Vulnerability index

Browse CVEs

979 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Directory Management System CRITICAL 9.8
CVE-2022-31382

Directory Management System v1.0 was discovered to contain a SQL injection vulnerability via the searchdata parameter in search-dirctory.php.

Mitigation only
Fix from $2,300 2022-06-16
Directory Management System CRITICAL 9.8
CVE-2022-31383

Directory Management System v1.0 was discovered to contain a SQL injection vulnerability via the editid parameter in view-directory.php.

Mitigation only
Fix from $2,300 2022-06-16
Directory Management System CRITICAL 9.8
CVE-2022-31384

Directory Management System v1.0 was discovered to contain a SQL injection vulnerability via the fullname parameter in add-directory.php.

Mitigation only
Fix from $2,300 2022-06-16
Zoo Management System MEDIUM 5.4
CVE-2022-31914

Zoo Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via zms/admin/public_html/save_animal?an_id=24.

No fix yet
Fix from $1,600 2022-06-16
Zoo Management System MEDIUM 6.1
CVE-2021-4232

A vulnerability classified as problematic has been found in Zoo Management System 1.0. Affected is an unknown function of the file admin/manage-ticke…

Mitigation only
Fix from $1,600 2022-05-26
E Diary Management System MEDIUM 6.1
CVE-2022-29004

Diary Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the Name parameter in search-result.php.

No fix yet
Fix from $1,600 2022-05-23
Online Birth Certificate System MEDIUM 6.1
CVE-2022-29005

Multiple cross-site scripting (XSS) vulnerabilities in the component /obcs/user/profile.php of Online Birth Certificate System v1.2 allows attackers …

Mitigation only
Fix from $1,600 2022-05-23
Zoo Management System MEDIUM 5.4
CVE-2022-1816

A vulnerability, which was classified as problematic, has been found in Zoo Management System 1.0. Affected by this issue is /zoo/admin/public_html/v…

Mitigation only
Fix from $1,600 2022-05-23
Online Banquet Booking System HIGH 8.8
CVE-2022-28992

A Cross-Site Request Forgery (CSRF) in Online Banquet Booking System v1.0 allows attackers to change admin credentials via a crafted POST request.

No fix yet
Fix from $1,950 2022-05-20
Cyber Cafe Management System CRITICAL 9.8
CVE-2022-29009EPSS 23%

Multiple SQL injection vulnerabilities via the username and password parameters in the Admin panel of Cyber Cafe Management System Project v1.0 allow…

No fix yet
Fix from $2,300 2022-05-11
Bus Pass Management System MEDIUM 6.5
CVE-2022-29008

An insecure direct object reference (IDOR) vulnerability in the viewid parameter of Bus Pass Management System v1.0 allows attackers to access sensit…

No fix yet
Fix from $1,600 2022-05-11
Directory Management System CRITICAL 9.8
CVE-2022-29006EPSS 19%

Multiple SQL injection vulnerabilities via the username and password parameters in the Admin panel of Directory Management System v1.0 allows attacke…

No fix yet
Fix from $2,300 2022-05-11
Dairy Farm Shop Management System CRITICAL 9.8
CVE-2022-29007EPSS 19%

Multiple SQL injection vulnerabilities via the username and password parameters in the Admin panel of Dairy Farm Shop Management System v1.0 allows a…

No fix yet
Fix from $2,300 2022-05-11
Zoo Management System CRITICAL 9.8
CVE-2022-27351

Zoo Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via /public_html/apply_vacancy. This vulnerability allows…

No fix yet
Fix from $2,300 2022-04-08
Zoo Management System HIGH 8.8
CVE-2022-27992

Zoo Management System v1.0 was discovered to contain a SQL injection vulnerability at /public_html/animals via the class_id parameter.

No fix yet
Fix from $1,950 2022-04-08
Online Shopping Portal CRITICAL 9.8
CVE-2021-46110

Online Shopping Portal v3.1 was discovered to contain multiple time-based SQL injection vulnerabilities via the email and contactno parameters.

