VYPR

Vendor CVEs

Sourcecodester

All CVEs

2,578 total · sorted by risk
  • CVE-2026-36942LowApr 13, 2026
    risk 0.18cvss 2.7epss 0.00

    Sourcecodester Online Resort Management System v1.0 is vulnerable to SQL injection in the file /orms/admin/activities/manage_activity.php.

  • CVE-2026-36941LowApr 13, 2026
    risk 0.18cvss 2.7epss 0.00

    Sourcecodester Online Resort Management System v1.0 is vulnerable to SQL Injection in the file /orms/admin/rooms/manage_room.php.

  • CVE-2026-36947LowApr 13, 2026
    risk 0.18cvss 2.7epss 0.00

    Sourcecodester Computer and Mobile Repair Shop Management System v1.0 is vulnerable to SQL Injection in the file /rsms/admin/services/view_service.php.

  • CVE-2026-36946LowApr 13, 2026
    risk 0.18cvss 2.7epss 0.00

    Sourcecodester Computer and Mobile Repair Shop Management System v1.0 is vulnerable to SQL injection in the file /rsms/admin/inquiries/view_details.php.

  • CVE-2026-36923LowApr 13, 2026
    risk 0.18cvss 2.7epss 0.00

    Sourcecodester Cab Management System 1.0 is vulnerable to SQL Injection in the file /cms/admin/bookings/view_booking.php.

  • CVE-2026-36922LowApr 13, 2026
    risk 0.18cvss 2.7epss 0.00

    Sourcecodester Cab Management System v1.0 is vulnerable to SQL injection in the file /cms/admin/categories/view_category.php.

  • CVE-2026-36920LowApr 13, 2026
    risk 0.18cvss 2.7epss 0.00

    Sourcecodester Online Reviewer System v1.0 is vulnerable to SQL Injection in the file /system/system/admins/assessments/examproper/questions-view.php.

  • CVE-2026-36919LowApr 13, 2026
    risk 0.18cvss 2.7epss 0.00

    Sourcecodester Online Reviewer System v1.0 is vulnerale to SQL Injection in the file /system/system/admins/assessments/examproper/exam-update.php.

  • CVE-2026-36874LowApr 13, 2026
    risk 0.18cvss 2.7epss 0.00

    Sourcecodester Basic Library System v1.0 is vulnerable to SQL Injection in /librarysystem/load_student.php.

  • CVE-2026-36873LowApr 13, 2026
    risk 0.18cvss 2.7epss 0.00

    Sourcecodester Basic Library System v1.0 is vulnerable to SQL Injection in /librarysystem/load_admin.php.

  • CVE-2026-36872LowApr 13, 2026
    risk 0.18cvss 2.7epss 0.00

    Sourcecodester Basic Library System v1.0 is vulnerable to SQL Injection in /librarysystem/load_book.php.

  • CVE-2026-26891LowMar 3, 2026
    risk 0.18cvss 2.7epss 0.00

    Sourcecodester Logistic Hub Parcel's Management System v1.0 is vulnerable to SQL Injection in /manage_parcel_type.php.

  • CVE-2026-26889LowMar 3, 2026
    risk 0.18cvss 2.7epss 0.00

    Sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/manage_category.php.

  • CVE-2026-26888LowMar 3, 2026
    risk 0.18cvss 2.7epss 0.00

    Sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/manage_stock.php.

  • CVE-2026-26887LowMar 3, 2026
    risk 0.18cvss 2.7epss 0.00

    Sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/manage_supplier.php.

  • CVE-2026-26890LowMar 3, 2026
    risk 0.18cvss 2.7epss 0.00

    Sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/manage_product.php.

  • CVE-2026-26886LowMar 3, 2026
    risk 0.18cvss 2.7epss 0.00

    Sourcecodester Online Men's Salon Management System v1.0 is vulnerable to SQL Injection in /admin/services/manage_service.php.

  • CVE-2026-26885LowMar 3, 2026
    risk 0.18cvss 2.7epss 0.00

    Sourcecodester Online Men's Salon Management System v1.0 is vulnerable to SQL Injection in /classes/Master.php?f=delete_service.

  • CVE-2026-26884LowMar 3, 2026
    risk 0.18cvss 2.7epss 0.00

    Sourcecodester Online Men's Salon Management System v1.0 is vulnerable to SQL Injection in /msms/admin/appointments/view_appointment.php.

  • CVE-2026-26883LowMar 3, 2026
    risk 0.18cvss 2.7epss 0.00

    Sourcecodester Online Men's Salon Management System v1.0 is vulnerable to SQL Injection in /msms/classes/Master.php?f=delete_appointment.

