VYPR

Vendor CVEs

Itsourcecode

All CVEs

653 total · sorted by risk
  • CVE-2025-4724HigMay 15, 2025
    risk 0.47cvss 7.3epss 0.00

    A vulnerability, which was classified as critical, has been found in itsourcecode Placement Management System 1.0. Affected by this issue is some unknown functionality of the file /student_profile.php. The manipulation of the argument ID leads to sql injection. The attack may be…

  • CVE-2025-4723HigMay 15, 2025
    risk 0.47cvss 7.3epss 0.00

    A vulnerability classified as critical was found in itsourcecode Placement Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /all_student.php. The manipulation of the argument delete leads to sql injection. The attack can be launched…

  • CVE-2025-4722HigMay 15, 2025
    risk 0.47cvss 7.3epss 0.00

    A vulnerability classified as critical has been found in itsourcecode Placement Management System 1.0. Affected is an unknown function of the file /edit_profile.php. The manipulation of the argument Name leads to sql injection. It is possible to launch the attack remotely. The…

  • CVE-2025-4721HigMay 15, 2025
    risk 0.47cvss 7.3epss 0.00

    A vulnerability was found in itsourcecode Placement Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /drive.php. The manipulation of the argument ID leads to sql injection. The attack may be initiated remotely. The…

  • CVE-2025-4488HigMay 9, 2025
    risk 0.47cvss 7.3epss 0.01

    A vulnerability was found in itsourcecode Gym Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /ajax.php?action=delete_package. The manipulation of the argument ID leads to sql injection. The attack…

  • CVE-2025-4487HigMay 9, 2025
    risk 0.47cvss 7.3epss 0.01

    A vulnerability was found in itsourcecode Gym Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /ajax.php?action=delete_member. The manipulation of the argument ID leads to sql injection. It is possible to launch the attack…

  • CVE-2025-4486HigMay 9, 2025
    risk 0.47cvss 7.3epss 0.01

    A vulnerability was found in itsourcecode Gym Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /ajax.php?action=delete_plan. The manipulation of the argument ID leads to sql injection. The attack may be initiated remotely.…

  • CVE-2025-4485HigMay 9, 2025
    risk 0.47cvss 7.3epss 0.01

    A vulnerability has been found in itsourcecode Gym Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /ajax.php?action=delete_trainer. The manipulation of the argument ID leads to sql injection. The attack can be initiated…

  • CVE-2025-4484HigMay 9, 2025
    risk 0.47cvss 7.3epss 0.01

    A vulnerability, which was classified as critical, was found in itsourcecode Gym Management System 1.0. This affects an unknown part of the file /ajax.php?action=delete_user. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack…

  • CVE-2025-4483HigMay 9, 2025
    risk 0.47cvss 7.3epss 0.01

    A vulnerability, which was classified as critical, has been found in itsourcecode Gym Management System 1.0. Affected by this issue is some unknown functionality of the file /view_pdetails.php. The manipulation of the argument ID leads to sql injection. The attack may be…

  • CVE-2025-4363HigMay 6, 2025
    risk 0.47cvss 7.3epss 0.01

    A vulnerability, which was classified as critical, has been found in itsourcecode Gym Management System 1.0. This issue affects some unknown processing of the file /ajax.php?action=end_membership. The manipulation of the argument rid leads to sql injection. The attack may be…

  • CVE-2025-4362HigMay 6, 2025
    risk 0.47cvss 7.3epss 0.01

    A vulnerability classified as critical was found in itsourcecode Gym Management System 1.0. This vulnerability affects unknown code of the file /ajax.php?action=save_membership. The manipulation of the argument member_id leads to sql injection. The attack can be initiated…

  • CVE-2025-4360HigMay 6, 2025
    risk 0.47cvss 7.3epss 0.01

    A vulnerability, which was classified as critical, has been found in itsourcecode Gym Management System 1.0. Affected by this issue is some unknown functionality of the file /view_member.php. The manipulation of the argument ID leads to sql injection. The attack may be launched…

  • CVE-2025-4359HigMay 6, 2025
    risk 0.47cvss 7.3epss 0.01

    A vulnerability classified as critical was found in itsourcecode Gym Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /ajax.php?action=delete_member. The manipulation of the argument ID leads to sql injection. The attack can be…

  • CVE-2025-4311HigMay 6, 2025
    risk 0.47cvss 7.3epss 0.01

    A vulnerability classified as critical was found in itsourcecode Content Management System 1.0. This vulnerability affects unknown code of the file /admin/update_main_topic_img.php?topic_id=529. The manipulation of the argument stopic_id leads to sql injection. The attack can be…

