← Back to CVE List
CVE-2020-35309
Bakeshop Online Ordering System in PHP/MySQLi 1.0 is affected by cross-site scripting (XSS) which allows remote attackers to inject an arbitrary web script or HTML in admin dashboard - "Categories".
> MITRE Terms of Use apply – see LICENSE‑MITRE.txt