  • CVE-2026-94016LowSep 20, 2026
    risk 0.16cvss 2.4epss 0.00

    A security flaw has been discovered in SourceCodester Drug Recommendation System 1.0. This impacts an unknown function of the file /drug_recommender/Admin/add_symptom. Performing a manipulation of the argument txtname results in cross site scripting. Remote exploitation of the…

  • CVE-2026-92385LowSep 16, 2026
    risk 0.16cvss 2.4epss 0.00

    A vulnerability has been found in SourceCodester Online Food Ordering System 1.0. The affected element is an unknown function of the file /admin/update_category.php of the component Category Update. The manipulation leads to cross site scripting. The attack can be initiated…

  • CVE-2026-19904LowAug 15, 2026
    risk 0.16cvss 2.4epss 0.00

    A vulnerability was found in SourceCodester Online Book Store System 1.0. This vulnerability affects unknown code of the file /admin/index.php?page=site_settings of the component System Settings Module. The manipulation results in cross site scripting. The attack can be executed…

  • CVE-2026-11468LowJun 8, 2026
    risk 0.16cvss 2.4epss 0.00

    A vulnerability was detected in SourceCodester Hospitals Patient Records Management System 1.0. This issue affects some unknown processing of the file /admin/?page=room_types. Performing a manipulation of the argument room results in cross site scripting. The attack is possible…

  • CVE-2026-11338LowJun 5, 2026
    risk 0.16cvss 2.4epss 0.00

    A security vulnerability has been detected in SourceCodester Ship Ferry Ticket Reservation System 1.0. Impacted is an unknown function of the file /admin/?page=user/manage_user. The manipulation of the argument Username leads to cross site scripting. It is possible to initiate…

  • CVE-2026-9564LowMay 26, 2026
    risk 0.16cvss 2.4epss 0.00

    A vulnerability was found in SourceCodester/oretnom23 Hospitals Patient Records Management System 1.0. The impacted element is an unknown function of the file /admin/?page=patients/view_patient. Performing a manipulation of the argument Remarks results in cross site scripting.…

  • CVE-2026-9377LowMay 24, 2026
    risk 0.16cvss 2.4epss 0.00

    A vulnerability was identified in SourceCodester SUP Online Shopping 1.0. The impacted element is an unknown function of the file /admin/productedit.php. The manipulation of the argument productName leads to cross site scripting. It is possible to initiate the attack remotely.…

  • CVE-2026-8136LowMay 8, 2026
    risk 0.16cvss 2.4epss 0.00

    A flaw has been found in SourceCodester Pharmacy Sales and Inventory System 1.0. This affects an unknown part of the file /index.php?page=users. Executing a manipulation of the argument Name can lead to cross site scripting. The attack may be launched remotely. The exploit has…

  • CVE-2026-7297LowApr 28, 2026
    risk 0.16cvss 2.4epss 0.00

    A vulnerability was determined in SourceCodester Pizzafy Ecommerce System 1.0. This vulnerability affects the function save_user of the file /admin/ajax.php?action=save_user. Executing a manipulation of the argument Name can lead to cross site scripting. The attack can be…

  • CVE-2026-7296LowApr 28, 2026
    risk 0.16cvss 2.4epss 0.00

    A vulnerability was found in SourceCodester Pizzafy Ecommerce System 1.0. This affects the function save_order of the file /admin/ajax.php?action=save_order. Performing a manipulation of the argument first_name results in cross site scripting. Remote exploitation of the attack…

  • CVE-2026-7295LowApr 28, 2026
    risk 0.16cvss 2.4epss 0.00

    A vulnerability has been found in SourceCodester Pizzafy Ecommerce System 1.0. Affected by this issue is the function save_menu of the file /admin/ajax.php?action=save_menu. Such manipulation of the argument Name leads to cross site scripting. The attack may be launched…

  • CVE-2026-7294LowApr 28, 2026
    risk 0.16cvss 2.4epss 0.00

    A flaw has been found in SourceCodester Pizzafy Ecommerce System 1.0. Affected by this vulnerability is the function save_settings of the file /admin/index.php?page=save_settings. This manipulation of the argument Name causes cross site scripting. The attack may be initiated…

  • CVE-2026-7281LowApr 28, 2026
    risk 0.16cvss 2.4epss 0.00

    A vulnerability was determined in SourceCodester Pharmacy Sales and Inventory System 1.0. The impacted element is the function supplier of the file /index.php?page=supplier. Executing a manipulation of the argument Name can lead to cross site scripting. The attack may be…

  • CVE-2026-7269LowApr 28, 2026
    risk 0.16cvss 2.4epss 0.00

    A vulnerability was found in SourceCodester Pharmacy Sales and Inventory System 1.0. Affected is an unknown function of the file /index.php?page=product. Performing a manipulation of the argument ID results in cross site scripting. It is possible to initiate the attack remotely.…

  • CVE-2026-5209LowMar 31, 2026
    risk 0.16cvss 2.4epss 0.00

    A security vulnerability has been detected in SourceCodester Leave Application System 1.0. Affected by this issue is some unknown functionality of the component User Management Handler. Such manipulation leads to cross site scripting. The attack may be launched remotely. The…

