CVE-2020-28140
Published Nov 17, 2020SourceCodester Online Clothing Store 1.0 is affected by an arbitrary file upload via the image upload feature of Products.php.
Vendor/product archive
3 CVEs tagged to online_clothing_store_project / online_clothing_store — 2 Critical, 0 High, 1 Medium, 0 Low, 0 Unrated.
SourceCodester Online Clothing Store 1.0 is affected by an arbitrary file upload via the image upload feature of Products.php.
SourceCodester Online Clothing Store 1.0 is affected by a cross-site scripting (XSS) vulnerability via a Offer Detail field in offer.php.
SourceCodester Online Clothing Store 1.0 is affected by a SQL Injection via the txtUserName parameter to login.php.