CSE Bookstore version 1.0 is vulnerable to time-based blind, boolean-based blind and OR error-based SQL injection in pubid parameter in bookPerPub.php and in cart.php. A successful exploitation of this vulnerability will lead to an attacker dumping the entire database on which the web application is running.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://www.exploit-db.com/exploits/49314 |
![]() ![]() |
History
Fri, 11 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|
epss
|

Status: PUBLISHED
Assigner: mitre
Published: 2021-01-04T14:46:37
Updated: 2024-08-04T17:16:14.083Z
Reserved: 2021-01-04T00:00:00
Link: CVE-2020-36112

No data.

Status : Modified
Published: 2021-01-04T15:15:16.043
Modified: 2024-11-21T05:28:45.080
Link: CVE-2020-36112

No data.