VYPR

Vendor CVEs

Itsourcecode

All CVEs

723 total · sorted by risk
  • CVE-2026-10256MedJun 1, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was identified in itsourcecode Content Management System 1.0. This vulnerability affects unknown code of the file /save_comment.php. The manipulation of the argument Name leads to sql injection. Remote exploitation of the attack is possible. The exploit is…

  • CVE-2026-10242MedJun 1, 2026
    risk 0.41cvss 6.3epss 0.00

    A weakness has been identified in itsourcecode Content Management System 1.0. This impacts an unknown function of the file /instructions.php. This manipulation of the argument topic_id causes sql injection. It is possible to initiate the attack remotely. The exploit has been…

  • CVE-2026-9607MedMay 27, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was found in itsourcecode Courier Management System 1.0. The affected element is an unknown function of the file /parcel_list.php. Performing a manipulation of the argument s results in sql injection. It is possible to initiate the attack remotely. The exploit…

  • CVE-2026-7822MedMay 5, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was identified in itsourcecode Courier Management System 1.0. This impacts an unknown function of the file /print_pdets.php. The manipulation of the argument ids leads to sql injection. The attack may be initiated remotely. The exploit is publicly available and…

  • CVE-2026-6191MedApr 13, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was determined in itsourcecode Construction Management System 1.0. This affects an unknown function of the file /equipments.php. Executing a manipulation of the argument Name can lead to sql injection. The attack can be launched remotely. The exploit has been…

  • CVE-2026-6190MedApr 13, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was found in itsourcecode Construction Management System 1.0. The impacted element is an unknown function of the file /employees.php. Performing a manipulation of the argument Name results in sql injection. The attack can be initiated remotely. The exploit has…

  • CVE-2026-6030MedApr 10, 2026
    risk 0.41cvss 6.3epss 0.00

    A flaw has been found in itsourcecode Construction Management System 1.0. The impacted element is an unknown function of the file /del1.php. This manipulation of the argument toolname causes sql injection. Remote exploitation of the attack is possible. The exploit has been…

  • CVE-2026-6007MedApr 10, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was found in itsourcecode Construction Management System 1.0. This affects an unknown function of the file /del.php. The manipulation of the argument equipname results in sql injection. The attack can be launched remotely. The exploit has been made public and…

  • CVE-2026-5823MedApr 9, 2026
    risk 0.41cvss 6.3epss 0.00

    A weakness has been identified in itsourcecode Construction Management System 1.0. Affected by this issue is some unknown functionality of the file /borrowed_tool_report.php. This manipulation of the argument Home causes sql injection. It is possible to initiate the attack…

  • CVE-2026-5719MedApr 7, 2026
    risk 0.41cvss 6.3epss 0.00

    A flaw has been found in itsourcecode Construction Management System 1.0. This affects an unknown function of the file /borrowedtool.php. Executing a manipulation of the argument code can lead to sql injection. It is possible to launch the attack remotely. The exploit has been…

  • CVE-2026-5681MedApr 6, 2026
    risk 0.41cvss 6.3epss 0.00

    A flaw has been found in itsourcecode sanitize or validate this input 1.0. This impacts an unknown function of the file /borrowedequip.php of the component Parameter Handler. This manipulation of the argument emp_id causes sql injection. The attack is possible to be carried out…

  • CVE-2026-5675MedApr 6, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was found in itsourcecode Construction Management System 1.0. This affects an unknown part of the file /borrowed_tool.php of the component Parameter Handler. The manipulation of the argument emp results in sql injection. It is possible to launch the attack…

  • CVE-2026-5660MedApr 6, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was determined in itsourcecode Construction Management System 1.0. The impacted element is an unknown function of the file /borrowed_equip.php of the component Parameter Handler. This manipulation of the argument emp causes sql injection. The attack may be…

  • CVE-2026-5620MedApr 6, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability has been found in itsourcecode Construction Management System 1.0. Affected is an unknown function of the file /borrowed_equip_report.php of the component Parameter Handler. The manipulation of the argument Home leads to sql injection. It is possible to initiate…

  • CVE-2026-5553MedApr 5, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was identified in itsourcecode Online Cellphone System 1.0. Affected by this vulnerability is an unknown functionality of the file /cp/available.php of the component Parameter Handler. Such manipulation of the argument Name leads to sql injection. The attack can…

  • CVE-2026-4966MedMar 27, 2026
    risk 0.41cvss 6.3epss 0.00

    A flaw has been found in itsourcecode Free Hotel Reservation System 1.0. Impacted is an unknown function of the file /admin/mod_room/index.php?view=edit. Executing a manipulation of the argument ID can lead to sql injection. The attack can be launched remotely. The exploit has…

  • CVE-2026-4876MedMar 26, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was identified in itsourcecode Free Hotel Reservation System 1.0. The impacted element is an unknown function of the file /admin/mod_amenities/index.php?view=editpic. Such manipulation of the argument ID leads to sql injection. The attack may be performed from…

