VYPR

Vendor CVEs

Code Projects

All CVEs

1,456 total · sorted by risk
  • CVE-2024-37802HigJun 18, 2024
    risk 0.57cvss 8.8epss 0.01

    CodeProjects Health Care hospital Management System v1.0 was discovered to contain a SQL injection vulnerability in the Patient Info module via the searvalu parameter.

  • CVE-2023-41504HigMar 13, 2024
    risk 0.57cvss 8.8epss 0.01

    SQL Injection vulnerability in Student Enrollment In PHP 1.0 allows attackers to run arbitrary code via the Student Search function.

  • CVE-2024-25251HigFeb 22, 2024
    risk 0.57cvss 8.8epss 0.01

    code-projects Agro-School Management System 1.0 is suffers from Incorrect Access Control.

  • CVE-2024-25318HigFeb 9, 2024
    risk 0.57cvss 8.8epss 0.01

    Code-projects Hotel Managment System 1.0 allows SQL Injection via the 'pid' parameter in Hotel/admin/print.php?pid=2.

  • CVE-2024-25310HigFeb 9, 2024
    risk 0.57cvss 8.8epss 0.01

    Code-projects Simple School Managment System 1.0 allows SQL Injection via the 'id' parameter at "School/delete.php?id=5."

  • CVE-2024-25313HigFeb 9, 2024
    risk 0.57cvss 8.8epss 0.01

    Code-projects Simple School Managment System 1.0 allows Authentication Bypass via the username and password parameters at School/teacher_login.php.

  • CVE-2024-25312HigFeb 9, 2024
    risk 0.57cvss 8.8epss 0.01

    Code-projects Simple School Managment System 1.0 allows SQL Injection via the 'id' parameter at "School/sub_delete.php?id=5."

  • CVE-2024-25309HigFeb 9, 2024
    risk 0.57cvss 8.8epss 0.01

    Code-projects Simple School Managment System 1.0 allows SQL Injection via the 'pass' parameter at School/teacher_login.php.

  • CVE-2024-25308HigFeb 9, 2024
    risk 0.57cvss 8.8epss 0.01

    Code-projects Simple School Managment System 1.0 allows SQL Injection via the 'name' parameter at School/teacher_login.php.

  • CVE-2024-25306HigFeb 9, 2024
    risk 0.57cvss 8.8epss 0.01

    Code-projects Simple School Managment System 1.0 allows SQL Injection via the 'aname' parameter at "School/index.php".

  • CVE-2024-25305HigFeb 9, 2024
    risk 0.57cvss 8.8epss 0.01

    Code-projects Simple School Managment System 1.0 allows Authentication Bypass via the username and password parameters at School/index.php.

  • CVE-2024-25304HigFeb 9, 2024
    risk 0.57cvss 8.8epss 0.01

    Code-projects Simple School Managment System 1.0 allows SQL Injection via the 'apass' parameter at "School/index.php."

  • CVE-2024-24100HigFeb 27, 2024
    risk 0.54cvss 8.3epss 0.01

    Code-projects Computer Book Store 1.0 is vulnerable to SQL Injection via PublisherID.

  • CVE-2023-46022HigNov 14, 2023
    risk 0.54cvss 7.8epss 0.01

    SQL Injection vulnerability in delete.php in Code-Projects Blood Bank 1.0 allows attackers to run arbitrary SQL commands via the 'bid' parameter.

  • CVE-2025-52327HigAug 1, 2025
    risk 0.51cvss 7.8epss 0.00

    SQL Injection vulnerability in Restaurant Order System 1.0 allows a local attacker to obtain sensitive information via the payment.php file

  • CVE-2024-10758HigNov 4, 2024
    risk 0.51cvss 7.3epss 0.01

    A vulnerability, which was classified as critical, was found in code-projects/anirbandutta9 Content Management System and News-Buzz 1.0. This affects an unknown part of the file /index.php. The manipulation of the argument user_name leads to sql injection. It is possible to…

  • CVE-2024-24105HigMar 13, 2024
    risk 0.51cvss 7.8epss 0.00

    SQL Injection vulnerability in Code-projects Computer Science Time Table System 1.0 allows attackers to run arbitrary code via adminFormvalidation.php.

