VYPR

Vendor CVEs

Code Projects

All CVEs

1,456 total · sorted by risk
  • CVE-2025-9921LowSep 3, 2025
    risk 0.16cvss 2.4epss 0.00

    A weakness has been identified in code-projects POS Pharmacy System 1.0. Affected is an unknown function of the file /main/products.php. This manipulation of the argument product_code/gen_name/product_name/supplier causes cross site scripting. The attack can be initiated…

  • CVE-2025-8337LowJul 30, 2025
    risk 0.16cvss 2.4epss 0.00

    A vulnerability, which was classified as problematic, has been found in code-projects Simple Car Rental System 1.0. This issue affects some unknown processing of the file /admin/add_vehicles.php. The manipulation of the argument car_name leads to cross site scripting. The attack…

  • CVE-2025-6778LowJun 27, 2025
    risk 0.16cvss 2.4epss 0.00

    A vulnerability, which was classified as problematic, was found in code-projects Food Distributor Site 1.0. Affected is an unknown function of the file /admin/save_settings.php. The manipulation of the argument site_phone/site_email/address leads to cross site scripting. It is…

  • CVE-2025-5661LowJun 5, 2025
    risk 0.16cvss 2.4epss 0.00

    A vulnerability, which was classified as problematic, was found in code-projects Traffic Offense Reporting System 1.0. This affects an unknown part of the file /save-settings.php of the component Setting Handler. The manipulation of the argument site_name leads to cross site…

  • CVE-2025-2590LowMar 21, 2025
    risk 0.16cvss 2.4epss 0.00

    A vulnerability was found in code-projects Human Resource Management System 1.0.1. It has been classified as problematic. Affected is the function UpdateRecruitmentById of the file \handler\recruitment.go. The manipulation of the argument c leads to cross site scripting. It is…

  • CVE-2025-1579LowFeb 23, 2025
    risk 0.16cvss 2.4epss 0.00

    A vulnerability was found in code-projects Blood Bank System 1.0 and classified as problematic. This issue affects some unknown processing of the file /admin/user.php. The manipulation of the argument email leads to cross site scripting. The attack may be initiated remotely. The…

  • CVE-2025-0537LowJan 17, 2025
    risk 0.16cvss 2.4epss 0.00

    A vulnerability, which was classified as problematic, has been found in code-projects Car Rental Management System 1.0. This issue affects some unknown processing of the file /admin/manage-pages.php. The manipulation of the argument pgdetails leads to cross site scripting. The…

  • CVE-2025-0228LowJan 5, 2025
    risk 0.16cvss 2.4epss 0.00

    A vulnerability has been found in code-projects Local Storage Todo App 1.0 and classified as problematic. This vulnerability affects unknown code of the file /js-todo-app/index.html. The manipulation of the argument Add leads to cross site scripting. The attack can be initiated…

  • CVE-2024-12983LowDec 27, 2024
    risk 0.16cvss 2.4epss 0.01

    A vulnerability classified as problematic has been found in code-projects Hospital Management System 1.0. This affects an unknown part of the file /hospital/hms/admin/manage-doctors.php of the component Edit Doctor Details Page. The manipulation of the argument Doctor Name leads…

  • CVE-2024-10199LowOct 21, 2024
    risk 0.16cvss 2.4epss 0.00

    A vulnerability was found in code-projects Pharmacy Management System 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /manage_medicine.php of the component Manage Medicines Page. The manipulation of the argument…

  • CVE-2024-10198LowOct 21, 2024
    risk 0.16cvss 2.4epss 0.00

    A vulnerability was found in code-projects Pharmacy Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /manage_customer.php of the component Manage Customer Page. The manipulation of the argument…

  • CVE-2024-10197LowOct 21, 2024
    risk 0.16cvss 2.4epss 0.00

    A vulnerability was found in code-projects Pharmacy Management System 1.0. It has been classified as problematic. Affected is an unknown function of the file /manage_supplier.php of the component Manage Supplier Page. The manipulation of the argument address leads to cross site…

