VYPR

Content Management System

by Code Projects

CVEs (47)

  • CVE-2023-37068CriAug 9, 2023
    risk 0.64cvss 9.8epss 0.01

    Code-Projects Gym Management System V1.0 allows remote attackers to execute arbitrary SQL commands via the login form, leading to unauthorized access and potential data manipulation. This vulnerability arises due to insufficient validation of user-supplied input in the username…

  • CVE-2024-10758HigNov 4, 2024
    risk 0.51cvss 7.3epss 0.01

    A vulnerability, which was classified as critical, was found in code-projects/anirbandutta9 Content Management System and News-Buzz 1.0. This affects an unknown part of the file /index.php. The manipulation of the argument user_name leads to sql injection. It is possible to…

  • CVE-2024-10608HigNov 1, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability was found in code-projects Courier Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /login.php. The manipulation of the argument txtusername leads to sql injection. The attack may be initiated remotely.…

  • CVE-2024-10607HigNov 1, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability was found in code-projects Courier Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /track-result.php. The manipulation of the argument Consignment leads to sql injection. The attack can be initiated…

  • CVE-2024-7681HigAug 12, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability was found in code-projects College Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file login.php of the component Login Page. The manipulation of the argument email/password leads to sql injection. The…

  • CVE-2026-2174HigFeb 8, 2026
    risk 0.47cvss 7.3epss 0.01

    A security flaw has been discovered in code-projects Contact Management System 1.0. This affects an unknown part of the component CRUD Endpoint. The manipulation of the argument ID results in improper authentication. The attack may be launched remotely.

  • CVE-2026-0567HigJan 2, 2026
    risk 0.47cvss 7.3epss 0.00

    A vulnerability was detected in code-projects Content Management System 1.0. The affected element is an unknown function of the file /pages.php. The manipulation of the argument ID results in sql injection. The attack may be performed from remote. The exploit is now public and…

  • CVE-2026-0565HigJan 2, 2026
    risk 0.47cvss 7.3epss 0.00

    A weakness has been identified in code-projects Content Management System 1.0. This issue affects some unknown processing of the file /admin/delete.php. Executing a manipulation of the argument del can lead to sql injection. The attack can be executed remotely. The exploit has…

  • CVE-2026-0546HigJan 2, 2026
    risk 0.47cvss 7.3epss 0.00

    A vulnerability was determined in code-projects Content Management System 1.0. This impacts an unknown function of the file search.php. This manipulation of the argument Value causes sql injection. The attack is possible to be carried out remotely. The exploit has been publicly…

  • CVE-2025-5631HigJun 5, 2025
    risk 0.47cvss 7.3epss 0.01

    A vulnerability was found in code-projects/anirbandutta9 Content Management System and News-Buzz 1.0. It has been classified as critical. Affected is an unknown function of the file /publicposts.php. The manipulation of the argument post leads to sql injection. It is possible to…

  • CVE-2026-2176MedFeb 8, 2026
    risk 0.41cvss 6.3epss 0.00

    A security vulnerability has been detected in code-projects Contact Management System 1.0. This issue affects some unknown processing of the file index.py. Such manipulation of the argument selecteditem[0] leads to sql injection. The attack can be executed remotely.

  • CVE-2025-8171MedJul 25, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability, which was classified as critical, has been found in code-projects Document Management System 1.0. This issue affects some unknown processing of the file /insert.php. The manipulation of the argument uploaded_file leads to unrestricted upload. The attack may be…

  • CVE-2025-5633MedJun 5, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was found in code-projects/anirbandutta9 Content Management System and News-Buzz 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /admin/users.php. The manipulation of the argument delete leads to sql injection.…

  • CVE-2025-5632MedJun 5, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was found in code-projects/anirbandutta9 Content Management System and News-Buzz 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /admin/users.php. The manipulation of the argument change_to_admin leads…

  • CVE-2025-3134MedApr 3, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability classified as critical has been found in code-projects Payroll Management System 1.0. This affects an unknown part of the file /add_overtime.php. The manipulation of the argument rate leads to sql injection. It is possible to initiate the attack remotely. The…

  • CVE-2025-3039MedMar 31, 2025
    risk 0.41cvss 6.3epss 0.01

    A vulnerability was found in code-projects Payroll Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /add_employee.php. The manipulation of the argument lname/fname leads to sql injection. It is possible to launch the attack…

  • CVE-2025-3038MedMar 31, 2025
    risk 0.41cvss 6.3epss 0.01

    A vulnerability was found in code-projects Payroll Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /view_account.php. The manipulation of the argument salary_rate leads to sql injection. The attack may be initiated…

  • CVE-2025-2985MedMar 31, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was found in code-projects Payroll Management System 1.0. It has been classified as critical. This affects an unknown part of the file update_account.php. The manipulation of the argument deduction leads to sql injection. It is possible to initiate the attack…

  • CVE-2025-2984MedMar 31, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was found in code-projects Payroll Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /delete.php. The manipulation of the argument emp_id leads to sql injection. The attack may be launched remotely.…

  • CVE-2025-2973MedMar 31, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability, which was classified as critical, was found in code-projects College Management System 1.0. This affects an unknown part of the file /Admin/student.php. The manipulation of the argument profile_image leads to unrestricted upload. It is possible to initiate the…

Page 1 of 3