VYPR

Vendor CVEs

Code Projects

All CVEs

1,456 total · sorted by risk
  • CVE-2026-0699MedJan 8, 2026
    risk 0.31cvss 4.7epss 0.00

    A vulnerability was found in code-projects Intern Membership Management System 1.0. This impacts an unknown function of the file /intern/admin/edit_activity.php. Performing a manipulation of the argument activity_id results in sql injection. Remote exploitation of the attack is…

  • CVE-2026-0698MedJan 8, 2026
    risk 0.31cvss 4.7epss 0.00

    A vulnerability has been found in code-projects Intern Membership Management System 1.0. This affects an unknown function of the file /intern/admin/edit_students.php. Such manipulation of the argument admin_id leads to sql injection. The attack may be launched remotely. The…

  • CVE-2026-0697MedJan 8, 2026
    risk 0.31cvss 4.7epss 0.00

    A flaw has been found in code-projects Intern Membership Management System 1.0. The impacted element is an unknown function of the file /intern/admin/edit_admin.php. This manipulation of the argument admin_id causes sql injection. The attack may be initiated remotely. The…

  • CVE-2026-0566MedJan 2, 2026
    risk 0.31cvss 4.7epss 0.00

    A security vulnerability has been detected in code-projects Content Management System 1.0. Impacted is an unknown function of the file /admin/edit_posts.php. The manipulation of the argument image leads to unrestricted upload. The attack is possible to be carried out remotely.…

  • CVE-2025-15197MedDec 29, 2025
    risk 0.31cvss 4.7epss 0.00

    A security flaw has been discovered in code-projects/anirbandutta9 Content Management System and News-Buzz 1.0. This vulnerability affects unknown code of the file /admin/editposts.php. Performing manipulation of the argument image results in unrestricted upload. The attack may…

  • CVE-2025-14939MedDec 19, 2025
    risk 0.31cvss 4.7epss 0.00

    A vulnerability was found in code-projects Online Appointment Booking System 1.0. Impacted is an unknown function of the file /admin/deletemanager.php. The manipulation of the argument managername results in sql injection. The attack may be performed from remote. The exploit has…

  • CVE-2025-14642MedDec 14, 2025
    risk 0.31cvss 4.7epss 0.00

    A vulnerability has been found in code-projects Computer Laboratory System 1.0. Impacted is an unknown function of the file technical_staff_pic.php. Such manipulation of the argument image leads to unrestricted upload. The attack may be launched remotely. The exploit has been…

  • CVE-2025-14641MedDec 14, 2025
    risk 0.31cvss 4.7epss 0.00

    A flaw has been found in code-projects Computer Laboratory System 1.0. This issue affects some unknown processing of the file admin/admin_pic.php. This manipulation of the argument image causes unrestricted upload. The attack may be initiated remotely. The exploit has been…

  • CVE-2025-13574MedNov 24, 2025
    risk 0.31cvss 4.7epss 0.00

    A weakness has been identified in code-projects Online Bidding System 1.0. This issue affects the function categoryadd of the file /administrator/addcategory.php. This manipulation of the argument catimage causes unrestricted upload. The attack is possible to be carried out…

  • CVE-2025-13302MedNov 17, 2025
    risk 0.31cvss 4.7epss 0.00

    A vulnerability was identified in code-projects Courier Management System 1.0. This affects an unknown part of the file /add-new-officer.php. Such manipulation of the argument ManagerName leads to sql injection. The attack can be launched remotely. The exploit is publicly…

  • CVE-2025-13076MedNov 12, 2025
    risk 0.31cvss 4.7epss 0.00

    A flaw has been found in code-projects Responsive Hotel Site 1.0. The affected element is an unknown function of the file /admin/usersetting.php. Executing manipulation of the argument usname can lead to sql injection. The attack can be executed remotely. The exploit has been…

  • CVE-2025-13075MedNov 12, 2025
    risk 0.31cvss 4.7epss 0.00

    A vulnerability was detected in code-projects Responsive Hotel Site 1.0. Impacted is an unknown function of the file /admin/usersettingdel.php. Performing manipulation of the argument eid results in sql injection. Remote exploitation of the attack is possible. The exploit is now…

