Wedding Management System Project ≫ Wedding Management System
20 Schwachstellen gefunden.
CVE-2022-30826
- EPSS 0.27%
- Veröffentlicht 02.06.2022 14:15:55
- Zuletzt bearbeitet 21.11.2024 07:03:27
Wedding Management System v1.0 is vulnerable to SQL Injection via admin\client_assign.php.
CVE-2022-30825
- EPSS 0.27%
- Veröffentlicht 02.06.2022 14:15:55
- Zuletzt bearbeitet 21.11.2024 07:03:27
Wedding Management System v1.0 is vulnerable to SQL Injection via \admin\client_edit.php.
CVE-2022-30823
- EPSS 0.27%
- Veröffentlicht 02.06.2022 14:15:55
- Zuletzt bearbeitet 21.11.2024 07:03:27
Wedding Management System v1.0 is vulnerable to SQL Injection via \admin\blog_events_edit.php.
CVE-2022-30822
- EPSS 0.41%
- Veröffentlicht 02.06.2022 14:15:55
- Zuletzt bearbeitet 21.11.2024 07:03:27
In Wedding Management System v1.0, there is an arbitrary file upload vulnerability in the picture upload point of "users_profile.php" file.
CVE-2022-30821
- EPSS 0.41%
- Veröffentlicht 02.06.2022 14:15:55
- Zuletzt bearbeitet 21.11.2024 07:03:27
In Wedding Management System v1.0, the editing function of the "Services" module in the background management system has an arbitrary file upload vulnerability in the picture upload point of "package_edit.php" file.
CVE-2022-30820
- EPSS 0.41%
- Veröffentlicht 02.06.2022 14:15:55
- Zuletzt bearbeitet 21.11.2024 07:03:26
In Wedding Management v1.0, there is an arbitrary file upload vulnerability in the picture upload point of "users_edit.php" file.
CVE-2022-30819
- EPSS 0.41%
- Veröffentlicht 02.06.2022 14:15:55
- Zuletzt bearbeitet 21.11.2024 07:03:26
In Wedding Management System v1.0, there is an arbitrary file upload vulnerability in the picture upload point of "photos_edit.php" file.
CVE-2022-30818
- EPSS 0.27%
- Veröffentlicht 02.06.2022 14:15:55
- Zuletzt bearbeitet 21.11.2024 07:03:26
Wedding Management System v1.0 is vulnerable to SQL injection via /Wedding-Management/admin/blog_events_edit.php?id=31.
CVE-2022-29655
- EPSS 0.99%
- Veröffentlicht 11.05.2022 13:15:08
- Zuletzt bearbeitet 21.11.2024 06:59:30
An arbitrary file upload vulnerability in the Upload Photos module of Wedding Management System v1.0 allows attackers to execute arbitrary code via a crafted PHP file.
CVE-2022-29656
- EPSS 0.61%
- Veröffentlicht 11.05.2022 13:15:08
- Zuletzt bearbeitet 21.11.2024 06:59:31
Wedding Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /Wedding-Management/package_detail.php.