📦

online_ordering_system

Vendor: online_ordering_system_project

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 4 Remote Access
Total CVEs 23 Total Indexed
Avg. EPSS 1.40% Exploit Prob.
Latest CVE CVE-2025-14251 Dec 08

Security Vulnerability Index

Page 3 / 3
9.8 CVSS

Online Ordering System By janobe 2.3.2 is vulnerable to SQL Injection via /ordering/admin/orders/loaddata.php.

EPSS: 1.07%
9.8 CVSS

Online Ordering System By janobe 2.3.2 has SQL Injection via /ordering/admin/products/index.php?view=edit&id=.

EPSS: 1.07%
9.8 CVSS

Online Ordering System By janobe 2.3.2 is vulneranle to SQL Injection via /ordering/index.php?q=products&id=.

EPSS: 1.08%
7.2 CVSS

Online Ordering System v1.0 by oretnom23 has SQL injection via store/orderpage.php.

EPSS: 0.96%
7.2 CVSS

Online Ordering System v1.0 by oretnom23 is vulnerable to SQL Injection via admin/viewreport.php.

EPSS: 0.96%
9.8 CVSS

Online Ordering System 1.0 by oretnom23 is vulnerable to SQL Injection via admin/vieworders.php.

EPSS: 1.08%
7.2 CVSS

Online Ordering System v1.0 by oretnom23 is vulnerable to SQL Injection via admin/editproductimage.php.

EPSS: 0.96%
7.2 CVSS

Online Ordering System v1.0 by oretnom23 is vulnerable to SQL Injection via admin/editproductetails.php.

EPSS: 0.80%
9.8 CVSS

Arbitrary file upload vulnerability in SourceCodester Ordering System v 1.0 allows attackers to execute arbitrary code, via the file upload to ordering\admin\products\edit.php.

EPSS: 1.87%
7.5 CVSS

Online Ordering System 1.0 is vulnerable to unauthenticated SQL injection through /onlineordering/GPST/admin/design.php, which may lead to database information disclosure.

EPSS: 15.90%