  • CVE-2024-24092HigMar 12, 2024
    risk 0.51cvss 7.8epss 0.00

    SQL Injection vulnerability in Code-projects.org Scholars Tracking System 1.0 allows attackers to run arbitrary code via login.php.

  • CVE-2024-24098HigMar 5, 2024
    risk 0.51cvss 7.8epss 0.00

    Code-projects Scholars Tracking System 1.0 is vulnerable to SQL Injection via the News Feed.

  • CVE-2024-24096HigFeb 27, 2024
    risk 0.51cvss 7.8epss 0.00

    Code-projects Computer Book Store 1.0 is vulnerable to SQL Injection via BookSBIN.

  • CVE-2023-46582HigNov 14, 2023
    risk 0.51cvss 7.8epss 0.00

    SQL injection vulnerability in Inventory Management v.1.0 allows a local attacker to execute arbitrary SQL commands via the id paramter in the deleteProduct.php component.

  • CVE-2025-40732HigJun 30, 2025
    risk 0.49cvss 7.5epss 0.00

    user enumeration vulnerability in Daily Expense Manager v1.0. To exploit this vulnerability a POST request must be sent using the name parameter in /check.php

  • CVE-2026-10243HigJun 1, 2026
    risk 0.48cvss 7.3epss 0.01

    A security vulnerability has been detected in code-projects Smart Parking System 1.0. Affected is an unknown function of the component Admin Endpoint. Such manipulation leads to missing authentication. It is possible to launch the attack remotely. The exploit has been disclosed…

  • CVE-2025-10811HigSep 22, 2025
    risk 0.48cvss 7.3epss 0.01

    A flaw has been found in code-projects Hostel Management System 1.0. This affects an unknown function of the file /justines/admin/mod_comments/index.php?view=view. Executing manipulation of the argument ID can lead to sql injection. The attack may be performed from remote. The…

  • CVE-2025-8329HigJul 30, 2025
    risk 0.48cvss 7.3epss 0.01

    A vulnerability, which was classified as critical, was found in code-projects Vehicle Management 1.0. This affects an unknown part of the file /filter3.php. The manipulation of the argument company leads to sql injection. It is possible to initiate the attack remotely. The…

  • CVE-2025-0564HigJan 19, 2025
    risk 0.48cvss 7.3epss 0.01

    A vulnerability was found in code-projects Fantasy-Cricket 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /authenticate.php. The manipulation of the argument uname leads to sql injection. The attack can be launched…

  • CVE-2025-0527HigJan 17, 2025
    risk 0.48cvss 7.3epss 0.01

    A vulnerability classified as critical was found in code-projects Admission Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /signupconfirm.php. The manipulation of the argument in_eml leads to sql injection. The attack can be…

  • CVE-2025-0347HigJan 9, 2025
    risk 0.48cvss 7.3epss 0.01

    A vulnerability was found in code-projects Admission Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file index.php of the component Login. The manipulation of the argument u_id leads to sql injection. The attack can be…

  • CVE-2025-0340HigJan 9, 2025
    risk 0.48cvss 7.3epss 0.01

    A vulnerability classified as critical was found in code-projects Cinema Seat Reservation System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/deleteBooking.php. The manipulation of the argument id leads to sql injection. The attack can be…

  • CVE-2025-0207HigJan 4, 2025
    risk 0.48cvss 7.3epss 0.01

    A vulnerability, which was classified as critical, has been found in code-projects Online Shoe Store 1.0. Affected by this issue is some unknown functionality of the file /function/login.php. The manipulation of the argument password leads to sql injection. The attack may be…

  • CVE-2024-12978HigDec 27, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability has been found in code-projects Job Recruitment 1.0 and classified as critical. This vulnerability affects the function add_req of the file /_parse/_all_edits.php. The manipulation of the argument jid/limit leads to sql injection. The attack can be initiated…

  • CVE-2024-12976HigDec 27, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability, which was classified as critical, has been found in CodeZips Hospital Management System 1.0. Affected by this issue is some unknown functionality of the file /staff.php. The manipulation of the argument tel leads to sql injection. The attack may be launched…

  • CVE-2024-12963HigDec 26, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability was found in code-projects Job Recruitment 1.0 and classified as critical. Affected by this issue is the function add_xp of the file /_parse/_all_edits.php. The manipulation of the argument job_company leads to sql injection. The attack may be launched remotely.…

