VYPR

Vendor CVEs

Sourcecodester

All CVEs

2,498 total · sorted by risk
  • CVE-2023-3017LowMay 31, 2023
    risk 0.16cvss 2.4epss 0.01

    A vulnerability was found in SourceCodester Lost and Found Information System 1.0. It has been classified as problematic. This affects an unknown part of the file admin/?page=user/manage_user of the component Manage User Page. The manipulation of the argument First Name/Middle…

  • CVE-2023-2973LowMay 30, 2023
    risk 0.16cvss 2.4epss 0.01

    A vulnerability, which was classified as problematic, has been found in SourceCodester Students Online Internship Timesheet Syste 1.0. Affected by this issue is some unknown functionality of the file /ajax.php?action=save_company. The manipulation of the argument name with the…

  • CVE-2023-2425LowApr 29, 2023
    risk 0.16cvss 2.4epss 0.01

    A vulnerability was found in SourceCodester Simple Student Information System 1.0. It has been classified as problematic. This affects an unknown part of the file /classes/Master.php?f=save_course of the component Add New Course. The manipulation of the argument name with the…

  • CVE-2023-2397LowApr 28, 2023
    risk 0.16cvss 2.4epss 0.01

    A vulnerability, which was classified as problematic, has been found in SourceCodester Simple Mobile Comparison Website 1.0. This issue affects some unknown processing of the file classes/Master.php?f=save_field. The manipulation of the argument Field Name leads to cross site…

  • CVE-2023-2372LowApr 28, 2023
    risk 0.16cvss 2.4epss 0.01

    A vulnerability, which was classified as problematic, has been found in SourceCodester Online DJ Management System 1.0. Affected by this issue is some unknown functionality of the file classes/Master.php?f=save_event. The manipulation of the argument name leads to cross site…

  • CVE-2023-2293LowApr 25, 2023
    risk 0.16cvss 2.4epss 0.01

    A vulnerability was found in SourceCodester Purchase Order Management System 1.0. It has been classified as problematic. This affects an unknown part of the file classes/Master.php?f=save_item. The manipulation of the argument description with the input…

  • CVE-2023-2155LowApr 18, 2023
    risk 0.16cvss 2.4epss 0.01

    A vulnerability was found in SourceCodester Air Cargo Management System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file classes/Master.php?f=save_cargo_type. The manipulation of the argument name leads to cross site scripting. The…

  • CVE-2023-1961LowApr 8, 2023
    risk 0.16cvss 2.4epss 0.00

    A vulnerability was found in SourceCodester Online Computer and Laptop Store 1.0. It has been classified as problematic. Affected is an unknown function of the file /admin/?page=system_info. The manipulation of the argument System Name leads to cross site scripting. It is…

  • CVE-2023-1946LowApr 7, 2023
    risk 0.16cvss 2.4epss 0.00

    A vulnerability was found in SourceCodester Survey Application System 1.0 and classified as problematic. This issue affects some unknown processing of the component Add New Handler. The manipulation of the argument Title with the input …

  • CVE-2023-1857LowApr 5, 2023
    risk 0.16cvss 2.4epss 0.01

    A vulnerability was found in SourceCodester Online Computer and Laptop Store 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /admin/?page=product/manage_product&id=2. The manipulation of the argument Product Name leads to cross…

  • CVE-2023-1796LowApr 2, 2023
    risk 0.16cvss 2.4epss 0.01

    A vulnerability classified as problematic has been found in SourceCodester Employee Payslip Generator 1.0. Affected is an unknown function of the file /classes/Master.php?f=save_position of the component Create News Handler. The manipulation of the argument name with the input…

  • CVE-2023-1359LowMar 12, 2023
    risk 0.16cvss 2.4epss 0.01

    A vulnerability has been found in SourceCodester Gadget Works Online Ordering System 1.0 and classified as problematic. This vulnerability affects unknown code of the file /philosophy/admin/user/controller.php?action=add of the component Add New User. The manipulation of the…

  • CVE-2023-1113LowMar 1, 2023
    risk 0.16cvss 2.4epss 0.01

    A vulnerability was found in SourceCodester Simple Payroll System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file admin/?page=admin of the component POST Parameter Handler. The manipulation of the argument fullname…

  • CVE-2023-0966LowFeb 22, 2023
    risk 0.16cvss 2.4epss 0.01

    A vulnerability classified as problematic was found in SourceCodester Online Eyewear Shop 1.0. Affected by this vulnerability is an unknown functionality of the file admin/?page=orders/view_order. The manipulation of the argument id leads to cross site scripting. The attack can…

  • CVE-2023-0258LowJan 12, 2023
    risk 0.16cvss 2.4epss 0.00

    A vulnerability was found in SourceCodester Online Food Ordering System 2.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Category List Handler. The manipulation of the argument Reason with the input…

  • CVE-2022-4233LowNov 30, 2022
    risk 0.16cvss 2.4epss 0.00

    A vulnerability has been found in SourceCodester Event Registration System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /event/admin/?page=user/list. The manipulation of the argument First Name/Last Name leads to cross…

