Show filters
30 Total Results
Displaying 11-20 of 30
Sort by:
Attacker Value
Unknown

CVE-2022-44151

Disclosure Date: November 30, 2022 (last updated February 24, 2025)
Simple Inventory Management System v1.0 is vulnerable to SQL Injection via /ims/login.php.
Attacker Value
Unknown

CVE-2022-44096

Disclosure Date: November 30, 2022 (last updated February 24, 2025)
Sanitization Management System v1.0 was discovered to contain hardcoded credentials which allows attackers to escalate privileges and access the admin panel.
Attacker Value
Unknown

CVE-2022-45214

Disclosure Date: November 28, 2022 (last updated February 24, 2025)
A cross-site scripting (XSS) vulnerability in Sanitization Management System v1.0.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the username parameter at /php-sms/classes/Login.php.
Attacker Value
Unknown

CVE-2022-44278

Disclosure Date: November 23, 2022 (last updated February 24, 2025)
Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/?page=user/manage_user&id=.
Attacker Value
Unknown

CVE-2022-3992

Disclosure Date: November 14, 2022 (last updated February 24, 2025)
A vulnerability classified as problematic was found in SourceCodester Sanitization Management System. Affected by this vulnerability is an unknown functionality of the file admin/?page=system_info of the component Banner Image Handler. The manipulation leads to cross site scripting. The attack can be launched remotely. The associated identifier of this vulnerability is VDB-213571.
Attacker Value
Unknown

CVE-2022-3942

Disclosure Date: November 11, 2022 (last updated February 24, 2025)
A vulnerability was found in SourceCodester Sanitization Management System and classified as problematic. This issue affects some unknown processing of the file php-sms/?p=request_quote. The manipulation leads to cross site scripting. The attack may be initiated remotely. The identifier VDB-213449 was assigned to this vulnerability.
Attacker Value
Unknown

CVE-2022-43351

Disclosure Date: November 07, 2022 (last updated December 22, 2024)
Sanitization Management System v1.0 was discovered to contain an arbitrary file deletion vulnerability via the component /classes/Master.php?f=delete_img.
Attacker Value
Unknown

CVE-2022-43350

Disclosure Date: November 07, 2022 (last updated February 24, 2025)
Sanitization Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /php-sms/classes/Master.php?f=delete_inquiry.
Attacker Value
Unknown

CVE-2022-43352

Disclosure Date: November 07, 2022 (last updated February 24, 2025)
Sanitization Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /php-sms/classes/Master.php?f=delete_quote.
Attacker Value
Unknown

CVE-2022-3868

Disclosure Date: November 05, 2022 (last updated February 24, 2025)
A vulnerability classified as critical has been found in SourceCodester Sanitization Management System. Affected is an unknown function of the file /php-sms/classes/Master.php?f=save_quote. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-213012.