  • CVE-2023-7143LowDec 29, 2023
    risk 0.16cvss 2.4epss 0.01

    A vulnerability was found in code-projects Client Details System 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /admin/regester.php. The manipulation of the argument fname/lname/email/contact leads to cross site scripting.…

  • CVE-2023-7136LowDec 28, 2023
    risk 0.16cvss 2.4epss 0.00

    A vulnerability classified as problematic was found in code-projects Record Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /main/doctype.php of the component Document Type Handler. The manipulation of the argument docname with the…

  • CVE-2023-7135LowDec 28, 2023
    risk 0.16cvss 2.4epss 0.00

    A vulnerability classified as problematic has been found in code-projects Record Management System 1.0. Affected is an unknown function of the file /main/offices.php of the component Offices Handler. The manipulation of the argument officename with the input "><script…

  • CVE-2023-7056LowDec 22, 2023
    risk 0.16cvss 2.4epss 0.00

    A vulnerability classified as problematic was found in code-projects Faculty Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/pages/subjects.php. The manipulation of the argument Description/Units leads to cross site scripting.…

  • CVE-2024-9040LowSep 20, 2024
    risk 0.15cvss 2.3epss 0.00

    A vulnerability, which was classified as problematic, was found in code-projects Blood Bank Management System 1.0. This affects an unknown part of the component Password Handler. The manipulation leads to cleartext storage in a file or on disk. An attack has to be approached…

  • CVE-2001-0216Jun 2, 2001
    risk 0.03cvss epss 0.04

    PALS Library System pals-cgi program allows remote attackers to execute arbitrary commands via shell metacharacters in the documentName parameter.

  • CVE-2025-65342MedJul 30, 2026
    risk 0.00cvss 6.1epss 0.00

    code-projects Blood System 1.0 is vulnerable to Cross Site Scripting (XSS) in /don.php via the city field.

  • CVE-2026-16220MedJul 19, 2026
    risk 0.00cvss 4.3epss 0.00

    A vulnerability has been found in code-projects Online Examination System 1.0. This vulnerability affects unknown code of the file /account.php?q=quiz. Such manipulation of the argument eid/n/t leads to cross site scripting. The attack can be launched remotely. The exploit has…

  • CVE-2026-16014HigJul 17, 2026
    risk 0.00cvss 7.3epss 0.00

    A vulnerability was found in code-projects Hospital Bed Management System 1.0. This affects an unknown part of the component Login Form. Performing a manipulation of the argument Username results in sql injection. Remote exploitation of the attack is possible. The exploit has…

  • CVE-2026-15678LowJul 14, 2026
    risk 0.00cvss 3.5epss 0.00

    A security vulnerability has been detected in code-projects Online Job Portal 1.0. This impacts an unknown function of the file /Admin/DetailJob.php. The manipulation leads to cross site scripting. The attack is possible to be carried out remotely. The exploit has been disclosed…

  • CVE-2026-15677HigJul 14, 2026
    risk 0.00cvss 7.3epss 0.00

    A weakness has been identified in code-projects Online Job Portal 1.0. This affects an unknown function of the file /JobSeekerInsert.php. Executing a manipulation of the argument txtFile can lead to unrestricted upload. The attack can be executed remotely. The exploit has been…

  • CVE-2026-15676HigJul 14, 2026
    risk 0.00cvss 7.3epss 0.00

    A security flaw has been discovered in code-projects Online Job Portal up to 1.0. The impacted element is an unknown function of the file /Admin/DeleteUser.php. Performing a manipulation results in sql injection. Remote exploitation of the attack is possible. The exploit has…

  • CVE-2026-15675HigJul 14, 2026
    risk 0.00cvss 7.3epss 0.00

    A vulnerability was identified in code-projects Online Job Portal 1.0. The affected element is an unknown function of the file /Admin/EditUser.php. Such manipulation of the argument UserId leads to sql injection. The attack may be launched remotely. The exploit is publicly…

  • CVE-2026-15137HigJul 9, 2026
    risk 0.00cvss 7.3epss 0.00

    A weakness has been identified in code-projects Interview Management System 1.0. This vulnerability affects unknown code of the file \inc\classes\View.php. This manipulation of the argument ID causes sql injection. The attack can be initiated remotely. The exploit has been made…

