VYPR

Online Clothing Store

by Sourcecodester

CVEs (5)

  • CVE-2020-28140CriNov 17, 2020
    risk 0.64cvss 9.8epss 0.02

    SourceCodester Online Clothing Store 1.0 is affected by an arbitrary file upload via the image upload feature of Products.php.

  • CVE-2020-28138CriNov 17, 2020
    risk 0.64cvss 9.8epss 0.02

    SourceCodester Online Clothing Store 1.0 is affected by a SQL Injection via the txtUserName parameter to login.php.

  • CVE-2020-28139MedNov 17, 2020
    risk 0.40cvss 6.1epss 0.01

    SourceCodester Online Clothing Store 1.0 is affected by a cross-site scripting (XSS) vulnerability via a Offer Detail field in offer.php.

  • CVE-2026-19903MedAug 15, 2026
    risk 0.34cvss 5.3epss

    A vulnerability has been found in SourceCodester Online Clothing Store 1.0. This affects an unknown part of the file /db/shopping.sql of the component SQL Database Backup. The manipulation leads to files or directories accessible. Remote exploitation of the attack is possible.…

  • CVE-2026-19229MedAug 7, 2026
    risk 0.34cvss 5.3epss 0.00

    A vulnerability was determined in SourceCodester Online Clothing Store. Affected by this issue is some unknown functionality of the file /_notes/ of the component Dreamweaver Metadata Files. Executing a manipulation can lead to file and directory information exposure. The attack…