CVE-2025-13561
- EPSS 0.05%
- Veröffentlicht 23.11.2025 17:32:05
- Zuletzt bearbeitet 26.11.2025 17:27:15
A vulnerability was determined in SourceCodester Company Website CMS 1.0. This vulnerability affects unknown code of the file /admin/index.php. This manipulation of the argument Username causes sql injection. Remote exploitation of the attack is poss...
CVE-2025-13560
- EPSS 0.05%
- Veröffentlicht 23.11.2025 17:02:06
- Zuletzt bearbeitet 26.11.2025 17:26:41
A vulnerability was found in SourceCodester Company Website CMS 1.0. This affects an unknown part of the file /admin/reset-password.php. The manipulation of the argument email results in sql injection. The attack may be launched remotely. The exploit...
CVE-2025-29708
- EPSS 0.73%
- Veröffentlicht 16.04.2025 00:00:00
- Zuletzt bearbeitet 23.04.2025 16:33:51
SourceCodester Company Website CMS 1.0 contains a file upload vulnerability via the "Create Services" file /dashboard/Services.
CVE-2025-29709
- EPSS 0.73%
- Veröffentlicht 16.04.2025 00:00:00
- Zuletzt bearbeitet 23.04.2025 16:33:59
SourceCodester Company Website CMS 1.0 has a File upload vulnerability via the "Create portfolio" file /dashboard/portfolio.
CVE-2025-29710
- EPSS 0.18%
- Veröffentlicht 16.04.2025 00:00:00
- Zuletzt bearbeitet 23.04.2025 16:34:04
SourceCodester Company Website CMS 1.0 is vulnerable to Cross Site Scripting (XSS) via /dashboard/Services.