📦

online_book_store

Vendor: online_book_store_project

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 1 Remote Access
Total CVEs 4 Total Indexed
Avg. EPSS 2.07% Exploit Prob.
Latest CVE CVE-2025-9700 Aug 30

Security Vulnerability Index

Page 1 / 1
5.5 CVSS

A flaw has been found in SourceCodester Online Book Store 1.0. This issue affects some unknown processing of the file /publisher_list.php. This manipulation of the argument pubid causes sql injection. It is possible to initiate the attack remotely. The exploit has been published and may be used.

EPSS: 0.38%
7.5 CVSS

SQL injection vulnerability in sourcecodester online-book-store 1.0 allows remote attackers to view sensitive information via the id paremeter in application URL.

EPSS: 1.23%
9.8 CVSS

SQL injection in admin.php in Online Book Store 1.0 allows remote attackers to execute arbitrary SQL commands and bypass authentication.

EPSS: 1.86%
7.5 CVSS

The id parameter in detail.php of Online Book Store v1.0 is vulnerable to union-based blind SQL injection, which leads to the ability to retrieve all databases.

EPSS: 1.49%
9.8 CVSS

In projectworlds Online Book Store 1.0 Use of Hard-coded Credentials in source code leads to admin panel access.

EPSS: 1.99%
9.8 CVSS

An unauthenticated file upload vulnerability has been identified in admin_add.php in PHPGurukul Online Book Store 1.0. The vulnerability could be exploited by an unauthenticated remote attacker to upload content to the server, including PHP files, which could result in command execution.

EPSS: 5.47%