  • CVE-2025-12913MedNov 8, 2025
    risk 0.31cvss 4.7epss 0.00

    A flaw has been found in code-projects Responsive Hotel Site 1.0. This affects an unknown part of the file /admin/roomdel.php. Executing manipulation of the argument ID can lead to sql injection. It is possible to launch the attack remotely. The exploit has been published and…

  • CVE-2025-12857MedNov 7, 2025
    risk 0.31cvss 4.7epss 0.00

    A security vulnerability has been detected in code-projects Responsive Hotel Site 1.0. The affected element is an unknown function of the file /admin/roombook.php. Such manipulation of the argument rid leads to sql injection. The attack can be launched remotely. The exploit has…

  • CVE-2025-12856MedNov 7, 2025
    risk 0.31cvss 4.7epss 0.00

    A weakness has been identified in code-projects Responsive Hotel Site 1.0. Impacted is an unknown function of the file /admin/reservation.php. This manipulation of the argument email causes sql injection. The attack can be initiated remotely. The exploit has been made available…

  • CVE-2025-12855MedNov 7, 2025
    risk 0.31cvss 4.7epss 0.00

    A security flaw has been discovered in code-projects Responsive Hotel Site 1.0. This issue affects some unknown processing of the file /admin/newsletterdel.php. The manipulation of the argument eid results in sql injection. It is possible to launch the attack remotely. The…

  • CVE-2025-12594MedNov 2, 2025
    risk 0.31cvss 4.7epss 0.00

    A security flaw has been discovered in code-projects Simple Online Hotel Reservation System 2.0. This affects an unknown function of the file /admin/add_account.php. The manipulation of the argument Name results in sql injection. The attack may be performed from remote. The…

  • CVE-2025-12593MedNov 2, 2025
    risk 0.31cvss 4.7epss 0.00

    A vulnerability was identified in code-projects Simple Online Hotel Reservation System 2.0. The impacted element is an unknown function of the file /admin/edit_room.php of the component Photo Handler. The manipulation leads to unrestricted upload. The attack is possible to be…

  • CVE-2025-12315MedOct 27, 2025
    risk 0.31cvss 4.7epss 0.00

    A vulnerability was determined in code-projects Food Ordering System 1.0. This affects an unknown function of the file /admin/menu.php. Executing a manipulation of the argument itemPrice can lead to sql injection. The attack can be executed remotely. The exploit has been…

  • CVE-2025-12314MedOct 27, 2025
    risk 0.31cvss 4.7epss 0.00

    A vulnerability was found in code-projects Food Ordering System 1.0. The impacted element is an unknown function of the file /admin/deleteitem.php. Performing a manipulation of the argument itemID results in sql injection. Remote exploitation of the attack is possible. The…

  • CVE-2025-11668MedOct 13, 2025
    risk 0.31cvss 4.7epss 0.00

    A vulnerability was determined in code-projects Automated Voting System 1.0. Affected by this issue is some unknown functionality of the file /admin/update_user.php. This manipulation of the argument Password causes sql injection. The attack is possible to be carried out…

  • CVE-2025-11508MedOct 8, 2025
    risk 0.31cvss 4.7epss 0.00

    A security vulnerability has been detected in code-projects Voting System 1.0. This affects an unknown function of the file /admin/voters_add.php. Such manipulation of the argument photo leads to unrestricted upload. The attack can be launched remotely. The exploit has been…

  • CVE-2025-11342MedOct 6, 2025
    risk 0.31cvss 4.7epss 0.00

    A weakness has been identified in code-projects Online Course Registration 1.0. This impacts an unknown function of the file /admin/edit-course.php. Executing manipulation of the argument coursecode can lead to sql injection. The attack can be executed remotely. The exploit has…

  • CVE-2025-7477MedJul 12, 2025
    risk 0.31cvss 4.7epss 0.00

    A vulnerability, which was classified as critical, has been found in code-projects Simple Car Rental System 1.0. This issue affects some unknown processing of the file /admin/add_cars.php. The manipulation of the argument image leads to unrestricted upload. The attack may be…

