Vulnerability index

Browse CVEs

9 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.8 CVE-2024-28559 SQL injection vulnerability in Niushop B2B2C v.5.3.3 and before allows an attacker to escalate privileges via the setPrice() function of the Goodsbat… B2b2c Multi Business after 5.3.3 Fix from $1,9502024-03-22 MEDIUM 5.4 CVE-2024-28560 SQL injection vulnerability in Niushop B2B2C v.5.3.3 and before allows an attacker to escalate privileges via the deleteArea() function of the Addres… B2b2c Multi Business after 5.3.3 Fix from $1,6002024-03-22 CRITICAL 9.8 CVE-2024-25247 SQL Injection vulnerability in /app/api/controller/Store.php in Niushop B2B2C V5 allows attackers to run arbitrary SQL commands via latitude and long… B2b2c Multi Business No fix yet Fix from $2,3002024-02-26 CRITICAL 9.8 CVE-2024-25248 SQL Injection vulnerability in the orderGoodsDelivery() function in Niushop B2B2C V5 allows attackers to run arbitrary SQL commands via the order_id … B2b2c Multi Business No fix yet Fix from $2,3002024-02-26 CRITICAL 9.8 CVE-2024-0933 A vulnerability was found in Niushop B2B2C V5 and classified as critical. Affected by this issue is some unknown functionality of the file \app\model… B2b2c Multi Business Mitigation only Fix from $2,3002024-01-26 CRITICAL 9.8 CVE-2020-19672 Niushop B2B2C Multi-business basic version V1.11, can bypass the administrator to obtain the background upload interface, through parameter upload, b… Niushop No fix yet Fix from $2,3002020-09-30 HIGH 8.8 CVE-2019-16311 NIUSHOP V1.11 has CSRF via search_info to index.php. Niushop No fix yet Fix from $1,9502019-09-14 MEDIUM 5.4 CVE-2019-16310 NIUSHOP V1.11 has XSS via the index.php?s=/admin URI. Niushop No fix yet Fix from $1,6002019-09-14 HIGH 8.8 CVE-2018-14570 A file upload vulnerability in application/shop/controller/member.php in Niushop B2B2C Multi-business basic version V1.11 allows any remote member to… B2b2c Multi Business No fix yet Fix from $1,9502018-07-23