  • CVE-2026-3170LowFeb 25, 2026
    risk 0.16cvss 2.4epss 0.00

    A vulnerability was detected in SourceCodester/Patrick Mvuma Patients Waiting Area Queue Management System 1.0. Affected is an unknown function of the file /patient-search.php. The manipulation of the argument First Name/Last Name results in cross site scripting. The attack can…

  • CVE-2025-12332LowOct 28, 2025
    risk 0.16cvss 2.4epss 0.00

    A flaw has been found in SourceCodester Student Grades Management System 1.0. This affects the function delete_user of the file /admin.php. Executing manipulation can lead to cross site scripting. The attack may be performed from remote. The exploit has been published and may be…

  • CVE-2025-11485LowOct 8, 2025
    risk 0.16cvss 2.4epss 0.00

    A vulnerability was determined in SourceCodester Student Grades Management System 1.0. Affected is the function add_user of the file /admin.php of the component Manage Users Page. This manipulation of the argument first_name/last_name causes cross site scripting. The attack can…

  • CVE-2025-7144LowJul 7, 2025
    risk 0.16cvss 2.4epss 0.00

    A vulnerability has been found in SourceCodester Best Salon Management System 1.0 and classified as problematic. This vulnerability affects unknown code of the file /panel/admin-profile.php of the component Admin Profile Page. The manipulation of the argument Admin Name leads to…

  • CVE-2025-7143LowJul 7, 2025
    risk 0.16cvss 2.4epss 0.00

    A vulnerability, which was classified as problematic, was found in SourceCodester Best Salon Management System 1.0. This affects an unknown part of the file /panel/edit-tax.php of the component Update Tax Page. The manipulation of the argument Tax Name leads to cross site…

  • CVE-2025-7142LowJul 7, 2025
    risk 0.16cvss 2.4epss 0.00

    A vulnerability, which was classified as problematic, has been found in SourceCodester Best Salon Management System 1.0. Affected by this issue is some unknown functionality of the file /panel/search-appointment.php. The manipulation leads to cross site scripting. The attack may…

  • CVE-2025-7141LowJul 7, 2025
    risk 0.16cvss 2.4epss 0.00

    A vulnerability classified as problematic was found in SourceCodester Best Salon Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /panel/edit_plan.php of the component Update Staff Page. The manipulation leads to cross site scripting.…

  • CVE-2025-7140LowJul 7, 2025
    risk 0.16cvss 2.4epss 0.00

    A vulnerability classified as problematic has been found in SourceCodester Best Salon Management System 1.0. Affected is an unknown function of the file /panel/edit-staff.php of the component Update Staff Page. The manipulation of the argument Staff Name leads to cross site…

  • CVE-2025-7139LowJul 7, 2025
    risk 0.16cvss 2.4epss 0.00

    A vulnerability was found in SourceCodester Best Salon Management System 1.0. It has been rated as problematic. This issue affects some unknown processing of the file /panel/edit-customer-detailed.php of the component Update Customer Details Page. The manipulation of the…

  • CVE-2025-5727LowJun 6, 2025
    risk 0.16cvss 2.4epss 0.00

    A vulnerability classified as problematic has been found in SourceCodester Student Result Management System 1.0. This affects an unknown part of the file /script/academic/announcement of the component Announcement Page. The manipulation of the argument Title leads to cross site…

  • CVE-2025-5726LowJun 6, 2025
    risk 0.16cvss 2.4epss 0.00

    A vulnerability was found in SourceCodester Student Result Management System 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /script/academic/division-system of the component Division System Page. The manipulation of the…

  • CVE-2025-5725LowJun 6, 2025
    risk 0.16cvss 2.4epss 0.00

    A vulnerability was found in SourceCodester Student Result Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /script/academic/grading-system of the component Grading System Page. The manipulation of…

  • CVE-2025-5724LowJun 6, 2025
    risk 0.16cvss 2.4epss 0.00

    A vulnerability was found in SourceCodester Student Result Management System 1.0. It has been classified as problematic. Affected is an unknown function of the file /script/academic/subjects of the component Subjects Page. The manipulation of the argument Subject leads to cross…

  • CVE-2025-5723LowJun 6, 2025
    risk 0.16cvss 2.4epss 0.00

    A vulnerability was found in SourceCodester Student Result Management System 1.0 and classified as problematic. This issue affects some unknown processing of the file /script/academic/classes of the component Classes Page. The manipulation of the argument Class Name leads to…

  • CVE-2025-5722LowJun 6, 2025
    risk 0.16cvss 2.4epss 0.00

    A vulnerability has been found in SourceCodester Student Result Management System 1.0 and classified as problematic. This vulnerability affects unknown code of the file /script/academic/terms of the component Add Academic Term. The manipulation of the argument Academic Term…

Page 49 of 52