  • CVE-2025-6842MedJun 29, 2025
    risk 0.31cvss 4.7epss 0.00

    A vulnerability was found in code-projects Product Inventory System 1.0 and classified as critical. This issue affects some unknown processing of the file /admin/edit_user.php. The manipulation of the argument ID leads to sql injection. The attack may be initiated remotely. The…

  • CVE-2025-6841MedJun 29, 2025
    risk 0.31cvss 4.7epss 0.00

    A vulnerability has been found in code-projects Product Inventory System 1.0 and classified as critical. This vulnerability affects unknown code of the file /admin/edit_product.php. The manipulation of the argument ID leads to sql injection. The attack can be initiated remotely.…

  • CVE-2025-6484MedJun 22, 2025
    risk 0.31cvss 4.7epss 0.00

    A vulnerability was found in code-projects Online Shopping Store 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /action.php. The manipulation of the argument cat_id/brand_id/keyword/proId/pid leads to sql injection. The attack…

  • CVE-2025-29568MedApr 24, 2025
    risk 0.31cvss 4.8epss 0.00

    A vulnerability has been discovered in the code-projects Online Class and Exam Scheduling System 1.0. The issue affects some unknown features in the file /Scheduling/pages/class_sched.php. Manipulating the class parameter can lead to cross-site scripting (XSS).

  • CVE-2025-3565MedApr 14, 2025
    risk 0.31cvss 4.7epss 0.01

    A vulnerability classified as critical was found in huanfenz/code-projects StudentManager 1.0. This vulnerability affects unknown code of the file /upload/uploadArticle.do of the component Announcement Management Section. The manipulation of the argument File leads to…

  • CVE-2025-2393MedMar 17, 2025
    risk 0.31cvss 4.7epss 0.00

    A vulnerability, which was classified as critical, was found in code-projects Online Class and Exam Scheduling System 1.0. Affected is an unknown function of the file /pages/salut_del.php. The manipulation of the argument id leads to sql injection. It is possible to launch the…

  • CVE-2025-2392MedMar 17, 2025
    risk 0.31cvss 4.7epss 0.00

    A vulnerability, which was classified as critical, has been found in code-projects Online Class and Exam Scheduling System 1.0. This issue affects some unknown processing of the file /pages/activate.php. The manipulation of the argument id leads to sql injection. The attack may…

  • CVE-2025-2389MedMar 17, 2025
    risk 0.31cvss 4.7epss 0.00

    A vulnerability was found in code-projects Blood Bank Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /admin/add_city.php. The manipulation leads to sql injection. The attack may be launched remotely. The…

  • CVE-2025-2054MedMar 7, 2025
    risk 0.31cvss 4.7epss 0.01

    A vulnerability was found in code-projects Blood Bank Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /admin/edit_state.php. The manipulation of the argument state_id leads to sql injection. The…

  • CVE-2025-2044MedMar 6, 2025
    risk 0.31cvss 4.7epss 0.00

    A vulnerability was found in code-projects Blood Bank Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /admin/delete_bloodGroup.php. The manipulation of the argument blood_id leads to sql injection.…

  • CVE-2025-2039MedMar 6, 2025
    risk 0.31cvss 4.7epss 0.00

    A vulnerability classified as critical has been found in code-projects Blood Bank Management System 1.0. Affected is an unknown function of the file /admin/delete_members.php. The manipulation of the argument member_id leads to sql injection. It is possible to launch the attack…

  • CVE-2025-0346MedJan 9, 2025
    risk 0.31cvss 4.7epss 0.01

    A vulnerability was found in code-projects Content Management System 1.0. It has been classified as critical. This affects an unknown part of the file /admin/publishnews.php of the component Publish News Page. The manipulation of the argument image leads to unrestricted upload.…

  • CVE-2024-10350MedOct 24, 2024
    risk 0.31cvss 4.7epss 0.01

    A vulnerability was found in code-projects Hospital Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /admin/add-doctor.php. The manipulation of the argument docname leads to sql injection. The attack can be initiated…

