CVE-2021-35337: Phone Shop Sales Management System Project Phone Shop Sales Management System
Medium severity, CVSS 4.3. EPSS: 0.8% chance of exploitation in the next 30 days.
Sourcecodester Phone Shop Sales Managements System 1.0 is vulnerable to Insecure Direct Object Reference (IDOR). Any attacker will be able to see the invoices of different users by changing the id parameter.
Affected products
- Phone Shop Sales Management System Project Phone Shop Sales Management System: version 1.0 only
Published 2021-07-01. Last modified 2026-06-17.