VYPR

Medicine Tracker System

by Medicine Tracker System Project

CVEs (7)

  • CVE-2023-30112HigApr 26, 2023
    risk 0.49cvss 7.5epss 0.01

    Medicine Tracker System in PHP 1.0.0 is vulnerable to SQL Injection.

  • CVE-2023-1464HigMar 17, 2023
    risk 0.48cvss 7.3epss 0.01

    A vulnerability, which was classified as critical, was found in SourceCodester Medicine Tracker System 1.0. This affects an unknown part of the file Users.php?f=save_user. The manipulation of the argument firstname/middlename/lastname/username/password leads to improper…

  • CVE-2023-1439MedMar 17, 2023
    risk 0.41cvss 6.3epss 0.01

    A vulnerability, which was classified as critical, has been found in SourceCodester Medicine Tracker System 1.0. This issue affects some unknown processing of the file medicines/view_details.php of the component GET Parameter Handler. The manipulation of the argument GET leads…

  • CVE-2023-30111MedApr 26, 2023
    risk 0.40cvss 6.1epss 0.00

    Medicine Tracker System in PHP 1.0.0 is vulnerable to Cross Site Scripting (XSS).

  • CVE-2023-30106MedApr 26, 2023
    risk 0.40cvss 6.1epss 0.01

    Sourcecodester Medicine Tracker System in PHP 1.0.0 is vulnerable to Cross Site Scripting (XSS) via page=about.

  • CVE-2023-30458MedApr 24, 2023
    risk 0.35cvss 5.3epss 0.01

    A username enumeration issue was discovered in Medicine Tracker System 1.0. The login functionality allows a malicious user to guess a valid username due to a different response time from invalid usernames. When one enters a valid username, the response time increases depending…

  • CVE-2023-1447LowMar 17, 2023
    risk 0.23cvss 3.5epss 0.00

    A vulnerability, which was classified as problematic, has been found in SourceCodester Medicine Tracker System 1.0. Affected by this issue is some unknown functionality of the file app/?page=medicines/manage_medicine. The manipulation of the argument name/description with the…