  • CVE-2025-4301HigMay 6, 2025
    risk 0.47cvss 7.3epss 0.01

    A vulnerability classified as critical was found in itsourcecode Content Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /search-notice.php. The manipulation of the argument searchdata leads to sql injection. The attack can be…

  • CVE-2025-4300HigMay 6, 2025
    risk 0.47cvss 7.3epss 0.01

    A vulnerability classified as critical has been found in itsourcecode Content Management System 1.0. Affected is an unknown function of the file /search_list.php. The manipulation of the argument Search leads to sql injection. It is possible to launch the attack remotely. The…

  • CVE-2025-4195HigMay 2, 2025
    risk 0.47cvss 7.3epss 0.01

    A vulnerability was found in itsourcecode Gym Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /ajax.php?action=save_member. The manipulation of the argument umember_id leads to sql injection. The attack can be…

  • CVE-2025-4193HigMay 2, 2025
    risk 0.47cvss 7.3epss 0.01

    A vulnerability was found in itsourcecode Restaurant Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/category_update.php. The manipulation of the argument Category leads to sql injection. The attack may be…

  • CVE-2025-4192HigMay 2, 2025
    risk 0.47cvss 7.3epss 0.01

    A vulnerability was found in itsourcecode Restaurant Management System 1.0. It has been classified as critical. This affects an unknown part of the file /admin/category_save.php. The manipulation of the argument Category leads to sql injection. It is possible to initiate the…

  • CVE-2025-4025HigApr 28, 2025
    risk 0.47cvss 7.3epss 0.01

    A vulnerability classified as critical was found in itsourcecode Placement Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /registration.php. The manipulation of the argument Name leads to sql injection. The attack can be launched…

  • CVE-2025-4024HigApr 28, 2025
    risk 0.47cvss 7.3epss 0.01

    A vulnerability classified as critical has been found in itsourcecode Placement Management System 1.0. Affected is an unknown function of the file /add_drive.php. The manipulation of the argument drive_title leads to sql injection. It is possible to launch the attack remotely.…

  • CVE-2025-4023HigApr 28, 2025
    risk 0.47cvss 7.3epss 0.01

    A vulnerability was found in itsourcecode Placement Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /add_company.php. The manipulation of the argument Name leads to sql injection. The attack may be initiated remotely.…

  • CVE-2025-3195HigApr 4, 2025
    risk 0.47cvss 7.3epss 0.01

    A vulnerability, which was classified as critical, has been found in itsourcecode Online Blood Bank Management System 1.0. This issue affects some unknown processing of the file /bbms.php. The manipulation of the argument Search leads to sql injection. The attack may be…

  • CVE-2025-25876HigFeb 21, 2025
    risk 0.47cvss 7.2epss 0.00

    A vulnerability was found in ITSourcecode Simple ChatBox up to 1.0. This vulnerability affects unknown code of the file /delete.php. The attack can use SQL injection to obtain sensitive data.

  • CVE-2024-50972HigNov 13, 2024
    risk 0.47cvss 7.2epss 0.01

    A SQL injection vulnerability in printtool.php of Itsourcecode Construction Management System 1.0 allows remote attackers to execute arbitrary SQL commands via the borrow_id parameter.

  • CVE-2024-50971HigNov 13, 2024
    risk 0.47cvss 7.2epss 0.01

    A SQL injection vulnerability in print.php of Itsourcecode Construction Management System 1.0 allows remote attackers to execute arbitrary SQL commands via the map_id parameter.

  • CVE-2024-8081HigAug 22, 2024
    risk 0.47cvss 7.3epss 0.01

    A vulnerability classified as critical was found in itsourcecode Payroll Management System 1.0. Affected by this vulnerability is an unknown functionality of the file login.php. The manipulation of the argument username leads to sql injection. The attack can be launched…

  • CVE-2024-7933HigAug 19, 2024
    risk 0.47cvss 7.3epss 0.01

    A vulnerability was found in itsourcecode Project Expense Monitoring System 1.0. It has been classified as critical. Affected is an unknown function of the file login1.php of the component Backend Login. The manipulation of the argument user leads to sql injection. It is…

  • CVE-2024-7913HigAug 18, 2024
    risk 0.47cvss 7.3epss 0.01

    A vulnerability was found in itsourcecode Billing System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /addclient1.php. The manipulation of the argument lname/fname/mi/address/contact/meterReader leads to sql injection. The attack may…

