Vulnerability index

Browse CVEs

705 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Simple Subscription Website CRITICAL 9.8
CVE-2022-26283

Simple Subscription Website v1.0 was discovered to contain a SQL injection vulnerability via the id parameter in the view_plan endpoint. This vulnera…

No fix yet
Fix from $2,300 2022-03-21
Simple Cold Storage Management System CRITICAL 9.8
CVE-2021-45435

An SQL Injection vulnerability exists in Sourcecodester Simple Cold Storage Management System using PHP/OOP 1.0 via the username field in login.php.

No fix yet
Fix from $2,300 2022-01-28
Banking System CRITICAL 9.8
CVE-2021-41659

SQL injection vulnerability in Sourcecodester Banking System v1 by oretnom23, allows attackers to execute arbitrary SQL commands via the username or …

No fix yet
Fix from $2,300 2022-01-24
Online Learning System CRITICAL 9.8
CVE-2021-40596

SQL injection vulnerability in Login.php in sourcecodester Online Learning System v2 by oretnom23, allows attackers to execute arbitrary SQL commands…

No fix yet
Fix from $2,300 2022-01-24
Budget And Expense Tracker System CRITICAL 9.8
CVE-2021-40247

SQL injection vulnerability in Sourcecodester Budget and Expense Tracker System v1 by oretnom23, allows attackers to execute arbitrary SQL commands v…

No fix yet
Fix from $2,300 2022-01-21
Employee And Visitor Gate Pass Logging System CRITICAL 9.8
CVE-2021-46309

An SQL Injection vulnerability exists in Sourcecodester Employee and Visitor Gate Pass Logging System 1.0 via the username parameter.

No fix yet
Fix from $2,300 2022-01-21
Simple Music Cloud Community System CRITICAL 9.8
CVE-2021-46200

An SQL Injection vulnerability exists in Sourcecodester Simple Music Clour Community System 1.0 via the email parameter in /music/ajax.php.

No fix yet
Fix from $2,300 2022-01-21
Simple Online Men\'s Salon Management System HIGH 7.5
CVE-2021-44600

The password parameter on Simple Online Mens Salon Management System (MSMS) 1.0 appears to be vulnerable to SQL injection attacks through the passwor…

No fix yet
Fix from $1,950 2021-12-23
Simple Forum\/discussion System CRITICAL 9.8
CVE-2021-45252

Multiple SQL injection vulnerabilities are found on Simple Forum-Discussion System 1.0 For example on three applications which are manage_topic.php, …

No fix yet
Fix from $2,300 2021-12-21
Online Magazine Management System CRITICAL 9.8
CVE-2021-44653EPSS 6%

Online Magazine Management System 1.0 contains a SQL injection authentication bypass vulnerability. The Admin panel authentication can be bypassed du…

No fix yet
Fix from $2,300 2021-12-15
Online Learning System CRITICAL 9.8
CVE-2021-42580EPSS 10%

Sourcecodester Online Learning System 2.0 is vunlerable to sql injection authentication bypass in admin login file (/admin/login.php) and authenticat…

No fix yet
Fix from $2,300 2021-11-15
Simple Subscription Website CRITICAL 9.8
CVE-2021-43140

SQL Injection vulnerability exists in Sourcecodester. Simple Subscription Website 1.0. via the login.

No fix yet
Fix from $2,300 2021-11-03
Simple Subscription Website MEDIUM 6.1
CVE-2021-43141

Cross Site Scripting (XSS) vulnerability exists in Sourcecodester Simple Subscription Website 1.0 via the id parameter in plan_application.

No fix yet
Fix from $1,600 2021-11-03
Online Food Ordering System CRITICAL 9.8
CVE-2021-41644

Remote Code Exection (RCE) vulnerability exists in Sourcecodester Online Food Ordering System 2.0 via a maliciously crafted PHP file that bypasses th…

No fix yet
Fix from $2,300 2021-10-29
Budget And Expense Tracker System HIGH 8.8
CVE-2021-41645

Remote Code Execution (RCE) vulnerability exists in Sourcecodester Budget and Expense Tracker System 1.0 that allows a remote malicious user to injec…

No fix yet
Fix from $1,950 2021-10-29