CVE Browser
Search and filter CVEs by severity, ecosystem, EPSS score, and more.
Page 1
CVE-2018-20138 MEDIUM
PHP Scripts Mall Entrepreneur B2B Script 3.0.6 allows Stored XSS via Account Settings fields such as FirstName and LastName, a similar issue to CVE-2018-14541.
CVSS 5.4 EPSS 0.64% Dec 13, 2018
CVE-2018-14541 MEDIUM
PHP Scripts Mall Basic B2B Script 2.0.0 has Reflected and Stored XSS via the First name, Last name, Address 1, City, State, and Company name fields.
CVSS 5.4 EPSS 0.66% Aug 3, 2018
CVE-2017-15985 CRITICAL
Basic B2B Script allows SQL Injection via the product_view1.php pid or id parameter.
CVSS 9.8 EPSS 2.65% Oct 31, 2017
Showing 1 to 3 CVEs · page 1