Show filters
21 Total Results
Displaying 11-20 of 21
Sort by:
Attacker Value
Unknown
CVE-2022-29749
Disclosure Date: May 12, 2022 (last updated February 23, 2025)
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Master.php?f=delete_invoice.
0
Attacker Value
Unknown
CVE-2022-29748
Disclosure Date: May 12, 2022 (last updated February 23, 2025)
Simple Client Management System 1.0 is vulnerable to SQL Injection via \cms\admin?page=client/manage_client&id=.
0
Attacker Value
Unknown
CVE-2022-29747
Disclosure Date: May 12, 2022 (last updated February 23, 2025)
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/admin/?page=invoice/manage_invoice&id= // Leak place ---> id.
0
Attacker Value
Unknown
CVE-2021-43484
Disclosure Date: March 31, 2022 (last updated February 23, 2025)
A Remote Code Execution (RCE) vulnerability exists in Simple Client Management System 1.0 in create.php due to the failure to validate the extension of the file being sent in a request.
0
Attacker Value
Unknown
CVE-2021-43506
Disclosure Date: March 31, 2022 (last updated February 23, 2025)
An SQL Injection vulnerability exists in Sourcecodester Simple Client Management System 1.0 via the password parameter in Login.php.
0
Attacker Value
Unknown
CVE-2021-43505
Disclosure Date: March 31, 2022 (last updated February 23, 2025)
Multiple Cross Site Scripting (XSS) vulnerabilities exist in Ssourcecodester Simple Client Management System v1 via (1) Add new Client and (2) Add new invoice.
0
Attacker Value
Unknown
CVE-2022-26285
Disclosure Date: March 21, 2022 (last updated February 23, 2025)
Simple Subscription Website v1.0 was discovered to contain a SQL injection vulnerability via the id parameter in the apply endpoint. This vulnerability allows attackers to dump the application's database via crafted HTTP requests.
0
Attacker Value
Unknown
CVE-2022-26284
Disclosure Date: March 21, 2022 (last updated February 23, 2025)
Simple Client Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter in the manage_client endpoint. This vulnerability allows attackers to dump the application's database via crafted HTTP requests.
0
Attacker Value
Unknown
CVE-2021-43510
Disclosure Date: February 01, 2022 (last updated February 23, 2025)
SQL Injection vulnerability exists in Sourcecodester Simple Client Management System 1.0 via the username field in login.php.
0
Attacker Value
Unknown
CVE-2021-43509
Disclosure Date: February 01, 2022 (last updated February 23, 2025)
SQL Injection vulnerability exists in Sourcecodester Simple Client Management System 1.0 via the id parameter in view-service.php.
0