CVE
Vendors
Products
Updated
CVSS v2
CVSS v3
Online Hotel Booking System Pro PHP Version 1.3 has Persistent Cross-site Scripting in Customer registration-form all-tags.
Michael-design iChat Realtime PHP Live Support System 1.6 has persistent Cross-site Scripting via chat,text-filed tags.
DesignMasterEvents Conference management 1.0.0 has cross site scripting via the 'certificate.php'
13enforme CMS 1.0 has Cross Site Scripting via the "content.php" id parameter.
DesignMasterEvents Conference management 1.0.0 allows SQL Injection via the username field on the administrator login page.
13enforme CMS 1.0 has SQL Injection via the 'content.php' id parameter.
SQL injection can occur in Soluzione Globale Ecommerce CMS v1 via the parameter " offerta.php"
KandNconcepts Club CMS 1.1 and 1.2 has cross site scripting via the 'team.php,player.php,club.php' id parameter.
Webexcels Ecommerce CMS 2.x, 2017, 2018, 2019, 2020 has SQL Injection via the 'content.php' id parameter.
Webexcels Ecommerce CMS 2.x, 2017, 2018, 2019, 2020 has cross site scripting via the 'search.php' id parameter.
