Campcodes
Products
74- 104 CVEs
- 39 CVEs
- 31 CVEs
- 29 CVEs
- 24 CVEs
- 23 CVEs
- 22 CVEs
- 21 CVEs
- 21 CVEs
- 21 CVEs
- 20 CVEs
- 19 CVEs
- 16 CVEs
- 16 CVEs
- 16 CVEs
- 15 CVEs
- 15 CVEs
- 14 CVEs
- 13 CVEs
- 13 CVEs
- 12 CVEs
- 12 CVEs
- 11 CVEs
- 10 CVEs
- 10 CVEs
- 10 CVEs
- 9 CVEs
- 9 CVEs
- 9 CVEs
- 9 CVEs
- View all 74 products →
Recent CVEs
664| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-39115 | Cri | 0.67 | 9.8 | 0.08 | Aug 16, 2023 | install/aiz-uploader/upload in Campcodes Online Matrimonial Website System Script 3.3 allows XSS via a crafted SVG document. | ||
| CVE-2024-41551 | Cri | 0.64 | 9.8 | 0.00 | Jul 24, 2024 | CampCodes Supplier Management System v1.0 is vulnerable to SQL injection via Supply_Management_System/admin/view_order_items.php?id= . | ||
| CVE-2024-33808 | Cri | 0.64 | 9.8 | 0.01 | May 28, 2024 | A SQL injection vulnerability in /model/get_timetable.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the id parameter. | ||
| CVE-2024-33806 | Cri | 0.64 | 9.8 | 0.01 | May 28, 2024 | A SQL injection vulnerability in /model/get_grade.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the id parameter. | ||
| CVE-2024-33805 | Cri | 0.64 | 9.8 | 0.01 | May 28, 2024 | A SQL injection vulnerability in /model/get_student.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the id parameter. | ||
| CVE-2024-33801 | Cri | 0.64 | 9.8 | 0.01 | May 28, 2024 | A SQL injection vulnerability in /model/get_subject_routing.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the id parameter. | ||
| CVE-2024-33800 | Cri | 0.64 | 9.8 | 0.01 | May 28, 2024 | A SQL injection vulnerability in /model/get_student1.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the index parameter. | ||
| CVE-2024-33799 | Cri | 0.64 | 9.8 | 0.01 | May 28, 2024 | A SQL injection vulnerability in /model/get_teacher.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the id parameter. | ||
| CVE-2024-34935 | Cri | 0.64 | 9.8 | 0.01 | May 23, 2024 | A SQL injection vulnerability in /view/conversation_history_admin.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the conversation_id parameter. | ||
| CVE-2024-34934 | Cri | 0.64 | 9.8 | 0.01 | May 23, 2024 | A SQL injection vulnerability in /view/emarks_range_grade_update_form.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the conversation_id parameter. | ||
| CVE-2024-34932 | Cri | 0.64 | 9.8 | 0.01 | May 23, 2024 | A SQL injection vulnerability in /model/update_exam.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the name parameter. | ||
| CVE-2024-34931 | Cri | 0.64 | 9.8 | 0.01 | May 23, 2024 | A SQL injection vulnerability in /model/update_subject.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the name parameter. | ||
| CVE-2024-34929 | Cri | 0.64 | 9.8 | 0.01 | May 23, 2024 | A SQL injection vulnerability in /view/find_friends.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the my_index parameter. | ||
| CVE-2024-34927 | Cri | 0.64 | 9.8 | 0.01 | May 23, 2024 | A SQL injection vulnerability in /model/update_classroom.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the name parameter. | ||
| CVE-2024-33411 | Cri | 0.64 | 9.8 | 0.01 | May 6, 2024 | A SQL injection vulnerability in /model/get_admin_profile.php in Campcodes Complete Web-Based School Management System 1.0 allows attacker to execute arbitrary SQL commands via the my_index parameter. | ||
| CVE-2024-33409 | Cri | 0.64 | 9.8 | 0.01 | May 6, 2024 | SQL injection vulnerability in index.php in campcodes Complete Web-Based School Management System 1.0 allows attacker to execute arbitrary SQL commands via the name parameter. | ||
| CVE-2024-33408 | Cri | 0.64 | 9.8 | 0.01 | May 6, 2024 | A SQL injection vulnerability in /model/get_classroom.php in campcodes Complete Web-Based School Management System 1.0 allows attacker to execute arbitrary SQL commands via the id parameter. | ||
| CVE-2024-33403 | Cri | 0.64 | 9.8 | 0.01 | May 6, 2024 | A SQL injection vulnerability in /model/get_events.php in campcodes Complete Web-Based School Management System 1.0 allows attacker to execute arbitrary SQL commands via the event_id parameter. | ||
| CVE-2022-32019 | Cri | 0.64 | 9.8 | 0.02 | Jun 2, 2022 | Car Rental Management System v1.0 is vulnerable to Arbitrary code execution via car-rental-management-system/admin/ajax.php?action=save_car. | ||
| CVE-2022-32020 | Cri | 0.64 | 9.8 | 0.02 | Jun 2, 2022 | Car Rental Management System v1.0 is vulnerable to Arbitrary code execution via ip/car-rental-management-system/admin/ajax.php?action=save_settings. |
- risk 0.67cvss 9.8epss 0.08
install/aiz-uploader/upload in Campcodes Online Matrimonial Website System Script 3.3 allows XSS via a crafted SVG document.
