Vulnerabilities (CVE)

Filtered by vendor Courier Management System Project Subscribe
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-46198 1 Courier Management System Project 1 Courier Management System 2024-02-28 10.0 HIGH 9.8 CRITICAL
An SQL Injection vulnerability exists in Sourceodester Courier Management System 1.0 via the email parameter in /cms/ajax.php app.
CVE-2020-35327 1 Courier Management System Project 1 Courier Management System 2024-02-28 4.0 MEDIUM 6.5 MEDIUM
SQL injection vulnerability was discovered in Courier Management System 1.0, which can be exploited via the ref_no (POST) parameter to admin_class.php
CVE-2020-35329 1 Courier Management System Project 1 Courier Management System 2024-02-28 4.0 MEDIUM 6.5 MEDIUM
Courier Management System 1.0 1.0 is affected by SQL Injection via 'MULTIPART street '.
CVE-2020-35328 1 Courier Management System Project 1 Courier Management System 2024-02-28 3.5 LOW 5.4 MEDIUM
Courier Management System 1.0 - 'First Name' Stored XSS