-17 CVE-2022-36787 SQL Injection vulnerability in Webvendome Project Webvendome 1.0
webvendome - webvendome SQL Injection. SQL Injection in the Parameter " DocNumber" Request : Get Request : /webvendome/showfiles.aspx?jobnumber=nullDoc Number=HERE.
network
low complexity
webvendome-project CWE-89
critical
9.8
2022-11-17 CVE-2022-39178 Path Traversal vulnerability in Webvendome Project Webvendome 1.0
Webvendome - webvendome Internal Server IP Disclosure. Send GET Request to the request which is shown in the picture. Internal Server IP and Full path disclosure.
network
low complexity
webvendome-project CWE-22
5.3