  • CVE-2026-15135HigJul 9, 2026
    risk 0.00cvss 7.3epss 0.00

    A security flaw has been discovered in code-projects Online Food Order System 1.0. This affects an unknown part of the file /edit_food_items.php. The manipulation of the argument update results in sql injection. It is possible to launch the attack remotely. The exploit has been…

  • CVE-2026-14769HigJul 5, 2026
    risk 0.00cvss 7.3epss 0.00

    A security vulnerability has been detected in code-projects Real State Services 1.0. This issue affects some unknown processing of the file /pay.php. Such manipulation of the argument Bankname leads to sql injection. The attack may be performed from remote. The exploit has been…

  • CVE-2026-14768HigJul 5, 2026
    risk 0.00cvss 7.3epss 0.00

    A weakness has been identified in code-projects Real State Services 1.0. This vulnerability affects unknown code of the file /builderHome.php. This manipulation of the argument loc causes sql injection. The attack is possible to be carried out remotely. The exploit has been made…

  • CVE-2026-14764HigJul 5, 2026
    risk 0.00cvss 7.3epss 0.00

    A vulnerability has been found in code-projects Hotel and Tourism Reservation 1.0. This impacts an unknown function of the file /admin/add_event.php of the component Event Management Page. Such manipulation of the argument fdetails leads to sql injection. The attack can be…

  • CVE-2026-14763HigJul 5, 2026
    risk 0.00cvss 7.3epss 0.00

    A flaw has been found in code-projects Hotel and Tourism Reservation 1.0. This affects an unknown function of the file /admin/tour_reserves.php of the component Tour Reservations Page. This manipulation of the argument tour causes sql injection. The attack can be initiated…

  • CVE-2026-14762HigJul 5, 2026
    risk 0.00cvss 7.3epss 0.00

    A vulnerability was detected in code-projects Hotel and Tourism Reservation 1.0. The impacted element is an unknown function of the file /admin/rooms.php of the component Room Management Page. The manipulation of the argument delete results in sql injection. It is possible to…

  • CVE-2026-14756HigJul 5, 2026
    risk 0.00cvss 7.3epss 0.00

    A vulnerability was found in code-projects Hotel and Tourism Reservation 1.0. Affected by this issue is some unknown functionality of the file /admin/add_tour.php of the component Tour Management Page. The manipulation of the argument delete_image results in sql injection. The…

  • CVE-2026-14755HigJul 5, 2026
    risk 0.00cvss 7.3epss 0.00

    A vulnerability has been found in code-projects Hotel and Tourism Reservation 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/reservations.php of the component Reservations Management Page. The manipulation of the argument delete leads to sql…

  • CVE-2026-14754HigJul 5, 2026
    risk 0.00cvss 7.3epss 0.00

    A flaw has been found in code-projects Hotel and Tourism Reservation 1.0. Affected is an unknown function of the file /admin/add_room.php. Executing a manipulation of the argument delete_image/edit/description/number/price/rooms/type can lead to sql injection. The attack can be…

  • CVE-2026-14747HigJul 5, 2026
    risk 0.00cvss 7.3epss 0.00

    A vulnerability was detected in code-projects Real State Services 1.0. Affected by this vulnerability is an unknown functionality of the file /addprojectsale.php. The manipulation of the argument amen results in sql injection. The attack can be launched remotely.

  • CVE-2026-14746HigJul 5, 2026
    risk 0.00cvss 7.3epss 0.00

    A security vulnerability has been detected in code-projects Real State Services 1.0. Affected is an unknown function of the file /addprojectrent.php. The manipulation of the argument amen leads to sql injection. The attack can be initiated remotely. The exploit has been…

  • CVE-2026-14745HigJul 5, 2026
    risk 0.00cvss 7.3epss 0.00

    A weakness has been identified in code-projects Real State Services 1.0. This impacts an unknown function of the file /single-list_rent.php. Executing a manipulation of the argument ID can lead to sql injection. It is possible to launch the attack remotely. The exploit has been…

