Gym Management System
by Codeastro
CVEs (49)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2024-1819 | 0.00 | — | 0.01 | Feb 23, 2024 | A vulnerability was found in CodeAstro Membership Management System 1.0. It has been classified as critical. This affects an unknown part of the component Add Members Tab. The manipulation of the argument Member Photo leads to unrestricted upload. It is possible to initiate the… | |||
| CVE-2024-1818 | 0.00 | — | 0.01 | Feb 23, 2024 | A vulnerability was found in CodeAstro Membership Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /uploads/ of the component Logo Handler. The manipulation leads to unrestricted upload. The attack may be launched… | |||
| CVE-2024-0958 | 0.00 | — | 0.01 | Jan 27, 2024 | A vulnerability was found in CodeAstro Stock Management System 1.0 and classified as problematic. This issue affects some unknown processing of the file /index.php of the component Add Category Handler. The manipulation of the argument Category Name/Category Description leads to… | |||
| CVE-2022-30825 | 0.00 | — | 0.01 | May 31, 2022 | Wedding Management System v1.0 is vulnerable to SQL Injection via \admin\client_edit.php. | |||
| CVE-2022-30826 | 0.00 | — | 0.01 | May 31, 2022 | Wedding Management System v1.0 is vulnerable to SQL Injection via admin\client_assign.php. | |||
| CVE-2022-30832 | 0.00 | — | 0.01 | May 31, 2022 | Wedding Management System v1.0 is vulnerable to SQL Injection via /Wedding-Management/admin/client_assign.php?booking=31&user_id=. | |||
| CVE-2022-30833 | 0.00 | — | 0.01 | May 31, 2022 | Wedding Management System v1.0 is vulnerable to SQL Injection via /Wedding-Management/admin/client_edit.php?booking=31&user_id=. | |||
| CVE-2022-30834 | 0.00 | — | 0.01 | May 31, 2022 | Wedding Management System v1.0 is vulnerable to SQL Injection via /Wedding-Management/admin/client_manage_account_details.php?booking_id=31&user_id= | |||
| CVE-2022-30836 | 0.00 | — | 0.01 | May 31, 2022 | Wedding Management System v1.0 is vulnerable to SQL Injection. via Wedding-Management/admin/select.php. |
- CVE-2024-1819Feb 23, 2024risk 0.00cvss —epss 0.01
A vulnerability was found in CodeAstro Membership Management System 1.0. It has been classified as critical. This affects an unknown part of the component Add Members Tab. The manipulation of the argument Member Photo leads to unrestricted upload. It is possible to initiate the…
- CVE-2024-1818Feb 23, 2024risk 0.00cvss —epss 0.01
A vulnerability was found in CodeAstro Membership Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /uploads/ of the component Logo Handler. The manipulation leads to unrestricted upload. The attack may be launched…
- CVE-2024-0958Jan 27, 2024risk 0.00cvss —epss 0.01
A vulnerability was found in CodeAstro Stock Management System 1.0 and classified as problematic. This issue affects some unknown processing of the file /index.php of the component Add Category Handler. The manipulation of the argument Category Name/Category Description leads to…
- CVE-2022-30825May 31, 2022risk 0.00cvss —epss 0.01
Wedding Management System v1.0 is vulnerable to SQL Injection via \admin\client_edit.php.
- CVE-2022-30826May 31, 2022risk 0.00cvss —epss 0.01
Wedding Management System v1.0 is vulnerable to SQL Injection via admin\client_assign.php.
- CVE-2022-30832May 31, 2022risk 0.00cvss —epss 0.01
Wedding Management System v1.0 is vulnerable to SQL Injection via /Wedding-Management/admin/client_assign.php?booking=31&user_id=.
- CVE-2022-30833May 31, 2022risk 0.00cvss —epss 0.01
Wedding Management System v1.0 is vulnerable to SQL Injection via /Wedding-Management/admin/client_edit.php?booking=31&user_id=.
- CVE-2022-30834May 31, 2022risk 0.00cvss —epss 0.01
Wedding Management System v1.0 is vulnerable to SQL Injection via /Wedding-Management/admin/client_manage_account_details.php?booking_id=31&user_id=
- CVE-2022-30836May 31, 2022risk 0.00cvss —epss 0.01
Wedding Management System v1.0 is vulnerable to SQL Injection. via Wedding-Management/admin/select.php.
Page 3 of 3