Show filters
25 Total Results
Displaying 21-25 of 25
Sort by:
Attacker Value
Unknown

CVE-2023-5269

Disclosure Date: September 29, 2023 (last updated January 04, 2025)
A vulnerability was found in SourceCodester Best Courier Management System 1.0. It has been classified as critical. Affected is an unknown function of the file parcel_list.php of the component GET Parameter Handler. The manipulation of the argument s leads to sql injection. The exploit has been disclosed to the public and may be used. VDB-240882 is the identifier assigned to this vulnerability.
Attacker Value
Unknown

CVE-2021-46198

Disclosure Date: January 21, 2022 (last updated February 23, 2025)
An SQL Injection vulnerability exists in Sourceodester Courier Management System 1.0 via the email parameter in /cms/ajax.php app.
Attacker Value
Unknown

CVE-2020-35327

Disclosure Date: March 04, 2021 (last updated February 22, 2025)
SQL injection vulnerability was discovered in Courier Management System 1.0, which can be exploited via the ref_no (POST) parameter to admin_class.php
Attacker Value
Unknown

CVE-2020-35328

Disclosure Date: March 04, 2021 (last updated February 22, 2025)
Courier Management System 1.0 - 'First Name' Stored XSS
Attacker Value
Unknown

CVE-2020-35329

Disclosure Date: March 04, 2021 (last updated February 22, 2025)
Courier Management System 1.0 1.0 is affected by SQL Injection via 'MULTIPART street '.