Show filters
19 Total Results
Displaying 1-10 of 19
Sort by:
Attacker Value
Unknown

CVE-2021-43657

Disclosure Date: December 22, 2022 (last updated October 08, 2023)
A Stored Cross-site scripting (XSS) vulnerability via MAster.php in Sourcecodetester Simple Client Management System (SCMS) 1.0 allows remote attackers to inject arbitrary web script or HTML via the vulnerable input fields.
Attacker Value
Unknown

CVE-2022-29984

Disclosure Date: May 12, 2022 (last updated February 23, 2025)
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/admin/?page=client/view_client&id=.
Attacker Value
Unknown

CVE-2022-29983

Disclosure Date: May 12, 2022 (last updated February 23, 2025)
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/admin/?page=invoice/view_invoice&id=.
Attacker Value
Unknown

CVE-2022-29982

Disclosure Date: May 12, 2022 (last updated February 23, 2025)
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/admin/maintenance/manage_service.php?id=.
Attacker Value
Unknown

CVE-2022-29981

Disclosure Date: May 12, 2022 (last updated February 23, 2025)
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Users.php?f=delete.
Attacker Value
Unknown

CVE-2022-29980

Disclosure Date: May 12, 2022 (last updated February 23, 2025)
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/admin/?page=user/manage_user&id=.
Attacker Value
Unknown

CVE-2022-29979

Disclosure Date: May 12, 2022 (last updated February 23, 2025)
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Master.php?f=delete_designation.
Attacker Value
Unknown

CVE-2022-29751

Disclosure Date: May 12, 2022 (last updated February 23, 2025)
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Master.php?f=delete_client.
Attacker Value
Unknown

CVE-2022-29750

Disclosure Date: May 12, 2022 (last updated February 23, 2025)
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Master.php?f=delete_service.
Attacker Value
Unknown

CVE-2022-29749

Disclosure Date: May 12, 2022 (last updated February 23, 2025)
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Master.php?f=delete_invoice.