VYPR

CSE Bookstore

by CSE Bookstore

CVEs (1)

  • CVE-2020-36112Jan 4, 2021
    risk 0.07cvss epss 0.89

    CSE Bookstore version 1.0 is vulnerable to time-based blind, boolean-based blind and OR error-based SQL injection in pubid parameter in bookPerPub.php and in cart.php. A successful exploitation of this vulnerability will lead to an attacker dumping the entire database on which…