Severity
5.3MEDIUM
EPSS
0.2%
top 52.06%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 16
Latest updateJun 26

Description

A vulnerability classified as critical has been found in code-projects Pharmacy Management System 1.0. This affects an unknown part of the file /php/manage_supplier.php?action=search. The manipulation of the argument text leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

CVSS vector

CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:L/VI:L/VA:L/SC:N/SI:N/SA:N

🔴Vulnerability Details

3
GHSA
Gogs XSS allowed by stored call in PDF renderer2025-06-26
GHSA
GHSA-74q3-7j69-pcjv: A vulnerability classified as critical has been found in code-projects Pharmacy Management System 12024-10-16
CVEList
code-projects Pharmacy Management System manage_supplier.php sql injection2024-10-16
CVE-2024-10022 (MEDIUM CVSS 5.3) | A vulnerability classified as criti | cvebase.io