Membership Management System in PHP
by Codeastro
CVEs (9)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-45528 | Med | 0.35 | 5.4 | 0.00 | Sep 2, 2024 | CodeAstro MembershipM-PHP (aka Membership Management System in PHP) 1.0 allows add_members.php fullname stored XSS. | ||
| CVE-2025-69936 | 0.00 | — | 0.00 | Jul 30, 2026 | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /edit_member.php?id=1. | |||
| CVE-2025-69938 | 0.00 | — | 0.00 | Jul 30, 2026 | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in renew.php via the parameter membershipType. | |||
| CVE-2025-69933 | 0.00 | — | 0.00 | Jul 30, 2026 | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /memberProfile.php?id=1. | |||
| CVE-2025-69935 | 0.00 | — | 0.00 | Jul 30, 2026 | CodeAstro Membership Management System 1.0 is vulnerale to SQL Injection in the report.php and revenue_report.php via the fromDate parameter. | |||
| CVE-2025-69930 | 0.00 | — | 0.00 | Jul 30, 2026 | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /print_membership_card.php?id=1. | |||
| CVE-2025-69934 | 0.00 | — | 0.00 | Jul 30, 2026 | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /delete_members.php?id=1. | |||
| CVE-2025-69937 | 0.00 | — | 0.00 | Jul 30, 2026 | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in the edit_type.php endpoint via the Parameter id. | |||
| CVE-2025-69931 | 0.00 | — | 0.00 | Jul 30, 2026 | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /delete_membership.php?id=1. |
- risk 0.35cvss 5.4epss 0.00
CodeAstro MembershipM-PHP (aka Membership Management System in PHP) 1.0 allows add_members.php fullname stored XSS.
- CVE-2025-69936Jul 30, 2026risk 0.00cvss —epss 0.00
CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /edit_member.php?id=1.
- CVE-2025-69938Jul 30, 2026risk 0.00cvss —epss 0.00
CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in renew.php via the parameter membershipType.
- CVE-2025-69933Jul 30, 2026risk 0.00cvss —epss 0.00
CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /memberProfile.php?id=1.
- CVE-2025-69935Jul 30, 2026risk 0.00cvss —epss 0.00
CodeAstro Membership Management System 1.0 is vulnerale to SQL Injection in the report.php and revenue_report.php via the fromDate parameter.
- CVE-2025-69930Jul 30, 2026risk 0.00cvss —epss 0.00
CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /print_membership_card.php?id=1.
- CVE-2025-69934Jul 30, 2026risk 0.00cvss —epss 0.00
CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /delete_members.php?id=1.
- CVE-2025-69937Jul 30, 2026risk 0.00cvss —epss 0.00
CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in the edit_type.php endpoint via the Parameter id.
- CVE-2025-69931Jul 30, 2026risk 0.00cvss —epss 0.00
CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in /delete_membership.php?id=1.