Show filters
26 Total Results
Displaying 11-20 of 26
Sort by:
Attacker Value
Unknown

CVE-2022-44151

Disclosure Date: November 30, 2022 (last updated February 24, 2025)
Simple Inventory Management System v1.0 is vulnerable to SQL Injection via /ims/login.php.
Attacker Value
Unknown

CVE-2022-44096

Disclosure Date: November 30, 2022 (last updated February 24, 2025)
Sanitization Management System v1.0 was discovered to contain hardcoded credentials which allows attackers to escalate privileges and access the admin panel.
Attacker Value
Unknown

CVE-2022-45214

Disclosure Date: November 28, 2022 (last updated February 24, 2025)
A cross-site scripting (XSS) vulnerability in Sanitization Management System v1.0.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the username parameter at /php-sms/classes/Login.php.
Attacker Value
Unknown

CVE-2022-44278

Disclosure Date: November 23, 2022 (last updated February 24, 2025)
Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/?page=user/manage_user&id=.
Attacker Value
Unknown

CVE-2022-43351

Disclosure Date: November 07, 2022 (last updated December 22, 2024)
Sanitization Management System v1.0 was discovered to contain an arbitrary file deletion vulnerability via the component /classes/Master.php?f=delete_img.
Attacker Value
Unknown

CVE-2022-43350

Disclosure Date: November 07, 2022 (last updated February 24, 2025)
Sanitization Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /php-sms/classes/Master.php?f=delete_inquiry.
Attacker Value
Unknown

CVE-2022-43352

Disclosure Date: November 07, 2022 (last updated February 24, 2025)
Sanitization Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /php-sms/classes/Master.php?f=delete_quote.
Attacker Value
Unknown

CVE-2022-3868

Disclosure Date: November 05, 2022 (last updated February 24, 2025)
A vulnerability classified as critical has been found in SourceCodester Sanitization Management System. Affected is an unknown function of the file /php-sms/classes/Master.php?f=save_quote. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-213012.
Attacker Value
Unknown

CVE-2022-43354

Disclosure Date: November 01, 2022 (last updated February 24, 2025)
Sanitization Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/?page=orders/manage_request.
Attacker Value
Unknown

CVE-2022-43353

Disclosure Date: November 01, 2022 (last updated February 24, 2025)
Sanitization Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/?page=orders/view_order.