CVE-2024-2075
- EPSS 0.09%
- Veröffentlicht 01.03.2024 18:15:29
- Zuletzt bearbeitet 21.11.2024 09:08:59
A vulnerability was found in SourceCodester Daily Habit Tracker 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /endpoint/update-tracker.php. The manipulation of the argument day leads ...
CVE-2024-24494
- EPSS 33.59%
- Veröffentlicht 08.02.2024 21:15:08
- Zuletzt bearbeitet 15.05.2025 20:15:46
Cross Site Scripting vulnerability in Daily Habit Tracker v.1.0 allows a remote attacker to execute arbitrary code via the day, exercise, pray, read_book, vitamins, laundry, alcohol and meat parameters in the add-tracker.php and update-tracker.php co...
CVE-2024-24495
- EPSS 0.49%
- Veröffentlicht 08.02.2024 21:15:08
- Zuletzt bearbeitet 15.05.2025 20:15:46
SQL Injection vulnerability in delete-tracker.php in Daily Habit Tracker v.1.0 allows a remote attacker to execute arbitrary code via crafted GET request.
CVE-2024-24496
- EPSS 33.98%
- Veröffentlicht 08.02.2024 21:15:08
- Zuletzt bearbeitet 21.11.2024 08:59:21
An issue in Daily Habit Tracker v.1.0 allows a remote attacker to manipulate trackers via the home.php, add-tracker.php, delete-tracker.php, update-tracker.php components.
CVE-2024-24140
- EPSS 2.82%
- Veröffentlicht 29.01.2024 20:15:15
- Zuletzt bearbeitet 29.05.2025 16:15:38
Sourcecodester Daily Habit Tracker App 1.0 allows SQL Injection via the parameter 'tracker.'