Filtered by vendor Oretnom23
Subscriptions
Total
650 CVE
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2025-10421 | 2 Oretnom23, Sourcecodester | 2 Student Grading System, Student Grading System | 2025-09-19 | 6.3 Medium |
A flaw has been found in SourceCodester Student Grading System 1.0. This vulnerability affects unknown code of the file /update_account.php. Executing manipulation of the argument ID can lead to sql injection. The attack may be launched remotely. The exploit has been published and may be used. | ||||
CVE-2025-10420 | 2 Oretnom23, Sourcecodester | 2 Student Grading System, Student Grading System | 2025-09-19 | 6.3 Medium |
A vulnerability was detected in SourceCodester Student Grading System 1.0. This affects an unknown part of the file /form137.php. Performing manipulation of the argument ID results in sql injection. The attack may be initiated remotely. The exploit is now public and may be used. | ||||
CVE-2025-10419 | 2 Oretnom23, Sourcecodester | 2 Student Grading System, Student Grading System | 2025-09-19 | 6.3 Medium |
A security vulnerability has been detected in SourceCodester Student Grading System 1.0. Affected by this issue is some unknown functionality of the file /del_promote.php. Such manipulation of the argument sy leads to sql injection. The attack can be launched remotely. The exploit has been disclosed publicly and may be used. | ||||
CVE-2025-10418 | 2 Oretnom23, Sourcecodester | 2 Student Grading System, Student Grading System | 2025-09-19 | 6.3 Medium |
A weakness has been identified in SourceCodester Student Grading System 1.0. Affected by this vulnerability is an unknown functionality of the file /view_students.php. This manipulation of the argument ID causes sql injection. The attack can be initiated remotely. The exploit has been made available to the public and could be exploited. | ||||
CVE-2022-28024 | 1 Oretnom23 | 1 Student Grading System | 2025-09-19 | 9.8 Critical |
Student Grading System v1.0 was discovered to contain a SQL injection vulnerability via /student-grading-system/rms.php?page=grade. | ||||
CVE-2022-27304 | 1 Oretnom23 | 1 Student Grading System | 2025-09-19 | 9.8 Critical |
Student Grading System v1.0 was discovered to contain a SQL injection vulnerability via the user parameter. | ||||
CVE-2022-28025 | 1 Oretnom23 | 1 Student Grading System | 2025-09-19 | 9.8 Critical |
Student Grading System v1.0 was discovered to contain a SQL injection vulnerability via /student-grading-system/rms.php?page=school_year. | ||||
CVE-2022-28026 | 1 Oretnom23 | 1 Student Grading System | 2025-09-19 | 9.8 Critical |
Student Grading System v1.0 was discovered to contain a SQL injection vulnerability via /student-grading-system/rms.php?page=student_p&id=. | ||||
CVE-2025-10409 | 2 Oretnom23, Sourcecodester | 2 Student Grading System, Student Grading System | 2025-09-19 | 6.3 Medium |
A weakness has been identified in SourceCodester Student Grading System 1.0. This affects an unknown part of the file /rms.php?page=users. Executing manipulation of the argument fname can lead to sql injection. The attack can be launched remotely. The exploit has been made available to the public and could be exploited. | ||||
CVE-2025-10407 | 2 Oretnom23, Sourcecodester | 2 Student Grading System, Student Grading System | 2025-09-18 | 6.3 Medium |
A vulnerability was identified in SourceCodester Student Grading System 1.0. Affected by this vulnerability is an unknown functionality of the file /view_user.php. Such manipulation of the argument ID leads to sql injection. It is possible to launch the attack remotely. The exploit is publicly available and might be used. | ||||
CVE-2025-10408 | 2 Oretnom23, Sourcecodester | 2 Student Grading System, Student Grading System | 2025-09-18 | 6.3 Medium |
A security flaw has been discovered in SourceCodester Student Grading System 1.0. Affected by this issue is some unknown functionality of the file /edit_user.php. Performing manipulation of the argument ID results in sql injection. The attack can be initiated remotely. The exploit has been released to the public and may be exploited. | ||||
CVE-2025-10400 | 2 Oretnom23, Sourcecodester | 2 Food Ordering Management System, Food Ordering Management System | 2025-09-18 | 6.3 Medium |
A security vulnerability has been detected in SourceCodester Food Ordering Management System 1.0. Impacted is an unknown function of the file /routers/ticket-message.php. Such manipulation of the argument ticket_id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed publicly and may be used. | ||||
CVE-2025-10100 | 1 Oretnom23 | 1 Simple Forum\/discussion System | 2025-09-12 | 7.3 High |
A vulnerability was detected in SourceCodester Simple Forum Discussion System 1.0. This impacts an unknown function of the file /admin_class.php?action=login. Performing manipulation of the argument Username results in sql injection. It is possible to initiate the attack remotely. The exploit is now public and may be used. | ||||
CVE-2025-9701 | 2 Oretnom23, Sourcecodester | 2 Simple Cafe Billing System, Simple Cafe Billing System | 2025-09-08 | 7.3 High |
A vulnerability was determined in SourceCodester Simple Cafe Billing System 1.0. The impacted element is an unknown function of the file /receipt.php. Executing manipulation of the argument ID can lead to sql injection. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized. | ||||
CVE-2025-9702 | 2 Oretnom23, Sourcecodester | 2 Simple Cafe Billing System, Simple Cafe Billing System | 2025-09-08 | 7.3 High |
A vulnerability was identified in SourceCodester Simple Cafe Billing System 1.0. This affects an unknown function of the file /sales_report.php. The manipulation of the argument month leads to sql injection. The attack may be initiated remotely. The exploit is publicly available and might be used. | ||||
CVE-2025-9832 | 2 Oretnom23, Sourcecodester | 2 Food Ordering Management System, Food Ordering Management System | 2025-09-05 | 7.3 High |
A security vulnerability has been detected in SourceCodester Food Ordering Management System 1.0. Affected is an unknown function of the file /routers/register-router.php. Such manipulation of the argument phone leads to sql injection. The attack may be performed from remote. The exploit has been disclosed publicly and may be used. | ||||
CVE-2025-9473 | 2 Oretnom23, Sourcecodester | 2 Online Bank Management System, Online Bank Management System | 2025-09-02 | 7.3 High |
A security vulnerability has been detected in SourceCodester Online Bank Management System 1.0. This impacts an unknown function of the file /feedback.php. The manipulation of the argument msg leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed publicly and may be used. | ||||
CVE-2024-7221 | 1 Oretnom23 | 1 School Log Management System | 2025-09-01 | 6.3 Medium |
A vulnerability was determined in SourceCodester/Campcodes School Log Management System 1.0. This affects an unknown part of the file /admin/manage_user.php. This manipulation of the argument ID causes sql injection. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized. | ||||
CVE-2024-7220 | 2 Oretnom23, Sourcecodester | 2 School Log Management System, School Log Management System | 2025-09-01 | 6.3 Medium |
A vulnerability was found in SourceCodester/Campcodes School Log Management System 1.0. Affected by this issue is some unknown functionality of the file /admin/print_barcode.php. The manipulation of the argument tbl results in sql injection. It is possible to launch the attack remotely. The exploit has been made public and could be used. | ||||
CVE-2024-7219 | 2 Oretnom23, Sourcecodester | 2 School Log Management System, School Log Management System | 2025-09-01 | 7.3 High |
A vulnerability has been found in SourceCodester/Campcodes School Log Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/ajax.php?action=login. The manipulation of the argument Username leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. |