Vendorsoretnom23simple_online_book_store_systemall versions
Vulnerabilities

oretnom23 Simple Online Book Store System

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2024-6951
SourceCodester Simple Online Book Store System admin_delete.php sql injection
Published 2024-07-21 · Modified
9.8EPSS 0.005
CVE-2025-63891
Information Disclosure in web-accessible backup file in SourceCodester Simple Online Book Store System allows a remote unauthenticated attacker to disclose full database contents (including schema and credential hashes) via an unauthenticated HTTP GET request to /obs/database/obs_db.sql.
Published 2025-11-14 · Modified
7.5EPSS 0.005
CVE-2022-37796
In Simple Online Book Store System 1.0 in /admin_book.php the Title, Author, and Description parameters are vulnerable to Cross Site Scripting(XSS).
Published 2022-09-11 · Modified
5.4EPSS 0.005