VYPR

Daily Tracker System

by Sourcecodester

CVEs (2)

  • CVE-2020-24194Sep 9, 2020
    risk 0.00cvss epss 0.01

    A Cross-site scripting (XSS) vulnerability in 'user-profile.php' in SourceCodester Daily Tracker System v1.0 allows remote attackers to inject arbitrary web script or HTML via the 'fullname' parameter.

  • CVE-2020-24193Sep 3, 2020
    risk 0.00cvss epss 0.03

    A SQL injection vulnerability in login in Sourcecodetester Daily Tracker System 1.0 allows unauthenticated user to execute authentication bypass with SQL injection via the email parameter.