Show filters
4 Total Results
Displaying 1-4 of 4
Sort by:
Attacker Value
Unknown

CVE-2021-46198

Disclosure Date: January 21, 2022 (last updated February 23, 2025)
An SQL Injection vulnerability exists in Sourceodester Courier Management System 1.0 via the email parameter in /cms/ajax.php app.
Attacker Value
Unknown

CVE-2020-35327

Disclosure Date: March 04, 2021 (last updated February 22, 2025)
SQL injection vulnerability was discovered in Courier Management System 1.0, which can be exploited via the ref_no (POST) parameter to admin_class.php
Attacker Value
Unknown

CVE-2020-35328

Disclosure Date: March 04, 2021 (last updated February 22, 2025)
Courier Management System 1.0 - 'First Name' Stored XSS
Attacker Value
Unknown

CVE-2020-35329

Disclosure Date: March 04, 2021 (last updated February 22, 2025)
Courier Management System 1.0 1.0 is affected by SQL Injection via 'MULTIPART street '.