  • CVE-2024-10171MedOct 20, 2024
    risk 0.31cvss 4.7epss 0.00

    A vulnerability, which was classified as critical, was found in code-projects Blood Bank System up to 1.0. Affected is an unknown function of the file /admin/massage.php. The manipulation of the argument bid leads to sql injection. It is possible to launch the attack remotely.…

  • CVE-2024-9804MedOct 10, 2024
    risk 0.31cvss 4.7epss 0.00

    A vulnerability was found in code-projects Blood Bank System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /admin/campsdetails.php. The manipulation of the argument hospital leads to sql injection. The attack can be initiated…

  • CVE-2024-2754MedMar 21, 2024
    risk 0.31cvss 4.7epss 0.01

    A vulnerability classified as critical has been found in SourceCodester Complete E-Commerce Site 1.0. Affected is an unknown function of the file /admin/users_photo.php. The manipulation of the argument photo leads to unrestricted upload. It is possible to launch the attack…

  • CVE-2023-7105MedFeb 29, 2024
    risk 0.31cvss 4.7epss 0.01

    A vulnerability was found in code-projects E-Commerce Website 1.0. It has been classified as critical. Affected is an unknown function of the file index_search.php. The manipulation of the argument search leads to sql injection. It is possible to launch the attack remotely. The…

  • CVE-2023-7096MedDec 25, 2023
    risk 0.31cvss 4.7epss 0.01

    A flaw has been found in code-projects Faculty Management System 1.0. The affected element is an unknown function of the file /admin/php/crud.php. This manipulation of the argument fieldname/tablename causes sql injection. The attack is possible to be carried out remotely. The…

  • CVE-2023-37070MedAug 14, 2023
    risk 0.31cvss 4.8epss 0.01

    Code Projects Hospital Information System 1.0 is vulnerable to Cross Site Scripting (XSS)

  • CVE-2025-29426MedMar 17, 2025
    risk 0.30cvss 4.6epss 0.00

    Code-projects Online Class and Exam Scheduling System V1.0 is vulnerable to Cross Site Scripting (XSS) in /pages/class.php via the id and cys parameters.

  • CVE-2025-4037MedApr 28, 2025
    risk 0.29cvss 4.4epss 0.00

    A vulnerability was found in code-projects ATM Banking 1.0. It has been classified as critical. Affected is the function moneyDeposit/moneyWithdraw. The manipulation leads to business logic errors. Local access is required to approach this attack. The exploit has been disclosed…

  • CVE-2026-19378MedAug 10, 2026
    risk 0.28cvss 4.3epss 0.00

    A vulnerability was found in code-projects Task Management System 1.0. This issue affects some unknown processing of the file /user/CommentSave.php. The manipulation of the argument comment/task_id/mineId/recId/myName/myImage results in cross site scripting. It is possible to…

  • CVE-2026-10289MedJun 1, 2026
    risk 0.28cvss 4.3epss 0.00

    A security flaw has been discovered in code-projects Hotel and Tourism Reservation System 1.0. Impacted is an unknown function of the file /ht/tour.php. Performing a manipulation of the argument name /email /people /number results in cross site scripting. The attack can be…

  • CVE-2026-9448MedMay 25, 2026
    risk 0.28cvss 4.3epss 0.00

    A vulnerability was determined in code-projects Employee Management System 1.0. This affects an unknown function of the file /applyleave.php. Executing a manipulation of the argument ID can lead to cross site scripting. The attack may be performed from remote. The exploit has…

  • CVE-2026-9419MedMay 25, 2026
    risk 0.28cvss 4.3epss 0.00

    A vulnerability has been found in code-projects Employee Management System 1.0. Affected by this issue is some unknown functionality of the file /empproject.php. The manipulation of the argument ID leads to cross site scripting. It is possible to initiate the attack remotely.…

  • CVE-2026-9418MedMay 25, 2026
    risk 0.28cvss 4.3epss 0.00

    A flaw has been found in code-projects Employee Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /changepassemp.php. Executing a manipulation of the argument ID can lead to cross site scripting. The attack may be performed from…

Page 24 of 30