  • CVE-2024-12945HigDec 26, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability classified as critical was found in code-projects Simple Car Rental System 1.0. This vulnerability affects unknown code of the file /account.php. The manipulation of the argument email/pass leads to sql injection. The attack can be initiated remotely. The exploit…

  • CVE-2024-12233HigDec 5, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability was found in code-projects Online Notice Board up to 1.0 and classified as critical. This issue affects some unknown processing of the file /registration.php of the component Profile Picture Handler. The manipulation of the argument img leads to unrestricted…

  • CVE-2024-11970HigNov 28, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability classified as critical has been found in code-projects Concert Ticket Ordering System 1.0. Affected is an unknown function of the file /tour(cor).php. The manipulation of the argument mai leads to sql injection. It is possible to launch the attack remotely. The…

  • CVE-2024-11962HigNov 28, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability classified as critical was found in code-projects Simple Car Rental System 1.0. Affected by this vulnerability is an unknown functionality of the file /login.php. The manipulation of the argument uname leads to sql injection. The attack can be launched remotely.…

  • CVE-2024-11632HigNov 23, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability was found in code-projects Simple Car Rental System 1.0. It has been classified as critical. Affected is an unknown function of the file /book_car.php. The manipulation of the argument fname/id_no/gender/email/phone/location leads to sql injection. It is possible…

  • CVE-2024-10967HigNov 7, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability was found in code-projects E-Health Care System 1.0. It has been classified as critical. Affected is an unknown function of the file /Doctor/delete_user_appointment_request.php. The manipulation of the argument id leads to sql injection. It is possible to launch…

  • CVE-2024-10741HigNov 3, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability has been found in code-projects E-Health Care System 1.0 and classified as critical. This vulnerability affects unknown code of the file /Users/registration.php. The manipulation of the argument f_name leads to sql injection. The attack can be initiated remotely.…

  • CVE-2024-10739HigNov 3, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability, which was classified as critical, has been found in code-projects E-Health Care System 1.0. Affected by this issue is some unknown functionality of the file /Admin/adminlogin.php. The manipulation of the argument email/admin_pswd as part of String leads to sql…

  • CVE-2024-10699HigNov 2, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability was found in code-projects Wazifa System 1.0. It has been classified as critical. This affects an unknown part of the file /controllers/logincontrol.php. The manipulation of the argument username leads to sql injection. It is possible to initiate the attack…

  • CVE-2024-10608HigNov 1, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability was found in code-projects Courier Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /login.php. The manipulation of the argument txtusername leads to sql injection. The attack may be initiated remotely.…

  • CVE-2024-10607HigNov 1, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability was found in code-projects Courier Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /track-result.php. The manipulation of the argument Consignment leads to sql injection. The attack can be initiated…

  • CVE-2024-9986HigOct 15, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability was found in code-projects Blood Bank Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file member_register.php. The manipulation of the argument fullname/username/password/email leads to sql injection. The…

  • CVE-2024-9812HigOct 10, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability classified as critical was found in code-projects Crud Operation System 1.0. This vulnerability affects unknown code of the file delete.php. The manipulation of the argument sid leads to sql injection. The attack can be initiated remotely. The exploit has been…

  • CVE-2024-9811HigOct 10, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability classified as critical has been found in code-projects Restaurant Reservation System 1.0. This affects an unknown part of the file filter3.php. The manipulation of the argument company leads to sql injection. It is possible to initiate the attack remotely. The…

  • CVE-2024-9360HigOct 1, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability was found in code-projects Restaurant Reservation System 1.0. It has been classified as critical. This affects an unknown part of the file /updatebal.php. The manipulation of the argument company leads to sql injection. It is possible to initiate the attack…

  • CVE-2024-9359HigOct 1, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability was found in code-projects Restaurant Reservation System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /addcompany.php. The manipulation of the argument company leads to sql injection. The attack may be launched…

  • CVE-2024-9091HigSep 23, 2024
    risk 0.48cvss 7.3epss 0.01

    A vulnerability was found in code-projects Student Record System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /index.php. The manipulation of the argument regno leads to sql injection. The attack can be launched…

Page 2 of 30