Courier Management System
by Courier Management System Project
CVEs (4)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2021-46198 | Cri | 0.64 | 9.8 | 0.02 | Jan 21, 2022 | An SQL Injection vulnerability exists in Sourceodester Courier Management System 1.0 via the email parameter in /cms/ajax.php app. | ||
| CVE-2020-35329 | Med | 0.42 | 6.5 | 0.01 | Mar 4, 2021 | Courier Management System 1.0 1.0 is affected by SQL Injection via 'MULTIPART street '. | ||
| CVE-2020-35327 | Med | 0.42 | 6.5 | 0.01 | Mar 4, 2021 | SQL injection vulnerability was discovered in Courier Management System 1.0, which can be exploited via the ref_no (POST) parameter to admin_class.php | ||
| CVE-2020-35328 | Med | 0.35 | 5.4 | 0.01 | Mar 4, 2021 | Courier Management System 1.0 - 'First Name' Stored XSS |
- risk 0.64cvss 9.8epss 0.02
An SQL Injection vulnerability exists in Sourceodester Courier Management System 1.0 via the email parameter in /cms/ajax.php app.
- risk 0.42cvss 6.5epss 0.01
Courier Management System 1.0 1.0 is affected by SQL Injection via 'MULTIPART street '.
- risk 0.42cvss 6.5epss 0.01
SQL injection vulnerability was discovered in Courier Management System 1.0, which can be exploited via the ref_no (POST) parameter to admin_class.php
- risk 0.35cvss 5.4epss 0.01
Courier Management System 1.0 - 'First Name' Stored XSS