CVE-2025-4363
- EPSS 0.02%
- Published 06.05.2025 15:31:05
- Last modified 13.05.2025 20:19:50
A vulnerability, which was classified as critical, has been found in itsourcecode Gym Management System 1.0. This issue affects some unknown processing of the file /ajax.php?action=end_membership. The manipulation of the argument rid leads to sql inj...
CVE-2025-4362
- EPSS 0.02%
- Published 06.05.2025 15:00:06
- Last modified 28.05.2025 20:00:58
A vulnerability classified as critical was found in itsourcecode Gym Management System 1.0. This vulnerability affects unknown code of the file /ajax.php?action=save_membership. The manipulation of the argument member_id leads to sql injection. The a...
CVE-2025-4360
- EPSS 0.02%
- Published 06.05.2025 14:31:05
- Last modified 28.05.2025 20:01:23
A vulnerability, which was classified as critical, has been found in itsourcecode Gym Management System 1.0. Affected by this issue is some unknown functionality of the file /view_member.php. The manipulation of the argument ID leads to sql injection...
CVE-2025-4359
- EPSS 0.02%
- Published 06.05.2025 14:15:42
- Last modified 28.05.2025 20:02:09
A vulnerability classified as critical was found in itsourcecode Gym Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /ajax.php?action=delete_member. The manipulation of the argument ID leads to sql inject...
CVE-2025-4195
- EPSS 0.03%
- Published 02.05.2025 01:00:09
- Last modified 16.05.2025 17:35:00
A vulnerability was found in itsourcecode Gym Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /ajax.php?action=save_member. The manipulation of the argument umember_id leads to sql injectio...
CVE-2024-6652
- EPSS 0.07%
- Published 10.07.2024 23:15:15
- Last modified 21.11.2024 09:50:04
A vulnerability was found in itsourcecode Gym Management System 1.0. It has been classified as critical. This affects an unknown part of the file manage_member.php. The manipulation of the argument id leads to sql injection. It is possible to initiat...
CVE-2020-29288
- EPSS 1.47%
- Published 02.12.2020 22:15:10
- Last modified 21.11.2024 05:23:52
An SQL injection vulnerability was discovered in Gym Management System In manage_user.php file, GET parameter 'id' is vulnerable.
CVE-2020-28129
- EPSS 0.33%
- Published 17.11.2020 21:15:12
- Last modified 21.11.2024 05:22:23
Stored Cross-site scripting (XSS) vulnerability in SourceCodester Gym Management System 1.0 allows users to inject and store arbitrary JavaScript code in index.php?page=packages via vulnerable fields 'Package Name' and 'Description'.