Canteen Management System Project ≫ Canteen Management System
33 Schwachstellen gefunden.
CVE-2022-43144
- EPSS 1.91%
- Veröffentlicht 08.11.2022 23:15:12
- Zuletzt bearbeitet 01.05.2025 19:15:54
A cross-site scripting (XSS) vulnerability in Canteen Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
CVE-2022-43049
- EPSS 0.26%
- Veröffentlicht 07.11.2022 22:15:10
- Zuletzt bearbeitet 05.05.2025 18:15:37
Canteen Management System Project v1.0 was discovered to contain a SQL injection vulnerability via the component /youthappam/add-food.php.
CVE-2022-43331
- EPSS 0.26%
- Veröffentlicht 01.11.2022 19:15:11
- Zuletzt bearbeitet 02.05.2025 21:15:22
Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /php_action/printOrder.php.
CVE-2022-43330
- EPSS 0.26%
- Veröffentlicht 01.11.2022 19:15:11
- Zuletzt bearbeitet 02.05.2025 21:15:22
Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /editorder.php.
CVE-2022-43329
- EPSS 0.26%
- Veröffentlicht 01.11.2022 19:15:11
- Zuletzt bearbeitet 02.05.2025 21:15:22
Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /print.php.
CVE-2022-43328
- EPSS 0.26%
- Veröffentlicht 01.11.2022 19:15:11
- Zuletzt bearbeitet 02.05.2025 21:15:21
Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /editorder.php.
CVE-2022-43233
- EPSS 0.26%
- Veröffentlicht 28.10.2022 18:15:13
- Zuletzt bearbeitet 07.05.2025 14:15:35
Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the userid parameter at /php_action/fetchSelectedUser.php.
CVE-2022-43232
- EPSS 0.26%
- Veröffentlicht 28.10.2022 18:15:13
- Zuletzt bearbeitet 07.05.2025 14:15:35
Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the userid parameter at /php_action/fetchOrderData.php.
CVE-2022-43231
- EPSS 0.94%
- Veröffentlicht 28.10.2022 18:15:13
- Zuletzt bearbeitet 07.05.2025 15:15:56
Canteen Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via /youthappam/manage_website.php. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.
CVE-2022-43276
- EPSS 0.26%
- Veröffentlicht 28.10.2022 14:15:15
- Zuletzt bearbeitet 07.05.2025 14:15:36
Canteen Management System v1.0 was discovered to contain a SQL injection vulnerability via the productId parameter at /php_action/fetchSelectedfood.php.