- risk 0.64cvss 9.8epss 0.00
CampCodes Supplier Management System v1.0 is vulnerable to SQL injection via Supply_Management_System/admin/view_order_items.php?id= .
- risk 0.64cvss 9.8epss 0.01
A SQL injection vulnerability in /model/get_timetable.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the id parameter.
- risk 0.64cvss 9.8epss 0.01
A SQL injection vulnerability in /model/get_grade.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the id parameter.
- risk 0.64cvss 9.8epss 0.01
A SQL injection vulnerability in /model/get_student.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the id parameter.
- risk 0.64cvss 9.8epss 0.01
A SQL injection vulnerability in /model/get_subject_routing.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the id parameter.
- risk 0.64cvss 9.8epss 0.01
A SQL injection vulnerability in /model/get_student1.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the index parameter.
- risk 0.64cvss 9.8epss 0.01
A SQL injection vulnerability in /model/get_teacher.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the id parameter.
- risk 0.64cvss 9.8epss 0.01
A SQL injection vulnerability in /view/conversation_history_admin.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the conversation_id parameter.
- risk 0.64cvss 9.8epss 0.01
A SQL injection vulnerability in /view/emarks_range_grade_update_form.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the conversation_id parameter.
- risk 0.64cvss 9.8epss 0.01
A SQL injection vulnerability in /model/update_exam.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the name parameter.
- risk 0.64cvss 9.8epss 0.01
A SQL injection vulnerability in /model/update_subject.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the name parameter.
- risk 0.64cvss 9.8epss 0.01
A SQL injection vulnerability in /view/find_friends.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the my_index parameter.
- risk 0.64cvss 9.8epss 0.01
A SQL injection vulnerability in /model/update_classroom.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the name parameter.
- risk 0.64cvss 9.8epss 0.01
A SQL injection vulnerability in /model/get_admin_profile.php in Campcodes Complete Web-Based School Management System 1.0 allows attacker to execute arbitrary SQL commands via the my_index parameter.
- risk 0.64cvss 9.8epss 0.01
SQL injection vulnerability in index.php in campcodes Complete Web-Based School Management System 1.0 allows attacker to execute arbitrary SQL commands via the name parameter.
- risk 0.64cvss 9.8epss 0.01
A SQL injection vulnerability in /model/get_classroom.php in campcodes Complete Web-Based School Management System 1.0 allows attacker to execute arbitrary SQL commands via the id parameter.
- risk 0.64cvss 9.8epss 0.01
A SQL injection vulnerability in /model/get_events.php in campcodes Complete Web-Based School Management System 1.0 allows attacker to execute arbitrary SQL commands via the event_id parameter.
- risk 0.64cvss 9.8epss 0.02
Car Rental Management System v1.0 is vulnerable to Arbitrary code execution via car-rental-management-system/admin/ajax.php?action=save_car.
- risk 0.64cvss 9.8epss 0.02
Car Rental Management System v1.0 is vulnerable to Arbitrary code execution via ip/car-rental-management-system/admin/ajax.php?action=save_settings.