← Back

Automotive Shop Management System Project

automotive_shop_management_system_project

18 CVEs • 1 product

Products (1)

Click to collapse
Toggle

CVEs (18)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Automotive Shop Management System Project
1Automotive Shop Management System
Apr 23, 2025
Dec 9, 2022
N/A· v4
7.2 HIGH· v3
N/A· v2
Automotive Shop Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /services/view_service.php.
1Automotive Shop Management System Project
1Automotive Shop Management System
Apr 29, 2025
Nov 25, 2022
N/A· v4
7.2 HIGH· v3
N/A· v2
Automotive Shop Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/transactions/update_status.php.
1Automotive Shop Management System Project
1Automotive Shop Management System
Apr 29, 2025
Nov 25, 2022
N/A· v4
7.2 HIGH· v3
N/A· v2
Automotive Shop Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /asms/admin/products/manage_product.php.
1Automotive Shop Management System Project
1Automotive Shop Management System
Apr 29, 2025
Nov 25, 2022
N/A· v4
7.2 HIGH· v3
N/A· v2
Automotive Shop Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /asms/products/view_product.php.
1Automotive Shop Management System Project
1Automotive Shop Management System
Apr 25, 2025
Nov 23, 2022
N/A· v4
6.5 MEDIUM· v3
N/A· v2
Automotive Shop Management System v1.0 is vulnerable to Delete any file via /asms/classes/Master.php?f=delete_img.
1Automotive Shop Management System Project
1Automotive Shop Management System
Apr 29, 2025
Nov 18, 2022
N/A· v4
7.2 HIGH· v3
N/A· v2
Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/admin/?page=transactions/manage_transaction&id=.
1Automotive Shop Management System Project
1Automotive Shop Management System
Apr 29, 2025
Nov 18, 2022
N/A· v4
7.2 HIGH· v3
N/A· v2
Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/admin/mechanics/view_mechanic.php?id=.
1Automotive Shop Management System Project
1Automotive Shop Management System
Apr 29, 2025
Nov 18, 2022
N/A· v4
7.2 HIGH· v3
N/A· v2
Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/admin/services/manage_service.php?id=.
1Automotive Shop Management System Project
1Automotive Shop Management System
Apr 29, 2025
Nov 18, 2022
N/A· v4
7.2 HIGH· v3
N/A· v2
Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/admin/mechanics/manage_mechanic.php?id=.
1Automotive Shop Management System Project
1Automotive Shop Management System
Apr 29, 2025
Nov 18, 2022
N/A· v4
7.2 HIGH· v3
N/A· v2
Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/classes/Master.php?f=delete_service.
1Automotive Shop Management System Project
1Automotive Shop Management System
Apr 30, 2025
Nov 18, 2022
N/A· v4
7.2 HIGH· v3
N/A· v2
Automotive Shop Management System v1.0 is vulnerable to SQL via /asms/classes/Master.php?f=delete_mechanic.
1Automotive Shop Management System Project
1Automotive Shop Management System
Apr 29, 2025
Nov 17, 2022
N/A· v4
7.2 HIGH· v3
N/A· v2
Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/admin/?page=user/manage_user&id=.
1Automotive Shop Management System Project
1Automotive Shop Management System
Apr 29, 2025
Nov 17, 2022
N/A· v4
7.2 HIGH· v3
N/A· v2
Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/classes/Master.php?f=delete_transaction.
1Automotive Shop Management System Project
1Automotive Shop Management System
Nov 21, 2024
May 26, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
In oretnom23 Automotive Shop Management System v1.0, the name id parameter is vulnerable to IDOR - Broken Access Control allowing attackers to change the admin password(vertical privilege escalation)
1Automotive Shop Management System Project
1Automotive Shop Management System
Nov 21, 2024
May 26, 2022
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
In oretnom23 Automotive Shop Management System v1.0, the first and last name user fields suffer from a stored XSS Injection Vulnerability allowing remote attackers to gain admin access and view internal IPs.
1Automotive Shop Management System Project
1Automotive Shop Management System
Nov 21, 2024
May 26, 2022
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
In oretnom23 Automotive Shop Management System v1.0, the product id parameter suffers from a blind SQL Injection Vulnerability allowing remote attackers to dump all database credential and gain admin access(privilege esc...Show more
In oretnom23 Automotive Shop Management System v1.0, the product id parameter suffers from a blind SQL Injection Vulnerability allowing remote attackers to dump all database credential and gain admin access(privilege escalation).Show less
1Automotive Shop Management System Project
1Automotive Shop Management System
Nov 21, 2024
May 24, 2022
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
Automotive Shop Management System v1.0 is vulnerable to SQL Injection via /asms/classes/Master.php?f=delete_product.
1Automotive Shop Management System Project
1Automotive Shop Management System
Nov 21, 2024
May 24, 2022
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
Automotive Shop Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via /asms/classes/Master.php?f=save_product, name.