Monthly Archive: July 2021
22/07/2021
by
Fred
· Published 22/07/2021
SQL injection vulnerability in SourceCodester CASAP Automated Enrollment System v 1.0 allows remote attackers to execute arbitrary SQL statements, via the id parameter to edit_stud.php. Date published : 2021-07-22 https://github.com/BigTiger2020/CASAP-Automated-Enrollment-System/blob/main/CASAP-Automated-Enrollment-System-1.md
22/07/2021
by
Fred
· Published 22/07/2021
SQL injection vulnerability in SourceCodester CASAP Automated Enrollment System v 1.0 allows remote attackers to execute arbitrary SQL statements, via the id parameter to edit_class1.php. Date published : 2021-07-22 https://github.com/BigTiger2020/CASAP-Automated-Enrollment-System/blob/main/README.md
22/07/2021
by
Fred
· Published 22/07/2021
Cross-site scripting (XSS) vulnerability in SourceCodester CASAP Automated Enrollment System v 1.0 allows remote attackers to inject arbitrary web script or HTML via the student information parameters to edit_stud.php. Date published : 2021-07-22 https://github.com/BigTiger2020/CASAP-Automated-Enrollment-System/blob/main/CASAP-Automated-Enrollment-System-4.md
22/07/2021
by
Fred
· Published 22/07/2021
SQL injection vulnerability in SourceCodester CASAP Automated Enrollment System v 1.0 allows remote attackers to execute arbitrary SQL statements, via the id parameter to edit_user.php. Date published : 2021-07-22 https://github.com/BigTiger2020/CASAP-Automated-Enrollment-System/blob/main/CASAP-Automated-Enrollment-System-2.md
22/07/2021
by
Fred
· Published 22/07/2021
Cross-site scripting (XSS) vulnerability in SourceCodester Fantastic-Blog-CMS V 1.0 allows remote attackers to inject arbitrary web script or HTML via the search field to search.php. Date published : 2021-07-22 https://github.com/BigTiger2020/Fantastic-Blog-CMS-/blob/main/Fantastic-Blog-CMS-2.md
22/07/2021
by
Fred
· Published 22/07/2021
SQL injection vulnerability in SourceCodester CASAP Automated Enrollment System v 1.0 allows remote attackers to execute arbitrary SQL statements, via the id parameter to view_pay.php. Date published : 2021-07-22 https://github.com/BigTiger2020/CASAP-Automated-Enrollment-System/blob/main/CASAP-Automated-Enrollment-System-3.md
22/07/2021
by
Fred
· Published 22/07/2021
SQL injection vulnerability in SourceCodester Travel Management System v 1.0 allows remote attackers to execute arbitrary SQL statements, via the catid parameter to subcat.php. Date published : 2021-07-22 https://github.com/BigTiger2020/Travel-Management-System/blob/main/Travel%20Management%20System-sql.md
22/07/2021
by
Fred
· Published 22/07/2021
SQL injection vulnerability in SourceCodester Alumni Management System v 1.0 allows remote attackers to execute arbitrary SQL statements, via the id parameter to manage_event.php. Date published : 2021-07-22 https://github.com/BigTiger2020/Alumni-Management-System/blob/main/Alumni%20Management%20System-sql.md
22/07/2021
by
Fred
· Published 22/07/2021
Arbitrary file upload vulnerability in SourceCodester Ordering System v 1.0 allows attackers to execute arbitrary code, via the file upload to orderingadminproductsedit.php. Date published : 2021-07-22 https://github.com/BigTiger2020/Ordering-System/blob/main/Ordering%20System.md
22/07/2021
by
Fred
· Published 22/07/2021
Arbitrary file upload vulnerability in SourceCodester Alumni Management System v 1.0 allows attackers to execute arbitrary code, via the file upload to manage_event.php. Date published : 2021-07-22 https://github.com/BigTiger2020/Alumni-Management-System/blob/main/Alumni%20Management%20System-file%20upload.md
22/07/2021
by
Fred
· Published 22/07/2021
SQL injection vulnerability in SourceCodester Theme Park Ticketing System v 1.0 allows remote attackers to execute arbitrary SQL statements, via the id parameter to view_user.php . Date published : 2021-07-22 https://github.com/BigTiger2020/Theme-Park-Ticketing-System/blob/main/Theme%20Park%20Ticketing%20System.md
22/07/2021
by
Fred
· Published 22/07/2021
SQL injection vulnerability in SourceCodester E-Commerce Website V 1.0 allows remote attackers to execute arbitrary SQL statements, via the update parameter to empViewUpdate.php . Date published : 2021-07-22 https://github.com/BigTiger2020/E-Commerce-Website/blob/main/E-Commerce%20Website-sql.md
22/07/2021
by
Fred
· Published 22/07/2021
SQL injection vulnerability in SourceCodester Sales and Inventory System v 1.0 allows remote attackers to execute arbitrary SQL statements, via the id parameter to ahiraadmininventory.php. Date published : 2021-07-22 https://github.com/TCSWT/Sales-and-Inventory-System/blob/main/README.md
22/07/2021
by
Fred
· Published 22/07/2021
Cross-site scripting (XSS) vulnerability in SourceCodester Content Management System v 1.0 allows remote attackers to inject arbitrary web script or HTML via the search parameter to content_management_systemadminnew_content.php Date published : 2021-07-22 https://github.com/TCSWT/Content-Management-System/blob/main/README.md