Vulnerabilities
3 CVEs · NVD, GitHub Advisories, CISA KEV, FIRST EPSS, GitHub PoC repos
| CVE | Vulnerability | CVSS | EPSS | Flags | Affected | Exposure | Published |
|---|---|---|---|---|---|---|---|
| CVE-2018-20138 | PHP Scripts Mall Entrepreneur B2B Script 3.0.6 allows Stored XSS via Account Settings fields such as FirstName and LastName, a similar issue to CVE-2018-14541. PHP Scripts Mall Entrepreneur B2B Script 3.0.6 allows Stored XSS via Account Settings fields such as FirstName and LastName, a similar issue to CVE-2018-14541. NVD description · AI analysis pending | 5.4 | <1% | PoC |
| — | |
| CVE-2018-14541 | PHP Scripts Mall Basic B2B Script 2.0.0 has Reflected and Stored XSS via the First name, Last name, Address 1, City, State, and Company name fields. PHP Scripts Mall Basic B2B Script 2.0.0 has Reflected and Stored XSS via the First name, Last name, Address 1, City, State, and Company name fields. NVD description · AI analysis pending | 5.4 | <1% | PoC |
| — | |
| CVE-2017-15985 | Basic B2B Script allows SQL Injection via the product_view1.php pid or id parameter. Basic B2B Script allows SQL Injection via the product_view1.php pid or id parameter. NVD description · AI analysis pending | 9.8 | 3% | PoC |
| — |