  • CVE-2026-4783MedMar 25, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability has been found in itsourcecode College Management System 1.0. The impacted element is an unknown function of the file /admin/add-single-student-results.php of the component Parameter Handler. The manipulation of the argument course_code leads to sql injection. It…

  • CVE-2026-4614MedMar 24, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was determined in itsourcecode sanitize or validate this input 1.0. This issue affects some unknown processing of the file /admin/subjects.php of the component Parameter Handler. This manipulation of the argument subject_code causes sql injection. The attack is…

  • CVE-2026-4485MedMar 20, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability has been found in itsourcecode College Management System 1.0. The impacted element is an unknown function of the file /admin/search_student.php. The manipulation of the argument Search leads to sql injection. The attack is possible to be carried out remotely. The…

  • CVE-2026-4472MedMar 20, 2026
    risk 0.41cvss 6.3epss 0.00

    A security vulnerability has been detected in itsourcecode Online Frozen Foods Ordering System 1.0. This vulnerability affects unknown code of the file /admin/admin_edit_supplier.php. The manipulation of the argument Supplier_Name leads to sql injection. The attack can be…

  • CVE-2026-4241MedMar 16, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was identified in itsourcecode College Management System 1.0. The impacted element is an unknown function of the file /admin/time-table.php. Such manipulation of the argument course_code leads to sql injection. The attack can be launched remotely. The exploit is…

  • CVE-2026-3767MedMar 8, 2026
    risk 0.41cvss 6.3epss 0.00

    A weakness has been identified in itsourcecode sanitize or validate this input 1.0. Affected is an unknown function of the file /admin/teacher-attendance.php. Executing a manipulation of the argument teacher_id can lead to sql injection. The attack may be launched remotely. The…

  • CVE-2026-3150MedFeb 25, 2026
    risk 0.41cvss 6.3epss 0.00

    A security vulnerability has been detected in itsourcecode College Management System 1.0. This affects an unknown part of the file /admin/display-teacher.php. The manipulation of the argument teacher_id leads to sql injection. The attack is possible to be carried out remotely.…

  • CVE-2026-3149MedFeb 25, 2026
    risk 0.41cvss 6.3epss 0.00

    A weakness has been identified in itsourcecode College Management System 1.0. Affected by this issue is some unknown functionality of the file /admin/asign-single-student-subjects.php. Executing a manipulation of the argument course_code can lead to sql injection. The attack can…

  • CVE-2026-1551MedJan 29, 2026
    risk 0.41cvss 6.3epss 0.00

    A weakness has been identified in itsourcecode School Management System 1.0. This affects an unknown part of the file /ramonsys/course/controller.php. Executing a manipulation of the argument ID can lead to sql injection. The attack can be executed remotely. The exploit has been…

  • CVE-2026-1118MedJan 18, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was detected in itsourcecode Society Management System 1.0. Impacted is an unknown function of the file /admin/add_activity.php. Performing a manipulation of the argument Title results in sql injection. It is possible to initiate the attack remotely. The exploit…

  • CVE-2026-0582MedJan 5, 2026
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was identified in itsourcecode Society Management System 1.0. This affects an unknown part of the file /admin/edit_activity_query.php. The manipulation of the argument Title leads to sql injection. The attack may be initiated remotely. The exploit is publicly…

  • CVE-2025-14214MedDec 8, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability has been found in itsourcecode Student Information System 1.0. This affects an unknown part of the file /section_edit1.php. The manipulation of the argument ID leads to sql injection. Remote exploitation of the attack is possible. The exploit has been disclosed…

  • CVE-2025-13581MedNov 24, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was identified in itsourcecode Student Information System 1.0. Affected by this vulnerability is an unknown functionality of the file /schedule_edit1.php. Such manipulation of the argument schedule_id leads to sql injection. The attack may be launched remotely.…

  • CVE-2025-13570MedNov 23, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was found in itsourcecode COVID Tracking System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/?page=state. Performing manipulation of the argument ID results in sql injection. The attack may be initiated remotely. The exploit…

  • CVE-2025-13569MedNov 23, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability has been found in itsourcecode COVID Tracking System 1.0. Affected is an unknown function of the file /admin/?page=city. Such manipulation of the argument ID leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public…

  • CVE-2025-13568MedNov 23, 2025
    risk 0.41cvss 6.3epss 0.00

    A flaw has been found in itsourcecode COVID Tracking System 1.0. This impacts an unknown function of the file /admin/?page=people. This manipulation of the argument ID causes sql injection. The attack can be initiated remotely. The exploit has been published and may be used.

