VYPR

Vendor CVEs

Janobe

All CVEs

196 total · sorted by risk
  • CVE-2025-11486MedOct 8, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was identified in SourceCodester Farm Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /buyNow.php. Such manipulation of the argument Name leads to sql injection. The attack can be launched remotely. The exploit is…

  • CVE-2025-11478MedOct 8, 2025
    risk 0.41cvss 6.3epss 0.00

    A weakness has been identified in SourceCodester Farm Management System 1.0. This issue affects some unknown processing of the file /myCart.php. This manipulation of the argument pid causes sql injection. Remote exploitation of the attack is possible. The exploit has been made…

  • CVE-2025-10627MedSep 18, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability has been found in SourceCodester Online Exam Form Submission 1.0. This affects an unknown part of the file /admin/delete_user.php. Such manipulation of the argument ID leads to sql injection. The attack can be executed remotely. The exploit has been disclosed to…

  • CVE-2025-10626MedSep 18, 2025
    risk 0.41cvss 6.3epss 0.00

    A flaw has been found in SourceCodester Online Exam Form Submission 1.0. Affected by this issue is some unknown functionality of the file /admin/update_s3.php. This manipulation of the argument credits causes sql injection. Remote exploitation of the attack is possible. The…

  • CVE-2025-10625MedSep 17, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was detected in SourceCodester Online Exam Form Submission 1.0. Affected by this vulnerability is an unknown functionality of the file /user/dashboard.php?page=update_profile. The manipulation of the argument phone results in sql injection. The attack may be…

  • CVE-2025-10602MedSep 17, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was found in SourceCodester Online Exam Form Submission 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/delete_s1.php. Performing manipulation of the argument ID results in sql injection. The attack can be initiated remotely.…

  • CVE-2025-10595MedSep 17, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability has been found in SourceCodester Online Student File Management System 1.0. Affected by this issue is some unknown functionality of the file /admin/delete_user.php. The manipulation of the argument user_id leads to sql injection. The attack can be initiated…

  • CVE-2025-10594MedSep 17, 2025
    risk 0.41cvss 6.3epss 0.00

    A flaw has been found in SourceCodester Online Student File Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/delete_student.php. Executing manipulation of the argument stud_id can lead to sql injection. It is possible to launch…

  • CVE-2025-10593MedSep 17, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was detected in SourceCodester Online Student File Management System 1.0. Affected is an unknown function of the file /admin/update_student.php. Performing manipulation of the argument stud_id results in sql injection. It is possible to initiate the attack…

  • CVE-2025-10483MedSep 15, 2025
    risk 0.41cvss 6.3epss 0.00

    A flaw has been found in SourceCodester Online Student File Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/save_user.php. This manipulation of the argument firstname causes sql injection. The attack is possible to be carried…

  • CVE-2025-10481MedSep 15, 2025
    risk 0.41cvss 6.3epss 0.00

    A security vulnerability has been detected in SourceCodester Online Student File Management System 1.0. This impacts an unknown function of the file /remove_file.php. The manipulation of the argument ID leads to sql injection. Remote exploitation of the attack is possible. The…

  • CVE-2025-10480MedSep 15, 2025
    risk 0.41cvss 6.3epss 0.00

    A weakness has been identified in SourceCodester Online Student File Management System 1.0. This affects an unknown function of the file /save_file.php. Executing manipulation can lead to unrestricted upload. The attack may be launched remotely. The exploit has been made…

  • CVE-2025-1192MedFeb 12, 2025
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was found in SourceCodester Multi Restaurant Table Reservation System 1.0. It has been classified as critical. Affected is an unknown function of the file select-menu.php. The manipulation of the argument table leads to sql injection. It is possible to launch the…

  • CVE-2025-1191MedFeb 12, 2025
    risk 0.41cvss 6.3epss 0.01

    A vulnerability was found in SourceCodester Multi Restaurant Table Reservation System 1.0 and classified as critical. This issue affects some unknown processing of the file /dashboard/approve-reject.php. The manipulation of the argument breject_id leads to sql injection. The…

  • CVE-2024-10413MedOct 27, 2024
    risk 0.41cvss 6.3epss 0.01

    A vulnerability, which was classified as critical, has been found in SourceCodester Online Hotel Reservation System 1.0. Affected by this issue is the function upload of the file /guest/update.php. The manipulation of the argument image leads to unrestricted upload. The attack…

  • CVE-2024-10411MedOct 27, 2024
    risk 0.41cvss 6.3epss 0.00

    A vulnerability was found in SourceCodester Online Hotel Reservation System 1.0. It has been classified as critical. Affected is the function doCancelRoom/doCancel/doConfirm/doCancel/doCheckin/doCheckout of the file /marimar/admin/mod_room/controller.php. The manipulation of the…