  • CVE-2024-7839HigAug 15, 2024
    risk 0.47cvss 7.3epss 0.01

    A vulnerability classified as critical has been found in itsourcecode Billing System 1.0. This affects an unknown part of the file addbill.php. The manipulation of the argument owners_id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been…

  • CVE-2024-7838HigAug 15, 2024
    risk 0.47cvss 7.3epss 0.01

    A vulnerability was found in itsourcecode Online Food Ordering System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /addcategory.php. The manipulation of the argument cname leads to sql injection. The attack may be launched…

  • CVE-2024-6196HigJun 20, 2024
    risk 0.47cvss 7.3epss 0.01

    A vulnerability was found in itsourcecode Banking Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file admin_class.php. The manipulation of the argument username leads to sql injection. The attack may be launched…

  • CVE-2024-6193HigJun 20, 2024
    risk 0.47cvss 7.3epss 0.01

    A vulnerability, which was classified as critical, has been found in itsourcecode Vehicle Management System 1.0. This issue affects some unknown processing of the file driverprofile.php. The manipulation of the argument driverid leads to sql injection. The attack may be…

  • CVE-2024-6192HigJun 20, 2024
    risk 0.47cvss 7.3epss 0.01

    A vulnerability classified as critical was found in itsourcecode Loan Management System 1.0. This vulnerability affects unknown code of the file login.php of the component Login Page. The manipulation of the argument username leads to sql injection. The attack can be initiated…

  • CVE-2024-6191HigJun 20, 2024
    risk 0.47cvss 7.3epss 0.01

    A vulnerability classified as critical has been found in itsourcecode Student Management System 1.0. This affects an unknown part of the file login.php of the component Login Page. The manipulation of the argument user leads to sql injection. It is possible to initiate the…

  • CVE-2024-6042HigJun 17, 2024
    risk 0.47cvss 7.3epss 0.01

    A vulnerability was found in itsourcecode Real Estate Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file property-detail.php. The manipulation of the argument id leads to sql injection. The attack may be…

  • CVE-2024-5733HigJun 7, 2024
    risk 0.47cvss 7.3epss 0.01

    A vulnerability was found in itsourcecode Online Discussion Forum 1.0. It has been rated as critical. This issue affects some unknown processing of the file register_me.php. The manipulation of the argument eaddress leads to sql injection. The attack may be initiated remotely.…

  • CVE-2022-43228HigOct 28, 2022
    risk 0.47cvss 7.2epss 0.01

    Barangay Management System v1.0 was discovered to contain a SQL injection vulnerability via the hidden_id parameter at /clearance/clearance.php.

  • CVE-2022-34590HigJul 20, 2022
    risk 0.47cvss 7.2epss 0.04

    Hospital Management System v1.0 was discovered to contain a SQL injection vulnerability via the editid parameter in /HMS/admin.php.

  • CVE-2022-34042HigJul 20, 2022
    risk 0.47cvss 7.2epss 0.01

    Barangay Management System v1.0 was discovered to contain a SQL injection vulnerability via the hidden_id parameter at /pages/household/household.php.

  • CVE-2022-34024HigJul 19, 2022
    risk 0.47cvss 7.2epss 0.01

    Barangay Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via the resident module editing function at /bmis/pages/resident/resident.php.

  • CVE-2022-32372HigJun 15, 2022
    risk 0.47cvss 7.2epss 0.01

    itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_subject.php?id=.

  • CVE-2022-32371HigJun 15, 2022
    risk 0.47cvss 7.2epss 0.01

    itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_teacher.php?id=.

  • CVE-2022-32370HigJun 15, 2022
    risk 0.47cvss 7.2epss 0.01

    itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_classroom.php?id=.

  • CVE-2022-32374HigJun 15, 2022
    risk 0.47cvss 7.2epss 0.01

    itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_subject_routing.php?id=.

  • CVE-2022-32373HigJun 15, 2022
    risk 0.47cvss 7.2epss 0.01

    itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_exam.php?id=.

  • CVE-2022-32368HigJun 15, 2022
    risk 0.47cvss 7.2epss 0.01

    itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_grade.php?id=.

  • CVE-2022-32433HigJun 15, 2022
    risk 0.47cvss 7.2epss 0.01

    itsourcecode Advanced School Management System v1.0 is vulnerable to Arbitrary code execution via ip/school/view/all_teacher.php.

  • CVE-2022-32381HigJun 15, 2022
    risk 0.47cvss 7.2epss 0.01

    itsourcecode Advanced School Management System v1.0 is vulnerable to SQL Injection via /school/model/get_admin_profile.php?my_index=.

Page 7 of 14