Known Vulnerabilities for products from Rental Bike Script Project
Listed below are 3 of the newest known vulnerabilities associated with the vendor "Rental Bike Script Project".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2019-7434 json | PHP Scripts Mall Rental Bike Script 2.0.3 has directory traversal via a direct request for a listing of an uploads directory. | 6.5 - MEDIUM | 2019-03-21 | 2021-07-21 |
| CVE-2019-7433 json | PHP Scripts Mall Rental Bike Script 2.0.3 has Cross-Site Request Forgery (CSRF) via the Edit Profile feature. | 8.8 - HIGH | 2019-03-21 | 2019-03-22 |
| CVE-2019-7432 json | PHP Scripts Mall Rental Bike Script 2.0.3 has HTML injection via the STREET field in the Profile Edit section. | 5.4 - MEDIUM | 2019-03-21 | 2020-08-24 |
Known software with vulnerabilities from Rental Bike Script Project
| Type | Vendor | Product | Version |
|---|---|---|---|
| Application | Rental Bike Script Project | Rental Bike Script | 2.0.3 |