Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Wangqiao258

#16854of 53,639
15.9Total CVSS
Vulnerabilities · 2
Medium
1
Critical
1
PT-2022-12334
6.1
2022-01-23
Appcms · Appcms · CVE-2021-45380
**Name of the Vulnerable Software and Affected Versions** AppCMS version 2.0.101 **Description** The issue is related to a XSS injection vulnerability in the `templates/m/inc head.php` file. **Recommendations** For AppCMS version 2.0.101, consider disabling the `inc head.php` template until a patch is available to prevent potential XSS injection attacks.
PT-2022-12509
9.8
2022-01-23
Projectworlds · Online-Shopping-Webvsite-In-Php · CVE-2021-46024
**Name of the Vulnerable Software and Affected Versions** Projectworlds online-shopping-webvsite-in-php version 1.0 **Description** The issue is related to a SQL Injection vulnerability. This vulnerability can be exploited via the `id` parameter in the cart add.php file. No login is required to exploit this issue. **Recommendations** For Projectworlds online-shopping-webvsite-in-php version 1.0, consider restricting access to the `id` parameter in the cart add.php file until a patch is available. As a temporary workaround, avoid using the `id` parameter in the affected cart add.php file to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.