  • CVE-2024-10410MedOct 27, 2024
    risk 0.41cvss 6.3epss 0.01

    A vulnerability classified as critical was found in SourceCodester Online Hotel Reservation System 1.0. Affected by this vulnerability is the function upload of the file /admin/mod_room/controller.php?action=add. The manipulation of the argument image leads to unrestricted…

  • CVE-2024-9036MedSep 20, 2024
    risk 0.41cvss 6.3epss 0.01

    A vulnerability was found in itsourcecode Online Bookstore 1.0. It has been rated as critical. This issue affects some unknown processing of the file admin_add.php. The manipulation of the argument image leads to unrestricted upload. The attack may be initiated remotely. The…

  • CVE-2024-8089MedAug 23, 2024
    risk 0.41cvss 6.3epss 0.01

    A vulnerability was found in SourceCodester E-Commerce System 1.0. It has been classified as critical. Affected is an unknown function of the file /ecommerce/admin/products/controller.php. The manipulation of the argument photo leads to unrestricted upload. It is possible to…

  • CVE-2024-8087MedAug 22, 2024
    risk 0.41cvss 6.3epss 0.01

    A vulnerability was found in SourceCodester E-Commerce System 1.0 and classified as critical. This issue affects some unknown processing of the file /ecommerce/popup_Item.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The…

  • CVE-2023-2596MedMay 9, 2023
    risk 0.41cvss 6.3epss 0.01

    A vulnerability was found in SourceCodester Online Reviewer System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /reviewer/system/system/admins/manage/users/user-update.php of the component GET Parameter Handler. The…

  • CVE-2022-2679MedAug 5, 2022
    risk 0.41cvss 6.3epss 0.01

    A vulnerability was found in SourceCodester Interview Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /viewReport.php. The manipulation of the argument id with the input (UPDATEXML(9729,CONCAT(0x2e,0x716b707071,(SELECT…

  • CVE-2020-29239MedDec 2, 2020
    risk 0.40cvss 6.1epss 0.00

    Online Birth Certificate System Project V 1.0 is affected by cross-site scripting (XSS). This vulnerability can result in an attacker injecting the XSS payload in the User Registration section. When an admin visits the View Detail of Application section from the admin panel, the…

  • CVE-2024-48246MedMar 5, 2025
    risk 0.35cvss 5.4epss 0.00

    Vehicle Management System 1.0 contains a Stored Cross-Site Scripting (XSS) vulnerability in the "Name" parameter of /vehicle-management/booking.php.

  • CVE-2020-35752MedMar 10, 2021
    risk 0.35cvss 5.4epss 0.01

    Baby Care System 1.0 is affected by a cross-site scripting (XSS) vulnerability in the Edit Page tab through the Post title parameter.

  • CVE-2025-13200MedNov 15, 2025
    risk 0.34cvss 5.3epss 0.00

    A vulnerability was determined in SourceCodester Farm Management System 1.0. Affected by this vulnerability is an unknown functionality. This manipulation causes exposure of information through directory listing. The attack is possible to be carried out remotely. The exploit has…

  • CVE-2025-13210MedNov 15, 2025
    risk 0.31cvss 4.7epss 0.00

    A security vulnerability has been detected in itsourcecode Inventory Management System 1.0. This impacts an unknown function of the file /admin/products/index.php?view=add. Such manipulation of the argument PROMODEL leads to sql injection. The attack may be performed from…

  • CVE-2025-12932MedNov 10, 2025
    risk 0.31cvss 4.7epss 0.00

    A vulnerability was determined in SourceCodester Baby Care System 1.0. Affected by this issue is some unknown functionality of the file /admin.php?id=inbox. This manipulation of the argument msgid causes sql injection. The attack can be initiated remotely. The exploit has been…

  • CVE-2025-12294MedOct 27, 2025
    risk 0.31cvss 4.7epss 0.00

    A security flaw has been discovered in SourceCodester Point of Sales 1.0. Impacted is an unknown function of the file /delete_category.php. Performing manipulation of the argument ID results in sql injection. The attack can be initiated remotely. The exploit has been released to…

  • CVE-2025-1590MedFeb 23, 2025
    risk 0.31cvss 4.7epss 0.00

    A vulnerability was found in SourceCodester E-Learning System 1.0. It has been classified as critical. Affected is an unknown function of the file /admin/modules/lesson/index.php of the component List of Lessons Page. The manipulation leads to unrestricted upload. It is possible…

  • CVE-2023-25431MedFeb 28, 2023
    risk 0.31cvss 4.8epss 0.00

    An issue was discovered in Online Reviewer Management System v1.0. There is a XSS vulnerability via reviewer_0/admins/assessments/course/course-update.php.