  • CVE-2025-13567MedNov 23, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was detected in itsourcecode COVID Tracking System 1.0. This affects an unknown function of the file /admin/?page=establishment. The manipulation of the argument ID results in sql injection. It is possible to launch the attack remotely. The exploit is now public…

  • CVE-2025-13325MedNov 18, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was determined in itsourcecode Student Information System 1.0. The affected element is an unknown function of the file /enrollment_edit1.php. Executing manipulation of the argument en_id can lead to sql injection. The attack may be performed from remote. The…

  • CVE-2025-13287MedNov 17, 2025
    risk 0.41cvss 6.3epss 0.00

    A weakness has been identified in itsourcecode Online Voting System 1.0. This affects an unknown function of the file /index.php?page=categories. Executing manipulation of the argument id/category can lead to sql injection. The attack can be executed remotely. The exploit has…

  • CVE-2025-13286MedNov 17, 2025
    risk 0.41cvss 6.3epss 0.00

    A security flaw has been discovered in itsourcecode Online Voting System 1.0. The impacted element is an unknown function of the file /ajax.php?action=save_user. Performing manipulation of the argument ID results in sql injection. Remote exploitation of the attack is possible.…

  • CVE-2025-13236MedNov 16, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was identified in itsourcecode Inventory Management System 1.0. This impacts an unknown function of the file /admin/products/index.php?view=edit. The manipulation of the argument ID leads to sql injection. The attack can be initiated remotely. The exploit is…

  • CVE-2025-13234MedNov 16, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was found in itsourcecode Inventory Management System 1.0. The impacted element is an unknown function of the file /index.php?q=product. Performing manipulation of the argument PROID results in sql injection. It is possible to initiate the attack remotely. The…

  • CVE-2025-13061MedNov 12, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was detected in itsourcecode Online Voting System 1.0. This impacts an unknown function of the file /index.php?page=manage_voting. Performing manipulation results in unrestricted upload. The attack is possible to be carried out remotely. The exploit is now public…

  • CVE-2025-11090MedSep 28, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was identified in itsourcecode Open Source Job Portal 1.0. Affected is an unknown function of the file /admin/employee/index.php?view=edit. The manipulation of the argument ID leads to sql injection. The attack can be initiated remotely. The exploit is publicly…

  • CVE-2025-11088MedSep 28, 2025
    risk 0.41cvss 6.3epss 0.00

    A weakness has been identified in itsourcecode Open Source Job Portal 1.0. Impacted is an unknown function of the file /admin/vacancy/index.php?view=edit. This manipulation of the argument ID causes sql injection. Remote exploitation of the attack is possible. The exploit has…

  • CVE-2025-11078MedSep 27, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was identified in itsourcecode Open Source Job Portal 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/user/controller.php?action=photos. The manipulation of the argument photo leads to unrestricted upload. The attack is possible…

  • CVE-2025-11054MedSep 27, 2025
    risk 0.41cvss 6.3epss 0.00

    A security vulnerability has been detected in itsourcecode Open Source Job Portal 1.0. This impacts an unknown function of the file /jobportal/admin/category/index.php?view=edit. The manipulation of the argument ID leads to sql injection. The attack may be initiated remotely.…

  • CVE-2025-11041MedSep 26, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability has been found in itsourcecode Open Source Job Portal 1.0. Affected by this issue is some unknown functionality of the file /admin/user/index.php?view=edit. The manipulation of the argument ID leads to sql injection. The attack is possible to be carried out…

  • CVE-2025-11038MedSep 26, 2025
    risk 0.41cvss 6.3epss 0.00

    A weakness has been identified in itsourcecode Online Clinic Management System 1.0. Affected is an unknown function of the file /details.php?action=post. Executing manipulation of the argument ID can lead to sql injection. The attack may be launched remotely. The exploit has…

  • CVE-2025-10620MedSep 17, 2025
    risk 0.41cvss 6.3epss 0.00

    A flaw has been found in itsourcecode Online Clinic Management System 1.0. This vulnerability affects unknown code of the file /editp2.php. Executing manipulation of the argument id/firstname/lastname/type/age/address can lead to sql injection. The attack can be executed…

  • CVE-2025-10618MedSep 17, 2025
    risk 0.41cvss 6.3epss 0.00

    A security vulnerability has been detected in itsourcecode Online Clinic Management System 1.0. Affected by this issue is some unknown functionality of the file transact.php. Such manipulation of the argument firstname leads to sql injection. The attack may be launched remotely.…

  • CVE-2025-10616MedSep 17, 2025
    risk 0.41cvss 6.3epss 0.00

    A security flaw has been discovered in itsourcecode E-Commerce Website 1.0. Affected is an unknown function of the file /admin/users.php. The manipulation results in unrestricted upload. The attack can be launched remotely. The exploit has been released to the public and may be…

  • CVE-2025-10615MedSep 17, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was identified in itsourcecode E-Commerce Website 1.0. This impacts an unknown function of the file /admin/products.php. The manipulation leads to unrestricted upload. The attack can be initiated remotely. The exploit is publicly available and might be used.

Page 10 of 15