Code-Projects Online Food Ordering System是Code-Projects开源的一个网上订餐系统。 code-projects Online Food Ordering System 1.0版本存在SQL注入漏洞,该漏洞源于对文件form/cart.php中参数del的错误操作,可能导致SQL注入攻击。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| code-projects | Online Food Ordering System | 1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-4850 | 7.3 HIGH | code-projects Simple Laundry System Parameter checkregisitem.php sql injection |
| CVE-2026-4844 | 7.3 HIGH | code-projects Online Food Ordering System Admin Login admin.php sql injection |
| CVE-2026-4836 | 6.3 MEDIUM | code-projects Accounting System delete.php sql injection |
| CVE-2026-4900 | 5.3 MEDIUM | code-projects Online Food Ordering System localhost.sql privilege escalation |
| CVE-2026-4898 | 4.3 MEDIUM | code-projects Online Food Ordering System contact.php cross site scripting |
| CVE-2026-4849 | 4.3 MEDIUM | code-projects Simple Laundry System Parameter modify.php cross site scripting |
| CVE-2026-4835 | 3.5 LOW | code-projects Accounting System Web Application add_costumer.php cross site scripting |
| CVE-2026-4899 | 2.4 LOW | code-projects Online Food Ordering System food.php cross site scripting |
No comments yet