Lerouxyxchire

Client Database Management System

19 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.23%
  • Veröffentlicht 19.05.2025 08:31:05
  • Zuletzt bearbeitet 21.05.2025 17:41:56

A vulnerability, which was classified as critical, was found in SourceCodester Client Database Management System 1.0. Affected is an unknown function of the file /user_void_transaction.php. The manipulation of the argument order_id leads to sql injec...

Exploit
  • EPSS 0.27%
  • Veröffentlicht 19.05.2025 08:15:23
  • Zuletzt bearbeitet 28.05.2025 12:50:28

A vulnerability, which was classified as critical, has been found in SourceCodester Client Database Management System 1.0. This issue affects some unknown processing of the file /user_delivery_update.php. The manipulation of the argument uploaded_fil...

Exploit
  • EPSS 0.31%
  • Veröffentlicht 19.05.2025 03:31:04
  • Zuletzt bearbeitet 28.05.2025 13:08:14

A vulnerability classified as critical was found in SourceCodester Client Database Management System 1.0. This vulnerability affects unknown code. The manipulation leads to exposure of information through directory listing. The attack can be initiate...

  • EPSS 3.65%
  • Veröffentlicht 09.05.2025 00:00:00
  • Zuletzt bearbeitet 22.05.2025 18:49:22

SourceCodester Client Database Management System 1.0 is vulnerable to Remote code execution via Arbitrary file upload in user_proposal_update_order.php.

  • EPSS 0.24%
  • Veröffentlicht 09.05.2025 00:00:00
  • Zuletzt bearbeitet 22.05.2025 18:47:48

SourceCodester Client Database Management System 1.0 is vulnerable to SQL Injection in user_payment_update.php via the order_id POST parameter.

  • EPSS 0.6%
  • Veröffentlicht 09.05.2025 00:00:00
  • Zuletzt bearbeitet 22.05.2025 18:52:07

Arbitrary File Upload in user_payment_update.php in SourceCodester Client Database Management System 1.0 allows unauthenticated users to upload arbitrary files via the uploaded_file_cancelled field. Due to the absence of proper file extension checks,...

  • EPSS 0.24%
  • Veröffentlicht 09.05.2025 00:00:00
  • Zuletzt bearbeitet 22.05.2025 18:51:35

SourceCodester Client Database Management System 1.0 is vulnerable to SQL Injection in user_delivery_update.php via the order_id POST parameter.

Exploit
  • EPSS 0.27%
  • Veröffentlicht 09.05.2025 00:00:00
  • Zuletzt bearbeitet 22.05.2025 19:01:31

SourceCodester Client Database Management System 1.0 is vulnerable to SQL Injection in user_order_customer_update.php via the order_id POST parameter.

Exploit
  • EPSS 0.27%
  • Veröffentlicht 09.05.2025 00:00:00
  • Zuletzt bearbeitet 22.05.2025 19:03:17

SourceCodester Client Database Management System 1.0 is vulnerable to SQL Injection in superadmin_phpmyadmin.php.