CVE-2025-63716
- EPSS 0.03%
- Veröffentlicht 07.11.2025 00:00:00
- Zuletzt bearbeitet 17.11.2025 18:37:54
The SourceCodester Leads Manager Tool v1.0 is vulnerable to Cross-Site Request Forgery (CSRF) attacks that allow unauthorized state-changing operations. The application lacks CSRF protection mechanisms such as anti-CSRF tokens or same-origin verifica...
CVE-2024-7942
- EPSS 0.13%
- Veröffentlicht 20.08.2024 01:15:11
- Zuletzt bearbeitet 03.09.2024 20:39:07
A vulnerability has been found in SourceCodester Leads Manager Tool 1.0 and classified as problematic. This vulnerability affects unknown code of the file update-leads.php. The manipulation of the argument phone_number leads to cross site scripting. ...
CVE-2024-7643
- EPSS 0.15%
- Veröffentlicht 12.08.2024 13:38:48
- Zuletzt bearbeitet 15.08.2024 18:18:22
A vulnerability was found in SourceCodester Leads Manager Tool 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /endpoint/delete-leads.php of the component Delete Leads Handler. The manipulation of the ...
CVE-2024-7644
- EPSS 0.15%
- Veröffentlicht 12.08.2024 13:38:48
- Zuletzt bearbeitet 09.09.2024 15:15:12
A vulnerability was found in SourceCodester Leads Manager Tool 1.0. It has been classified as problematic. This affects an unknown part of the file /endpoint/add-leads.php of the component Add Leads Handler. The manipulation of the argument leads_nam...