  • CVE-2022-3992LowNov 14, 2022
    risk 0.16cvss 2.4epss 0.00

    A vulnerability classified as problematic was found in SourceCodester Sanitization Management System. Affected by this vulnerability is an unknown functionality of the file admin/?page=system_info of the component Banner Image Handler. The manipulation leads to cross site…

  • CVE-2022-3581LowOct 18, 2022
    risk 0.16cvss 2.4epss 0.00

    A vulnerability, which was classified as problematic, was found in SourceCodester Cashier Queuing System 1.0. Affected is an unknown function of the component Cashiers Tab. The manipulation of the argument Name leads to cross site scripting. It is possible to launch the attack…

  • CVE-2022-3580LowOct 18, 2022
    risk 0.16cvss 2.4epss 0.00

    A vulnerability, which was classified as problematic, has been found in SourceCodester Cashier Queuing System 1.0.1. This issue affects some unknown processing of the component User Creation Handler. The manipulation leads to cross site scripting. The attack may be initiated…

  • CVE-2022-3548LowOct 17, 2022
    risk 0.16cvss 2.4epss 0.01

    A vulnerability was found in SourceCodester Simple Cold Storage Management System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the component Add New Storage Handler. The manipulation of the argument Name leads to cross site scripting. The…

  • CVE-2022-3547LowOct 17, 2022
    risk 0.16cvss 2.4epss 0.01

    A vulnerability was found in SourceCodester Simple Cold Storage Management System 1.0. It has been classified as problematic. This affects an unknown part of the file /csms/admin/?page=system_info of the component Setting Handler. The manipulation of the argument System…

  • CVE-2022-3546LowOct 17, 2022
    risk 0.16cvss 2.4epss 0.01

    A vulnerability was found in SourceCodester Simple Cold Storage Management System 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /csms/admin/?page=user/list of the component Create User Handler. The manipulation of the…

  • CVE-2022-3519LowOct 15, 2022
    risk 0.16cvss 2.4epss 0.00

    A vulnerability classified as problematic was found in SourceCodester Sanitization Management System 1.0. Affected by this vulnerability is an unknown functionality of the component Quote Requests Tab. The manipulation of the argument Manage Remarks leads to cross site…

  • CVE-2022-3518LowOct 15, 2022
    risk 0.16cvss 2.4epss 0.01

    A vulnerability classified as problematic has been found in SourceCodester Sanitization Management System 1.0. Affected is an unknown function of the component User Creation Handler. The manipulation of the argument First Name/Middle Name/Last Name leads to cross site scripting.…

  • CVE-2022-2020LowJun 9, 2022
    risk 0.16cvss 2.4epss 0.01

    A vulnerability, which was classified as problematic, has been found in SourceCodester Prison Management System 1.0. Affected by this issue is some unknown functionality of the file /admin/?page=system_info of the component System Name Handler. The manipulation with the input…

  • CVE-2022-1980LowJun 2, 2022
    risk 0.16cvss 2.4epss 0.01

    A vulnerability was found in SourceCodester Product Show Room Site 1.0. It has been rated as problematic. This issue affects the file /admin/?page=system_info/contact_info. The manipulation of the textbox Telephone with the input leads to cross site…

  • CVE-2025-69948CriJul 31, 2026
    risk 0.00cvss 9.8epss 0.00

    SourceCodester Modern Loan Management System 1.0 is vulnerable to SQL Injection in /admin/delete_group.php?id=1.

  • CVE-2025-69946CriJul 31, 2026
    risk 0.00cvss 9.8epss 0.00

    SourceCodester Modern Loan Management System 1.0 is vulnerable to SQL Injection in ajaxData.php via the parameters district_id , division_id, region_id, and ward_id.

  • CVE-2025-69947CriJul 30, 2026
    risk 0.00cvss 9.8epss 0.00

    SourceCodester Tailor Management System 1.0 is vulnerable to SQL Injection in customeredit.php?id=1.

  • CVE-2025-69941CriJul 30, 2026
    risk 0.00cvss 9.8epss 0.00

    SourceCodester Tailor Management System 1.0 is vulnerable to SQL Injection in addmeasurement.php?id=1.

  • CVE-2025-67408HigJul 29, 2026
    risk 0.00cvss 7.3epss 0.00

    Sourcecodester CASAP Automated Enrollment System 1.0 is vulnerable to SQL Injection in /save_user.php via the parameter status.

  • CVE-2025-67407HigJul 29, 2026
    risk 0.00cvss 7.3epss 0.00

    Sourcecodester CASAP Automated Enrollment System 1.0 is vulnerable to SQL Injection in update_student.php via parameters fname and student_class.

  • CVE-2025-67406HigJul 29, 2026
    risk 0.00cvss 7.3epss 0.00

    https://www.sourcecodester.com Advocate office management system 1.0 is affected by: SQL Injection. The impact is: execute arbitrary code (remote). The component is: control/activate_case.php,?id=1. The attack vector is: A SQL Injection vulnerability exists in the…

  • CVE-2025-67405HigJul 29, 2026
    risk 0.00cvss 7.3epss 0.00

    Sourcecodester CASAP Automated Enrollment System 1.0 is vulnerable to SQL Injection in update_password.php via the parameter new_password.