  • CVE-2026-14744HigJul 5, 2026
    risk 0.00cvss 7.3epss 0.00

    A security flaw has been discovered in code-projects Real State Services 1.0. This affects an unknown function of the file /normalHomeRent.php. Performing a manipulation of the argument loc results in sql injection. It is possible to initiate the attack remotely. The exploit has…

  • CVE-2026-14743HigJul 5, 2026
    risk 0.00cvss 7.3epss 0.00

    A vulnerability was identified in code-projects Real State Services 1.0. The impacted element is an unknown function of the file /normalHomeSale.php. Such manipulation of the argument loc leads to sql injection. The attack may be performed from remote. The exploit is publicly…

  • CVE-2026-14735HigJul 5, 2026
    risk 0.00cvss 7.3epss 0.00

    A vulnerability has been found in code-projects Smart Parking System 1.0. The affected element is an unknown function of the file /parkings/parkings.php. Such manipulation of the argument street/city/status leads to sql injection. The attack can be executed remotely. The exploit…

  • CVE-2026-14706MedJul 5, 2026
    risk 0.00cvss 6.3epss 0.00

    A vulnerability was identified in code-projects Online Examination 1.0. This affects an unknown part of the file /update.php?q=addquiz of the component Quiz Creation Feature. The manipulation of the argument name/total/right/wrong/time/tag/desc leads to sql injection. The attack…

  • CVE-2026-14705HigJul 5, 2026
    risk 0.00cvss 7.3epss 0.00

    A vulnerability was determined in code-projects Online Examination 1.0. Affected by this issue is some unknown functionality of the file head.php. Executing a manipulation of the argument uname/password can lead to sql injection. It is possible to launch the attack remotely. The…

  • CVE-2026-14701MedJul 5, 2026
    risk 0.00cvss 6.3epss 0.00

    A vulnerability was detected in code-projects Internship Management System 1.0. This affects an unknown function of the file employer/details/change_password.php of the component Password Change Endpoint. The manipulation of the argument Current results in sql injection. The…

  • CVE-2026-14700HigJul 5, 2026
    risk 0.00cvss 7.3epss 0.00

    A security vulnerability has been detected in code-projects Internship Management System 1.0. The impacted element is an unknown function of the file employer/login.php of the component Employer Login Endpoint. The manipulation of the argument email/password leads to sql…

  • CVE-2026-14660HigJul 4, 2026
    risk 0.00cvss 7.3epss 0.00

    A vulnerability was found in code-projects Online Job Portal 1.0. The affected element is an unknown function of the file login.php. Performing a manipulation of the argument txtUser/txtPass results in sql injection. The attack may be initiated remotely. The exploit has been…

  • CVE-2026-14658MedJul 4, 2026
    risk 0.00cvss 6.3epss 0.00

    A vulnerability was detected in code-projects Assessment Management 1.0. This vulnerability affects unknown code of the file /lecturer/marking-scheme.php. The manipulation of the argument smarksrange[] results in sql injection. It is possible to launch the attack remotely. The…

  • CVE-2026-14657MedJul 4, 2026
    risk 0.00cvss 6.3epss 0.00

    A flaw has been found in code-projects Assessment Management 1.0. This issue affects some unknown processing of the file /lecturer/marking-scheme.php of the component Database Query Handler. This manipulation of the argument squestions[] causes sql injection. The attack can be…

  • CVE-2026-14656MedJul 4, 2026
    risk 0.00cvss 4.3epss 0.00

    A security vulnerability has been detected in code-projects Assessment Management 1.0. This affects an unknown part of the file /admin/remove-user.php. The manipulation of the argument ID leads to cross site scripting. It is possible to initiate the attack remotely. The exploit…

  • CVE-2026-14655LowJul 4, 2026
    risk 0.00cvss 2.4epss 0.00

    A weakness has been identified in code-projects Assessment Management 1.0. Affected by this issue is some unknown functionality of the file admin/view-users.php. Executing a manipulation of the argument User can lead to cross site scripting. The attack may be performed from…

Page 29 of 30