CVE-2024-22628
- EPSS 0.1%
- Veröffentlicht 16.01.2024 18:15:11
- Zuletzt bearbeitet 02.06.2025 16:15:26
Budget and Expense Tracker System v1.0 is vulnerable to SQL Injection via /expense_budget/admin/?page=reports/budget&date_start=2023-12-28&date_end=
CVE-2023-2772
- EPSS 0.07%
- Veröffentlicht 17.05.2023 19:15:09
- Zuletzt bearbeitet 21.11.2024 07:59:15
A vulnerability, which was classified as critical, was found in SourceCodester Budget and Expense Tracker System 1.0. Affected is an unknown function of the file /admin/budget/manage_budget.php of the component GET Parameter Handler. The manipulation...
CVE-2021-40247
- EPSS 7.82%
- Veröffentlicht 21.01.2022 19:15:09
- Zuletzt bearbeitet 21.11.2024 06:23:47
SQL injection vulnerability in Sourcecodester Budget and Expense Tracker System v1 by oretnom23, allows attackers to execute arbitrary SQL commands via the username field.
CVE-2021-41645
- EPSS 10.25%
- Veröffentlicht 29.10.2021 17:15:07
- Zuletzt bearbeitet 21.11.2024 06:26:34
Remote Code Execution (RCE) vulnerability exists in Sourcecodester Budget and Expense Tracker System 1.0 that allows a remote malicious user to inject arbitrary code via the image upload field. .