No fix yet
Fix from $2,300 2022-02-18
Hospital Management System HIGH 7.5
CVE-2022-24226

Hospital Management System v4.0 was discovered to contain a blind SQL injection vulnerability via the register function in func2.php.

No fix yet
Fix from $1,950 2022-02-15
Dairy Farm Shop Management System CRITICAL 9.8
CVE-2020-36062

Dairy Farm Shop Management System v1.0 was discovered to contain hardcoded credentials in the source code which allows attackers access to the contro…

No fix yet
Fix from $2,300 2022-02-11
Hospital Management System HIGH 7.5
CVE-2022-24646

Hospital Management System v4.0 was discovered to contain a SQL injection vulnerability in /Hospital-Management-System-master/contact.php via the txt…

No fix yet
Fix from $1,950 2022-02-10
Hospital Management System CRITICAL 9.8
CVE-2022-24263EPSS 8%

Hospital Management System v4.0 was discovered to contain a SQL injection vulnerability in /Hospital-Management-System-master/func.php via the email …

No fix yet
Fix from $2,300 2022-01-31
Bus Pass Management System HIGH 7.5
CVE-2021-44315

In Bus Pass Management System v1.0, Directory Listing/Browsing is enabled on the web server which allows an attacker to view the sensitive files of t…

No fix yet
Fix from $1,950 2021-12-16
Bus Pass Management System MEDIUM 5.4
CVE-2021-44317

In Bus Pass Management System v1.0, parameters 'pagedes' and `About Us` are affected with a Stored Cross-site scripting vulnerability.

No fix yet
Fix from $1,600 2021-12-16
Employee Record Management System CRITICAL 9.8
CVE-2021-44966

SQL injection bypass authentication vulnerability in PHPGURUKUL Employee Record Management System 1.2 via index.php. An attacker can log in as an adm…

No fix yet
Fix from $2,300 2021-12-13
Employee Record Management System HIGH 7.5
CVE-2021-44965

Directory traversal vulnerability in /admin/includes/* directory for PHPGURUKUL Employee Record Management System 1.2 The attacker can retrieve and d…

No fix yet
Fix from $1,950 2021-12-13
Hostel Management System HIGH 8.8
CVE-2021-43137

Cross-Site Scripting (XSS) and Cross-Site Request Forgery (CSRF) vulnerability exits in hostel management system 2.1 via the name field in my-profile…

No fix yet
Fix from $1,950 2021-12-01
Employee Record Management System CRITICAL 9.8
CVE-2021-43451

SQL Injection vulnerability exists in PHPGURUKUL Employee Record Management System 1.2 via the Email POST parameter in /forgetpassword.php.

No fix yet
Fix from $2,300 2021-12-01
Hospital Management System MEDIUM 6.1
CVE-2021-39411

Multiple Cross Site Scripting (XSS) vulnerabilities exist in PHPGurukul Hospital Management System 4.0 via the (1) searchdata parameter in (a) doctor…

Mitigation only
Fix from $1,600 2021-11-05
Online Shopping Portal HIGH 7.5
CVE-2021-37807

An SQL Injection vulneraility exists in https://phpgurukul.com Online Shopping Portal 3.1 via the email parameter on the /check_availability.php endp…

No fix yet
Fix from $1,950 2021-10-27
Vehicle Parking Management System MEDIUM 5.9
CVE-2021-37806

An SQL Injection vulnerability exists in https://phpgurukul.com Vehicle Parking Management System affected version 1.0. The system is vulnerable to t…

No fix yet
Fix from $1,600 2021-10-27
News Portal MEDIUM 5.9
CVE-2021-37808

SQL Injection vulnerabilities exist in https://phpgurukul.com News Portal Project 3.1 via the (1) category, (2) subcategory, (3) sucatdescription, an…

No fix yet
Fix from $1,600 2021-10-27