  • CVE-2026-1154MedJan 19, 2026
    risk 0.28cvss 4.3epss 0.00

    A flaw has been found in SourceCodester E-Learning System 1.0. This impacts an unknown function of the file /admin/modules/lesson/index.php of the component Lesson Module Handler. Executing a manipulation of the argument Title/Description can lead to basic cross site scripting.…

  • CVE-2025-1589MedFeb 23, 2025
    risk 0.28cvss 4.3epss 0.00

    A vulnerability was found in SourceCodester E-Learning System 1.0 and classified as problematic. This issue affects some unknown processing of the file /register.php of the component User Registration Handler. The manipulation leads to cross site scripting. The attack may be…

  • CVE-2025-13343LowNov 18, 2025
    risk 0.23cvss 3.5epss 0.00

    A security flaw has been discovered in SourceCodester Interview Management System 1.0. Affected is an unknown function of the file /editQuestion.php. The manipulation of the argument Question results in cross site scripting. It is possible to launch the attack remotely. The…

  • CVE-2025-2377LowMar 17, 2025
    risk 0.23cvss 3.5epss 0.00

    A vulnerability was found in SourceCodester Vehicle Management System 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /confirmbooking.php. The manipulation of the argument id leads to cross site scripting. The attack may be…

  • CVE-2024-3365LowApr 6, 2024
    risk 0.23cvss 3.5epss 0.01

    A vulnerability was found in SourceCodester Online Library System 1.0. It has been rated as problematic. This issue affects some unknown processing of the file admin/users/controller.php. The manipulation of the argument user_name leads to cross site scripting. The attack may be…

  • CVE-2024-3364LowApr 6, 2024
    risk 0.23cvss 3.5epss 0.01

    A vulnerability was found in SourceCodester Online Library System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file admin/books/index.php. The manipulation of the argument id leads to cross site scripting. The attack can be initiated…

  • CVE-2024-3358LowApr 6, 2024
    risk 0.23cvss 3.5epss 0.01

    A vulnerability classified as problematic was found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. This vulnerability affects unknown code of the file /index.php. The manipulation of the argument to leads to cross site scripting. The attack can be initiated…

  • CVE-2024-3357LowApr 5, 2024
    risk 0.23cvss 3.5epss 0.01

    A vulnerability classified as problematic has been found in SourceCodester Aplaya Beach Resort Online Reservation System 1.0. This affects an unknown part of the file admin/mod_reports/index.php. The manipulation of the argument end leads to cross site scripting. It is possible…

  • CVE-2024-1922LowFeb 27, 2024
    risk 0.23cvss 3.5epss 0.01

    A vulnerability has been found in SourceCodester Online Job Portal 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /Employer/ManageJob.php of the component Manage Job Page. The manipulation of the argument…

  • CVE-2024-1919LowFeb 27, 2024
    risk 0.23cvss 3.5epss 0.01

    A vulnerability classified as problematic was found in SourceCodester Online Job Portal 1.0. This vulnerability affects unknown code of the file /Employer/ManageWalkin.php of the component Manage Walkin Page. The manipulation of the argument Job Title leads to cross site…

  • CVE-2023-3165LowJun 8, 2023
    risk 0.23cvss 3.5epss 0.01

    A vulnerability was found in SourceCodester Life Insurance Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file insertNominee.php of the component POST Parameter Handler. The manipulation of the…

  • CVE-2022-2685LowAug 5, 2022
    risk 0.23cvss 3.5epss 0.01

    A vulnerability was found in SourceCodester Interview Management System 1.0 and classified as problematic. This issue affects some unknown processing of the file /addQuestion.php. The manipulation of the argument question with the input leads to cross…

  • CVE-2026-36920LowApr 13, 2026
    risk 0.18cvss 2.7epss 0.00

    Sourcecodester Online Reviewer System v1.0 is vulnerable to SQL Injection in the file /system/system/admins/assessments/examproper/questions-view.php.

  • CVE-2026-36919LowApr 13, 2026
    risk 0.18cvss 2.7epss 0.00

    Sourcecodester Online Reviewer System v1.0 is vulnerale to SQL Injection in the file /system/system/admins/assessments/examproper/exam-update.php.

  • CVE-2023-7160LowDec 29, 2023
    risk 0.16cvss 2.4epss 0.00

    A vulnerability was found in SourceCodester Engineers Online Portal 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Add Engineer Handler. The manipulation of the argument first name/last name with the input…

Page 4 of 4