← Back

Iresturant Project

iresturant_project

5 CVEs • 1 product

Products (1)

Click to collapse
Toggle
Iresturant
iresturant

CVEs (5)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Iresturant Project
1Iresturant
Jun 17, 2026
Jan 25, 2022
N/A· v4
8.8 HIGH· v3
6.5 MEDIUM· v2
MartDevelopers iResturant 1.0 is vulnerable to SQL Injection. SQL Injection occurs because this view parameter value is added to the SQL query without additional verification when viewing reservation.
1Iresturant Project
1Iresturant
Jun 17, 2026
Jan 25, 2022
N/A· v4
9.8 CRITICAL· v3
7.5 HIGH· v2
MartDevelopers iResturant 1.0 is vulnerable to SQL Injection. SQL Injection occurs because the email and phone parameter values are added to the SQL query without any verification at the time of membership registration.
1Iresturant Project
1Iresturant
Jun 17, 2026
Jan 12, 2022
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
MartDevelopers Inc iResturant v1.0 allows Stored XSS by placing a payload in the username field during a login attempt. When an administrator looks at the log of failed logins, the XSS payload will be executed.
1Iresturant Project
1Iresturant
Jun 17, 2026
Dec 20, 2021
N/A· v4
9.8 CRITICAL· v3
10.0 HIGH· v2
RCE in Add Review Function in iResturant 1.0 Allows remote attacker to execute commands remotely
1Iresturant Project
1Iresturant
Jun 17, 2026
Dec 20, 2021
N/A· v4
5.4 MEDIUM· v3
3.5 LOW· v2
Stored XSS in Signup Form in iResturant 1.0 Allows Remote Attacker to Inject Arbitrary code via NAME and ADDRESS field