Show filters
21 Total Results
Displaying 1-10 of 21
Sort by:
Attacker Value
Unknown

CVE-2024-48570

Disclosure Date: October 22, 2024 (last updated October 26, 2024)
Client Management System 1.0 was discovered to contain a SQL injection vulnerability via the Between Dates Reports parameter at /admin/bwdates-reports-ds.php.
Attacker Value
Unknown

CVE-2021-43657

Disclosure Date: December 22, 2022 (last updated October 08, 2023)
A Stored Cross-site scripting (XSS) vulnerability via MAster.php in Sourcecodetester Simple Client Management System (SCMS) 1.0 allows remote attackers to inject arbitrary web script or HTML via the vulnerable input fields.
Attacker Value
Unknown

CVE-2022-29984

Disclosure Date: May 12, 2022 (last updated February 23, 2025)
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/admin/?page=client/view_client&id=.
Attacker Value
Unknown

CVE-2022-29983

Disclosure Date: May 12, 2022 (last updated February 23, 2025)
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/admin/?page=invoice/view_invoice&id=.
Attacker Value
Unknown

CVE-2022-29982

Disclosure Date: May 12, 2022 (last updated February 23, 2025)
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/admin/maintenance/manage_service.php?id=.
Attacker Value
Unknown

CVE-2022-29981

Disclosure Date: May 12, 2022 (last updated February 23, 2025)
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Users.php?f=delete.
Attacker Value
Unknown

CVE-2022-29980

Disclosure Date: May 12, 2022 (last updated February 23, 2025)
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/admin/?page=user/manage_user&id=.
Attacker Value
Unknown

CVE-2022-29979

Disclosure Date: May 12, 2022 (last updated February 23, 2025)
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Master.php?f=delete_designation.
Attacker Value
Unknown

CVE-2022-29751

Disclosure Date: May 12, 2022 (last updated February 23, 2025)
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Master.php?f=delete_client.
Attacker Value
Unknown

CVE-2022-29750

Disclosure Date: May 12, 2022 (last updated February 23, 2025)
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Master.php?f=delete_service.