CVE-2023-23157
- EPSS 0.39%
- Veröffentlicht 27.02.2023 16:15:12
- Zuletzt bearbeitet 21.11.2024 07:45:54
A stored cross-site scripting (XSS) vulnerability in Art Gallery Management System Project v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the fullname parameter on the enquiry page.
CVE-2023-23156
- EPSS 4.65%
- Veröffentlicht 27.02.2023 16:15:12
- Zuletzt bearbeitet 21.11.2024 07:45:54
Art Gallery Management System Project in PHP 1.0 was discovered to contain a SQL injection vulnerability via the pid parameter in the single-product page.
CVE-2023-23155
- EPSS 0.85%
- Veröffentlicht 27.02.2023 16:15:12
- Zuletzt bearbeitet 21.11.2024 07:45:54
Art Gallery Management System Project in PHP 1.0 was discovered to contain a SQL injection vulnerability via the username parameter in the Admin Login.
CVE-2023-23161
- EPSS 10.86%
- Veröffentlicht 10.02.2023 20:15:53
- Zuletzt bearbeitet 21.11.2024 07:45:54
A reflected cross-site scripting (XSS) vulnerability in Art Gallery Management System Project v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the artname parameter under ART TYPE option in the naviga...
CVE-2023-23163
- EPSS 3.92%
- Veröffentlicht 10.02.2023 20:15:53
- Zuletzt bearbeitet 21.11.2024 07:45:55
Art Gallery Management System Project v1.0 was discovered to contain a SQL injection vulnerability via the editid parameter.
CVE-2023-23162
- EPSS 2.92%
- Veröffentlicht 10.02.2023 20:15:53
- Zuletzt bearbeitet 21.11.2024 07:45:55
Art Gallery Management System Project v1.0 was discovered to contain a SQL injection vulnerability via the cid parameter at product.php.