  • CVE-2025-67404CriJul 29, 2026
    risk 0.00cvss 9.8epss 0.00

    Sourcecodester CASAP Automated Enrollment System 1.0 is vulnerable to SQL Injection in save_stud.php via the parameters fname, lname, and student_class.

  • CVE-2025-67403CriJul 29, 2026
    risk 0.00cvss 9.8epss 0.00

    Sourcecodester CASAP Automated Enrollment System 1.0 is vulnerable to SQL Injection in update_class.php via the parameter class_name.

  • CVE-2025-65337MedJul 29, 2026
    risk 0.00cvss 6.1epss 0.00

    Sourcecodester Fantastic Blog CMS 1.0 is vulnerable to Cross Site Scripting (XSS) in pageEditMember.php via the address field.

  • CVE-2026-16486MedJul 21, 2026
    risk 0.00cvss 4.3epss 0.00

    A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown part of the file /BSIS.php. Performing a manipulation of the argument day results in cross site scripting. The attack may be initiated remotely. The exploit has been made…

  • CVE-2026-16485MedJul 21, 2026
    risk 0.00cvss 4.3epss 0.00

    A vulnerability has been found in SourceCodester Class and Exam Timetabling System 1.0. Affected by this issue is some unknown functionality of the file /class.php. Such manipulation of the argument day leads to cross site scripting. The attack can be launched remotely. The…

  • CVE-2026-16484HigJul 21, 2026
    risk 0.00cvss 7.3epss 0.00

    A flaw has been found in SourceCodester Class and Exam Timetabling System 1.0. Affected by this vulnerability is an unknown functionality of the file /edit_subjecta.php. This manipulation of the argument ID causes sql injection. The attack can be initiated remotely. The exploit…

  • CVE-2026-16228HigJul 19, 2026
    risk 0.00cvss 7.3epss 0.00

    A vulnerability was detected in SourceCodester Class and Exam Timetabling System 1.0. Affected is an unknown function of the file /edit_schoolyr.php. Performing a manipulation of the argument ID results in sql injection. It is possible to initiate the attack remotely. The…

  • CVE-2026-16227HigJul 19, 2026
    risk 0.00cvss 7.3epss 0.00

    A security vulnerability has been detected in SourceCodester Class and Exam Timetabling System 1.0. This impacts an unknown function of the file /edit_subject.php. Such manipulation of the argument ID leads to sql injection. The attack may be performed from remote. The exploit…

  • CVE-2026-16226MedJul 19, 2026
    risk 0.00cvss 4.7epss 0.00

    A weakness has been identified in SourceCodester Pizzafy Ecommerce System 1.0. This affects the function save_settings of the file /admin/admin_class_novo.php. This manipulation of the argument img causes unrestricted upload. The attack is possible to be carried out remotely.

  • CVE-2026-16203LowJul 19, 2026
    risk 0.00cvss 3.5epss 0.00

    A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this issue is some unknown functionality of the file /forCYS.php. Such manipulation of the argument course leads to cross site scripting. The attack may be performed from remote.…

  • CVE-2026-16202LowJul 19, 2026
    risk 0.00cvss 3.5epss 0.00

    A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0. Affected by this vulnerability is an unknown functionality of the file /CYS.php. This manipulation of the argument course causes cross site scripting. The attack is possible to be carried out…

  • CVE-2026-16156LowJul 18, 2026
    risk 0.00cvss 3.5epss 0.00

    A security flaw has been discovered in SourceCodester Class and Exam Timetabling System 1.0. This affects an unknown part of the file /forexam.php. The manipulation of the argument day results in cross site scripting. It is possible to launch the attack remotely. The exploit has…

  • CVE-2026-16155LowJul 18, 2026
    risk 0.00cvss 3.5epss 0.00

    A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this issue is some unknown functionality of the file /schoolyr.php. The manipulation of the argument sy leads to cross site scripting. It is possible to initiate the attack…

  • CVE-2026-16154HigJul 18, 2026
    risk 0.00cvss 7.3epss 0.00

    A vulnerability was determined in SourceCodester Class and Exam Timetabling System 1.0/1.php. Affected by this vulnerability is an unknown functionality of the file /edit_room1.php. Executing a manipulation of the argument ID can lead to sql injection. The attack may be…

  • CVE-2026-16152HigJul 18, 2026
    risk 0.00cvss 7.3epss 0.00

    A vulnerability was found in SourceCodester Class and Exam Timetabling System 1.0. Affected is an unknown function of the file /edit_rooma.php. Performing a manipulation of the argument ID results in sql injection. The attack is possible to be carried out remotely. The exploit…

  • CVE-2026-15715MedJul 14, 2026
    risk 0.00cvss 4.3epss 0.00

    A vulnerability was identified in SourceCodester Class and Exam Timetabling System 1.0. Affected by this vulnerability is an unknown functionality of the file /exam.php. Such manipulation of the argument day leads to cross site scripting. It is possible to launch the attack…

Page 49 of 50