cbcvebase.

Code-Projects Intern Membership Management System vulnerabilities

15 known vulnerabilities affecting code-projects/intern_membership_management_system.

Total CVEs
15
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL6HIGH7MEDIUM2

Vulnerabilities

Page 1 of 1
CVE-2025-8339P3CRITICALCVSS 9.8v1.02025-07-31
CVE-2025-8339 [CRITICAL] CWE-74 CVE-2025-8339: A vulnerability was found in code-projects Intern Membership Management System 1.0. It has been clas A vulnerability was found in code-projects Intern Membership Management System 1.0. It has been classified as critical. This affects an unknown part of the file /student_login.php. The manipulation of the argument user_name/password leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public an
nvd
CVE-2023-7131P3CRITICALCVSS 9.8v2.02023-12-28
CVE-2023-7131 [CRITICAL] CWE-89 CVE-2023-7131: A vulnerability was found in code-projects Intern Membership Management System 2.0 and classified as A vulnerability was found in code-projects Intern Membership Management System 2.0 and classified as critical. Affected by this issue is some unknown functionality of the file /user_registration/ of the component User Registration. The manipulation of the argument userName leads to sql injection. The exploit has been disclosed to the public and may b
nvd
CVE-2025-8495P3CRITICALCVSS 9.8v1.02025-08-03
CVE-2025-8495 [CRITICAL] CWE-74 CVE-2025-8495: A vulnerability, which was classified as critical, was found in code-projects Intern Membership Mana A vulnerability, which was classified as critical, was found in code-projects Intern Membership Management System 1.0. Affected is an unknown function of the file /admin/edit_admin_query.php. The manipulation of the argument Username leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and
nvd
CVE-2025-8494P3CRITICALCVSS 9.8v1.02025-08-03
CVE-2025-8494 [CRITICAL] CWE-74 CVE-2025-8494: A vulnerability, which was classified as critical, has been found in code-projects Intern Membership A vulnerability, which was classified as critical, has been found in code-projects Intern Membership Management System 1.0. This issue affects some unknown processing of the file /admin/delete_student.php. The manipulation of the argument ID leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and
nvd
CVE-2025-8493P3CRITICALCVSS 9.8v1.02025-08-02
CVE-2025-8493 [CRITICAL] CWE-74 CVE-2025-8493: A vulnerability classified as critical was found in code-projects Intern Membership Management Syste A vulnerability classified as critical was found in code-projects Intern Membership Management System 1.0. This vulnerability affects unknown code of the file /admin/edit_student_query.php. The manipulation of the argument ID leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2026-0700P3CRITICALCVSS 9.8v1.02026-01-08
CVE-2026-0700 [CRITICAL] CWE-74 CVE-2026-0700: A vulnerability was determined in code-projects Intern Membership Management System 1.0. Affected is A vulnerability was determined in code-projects Intern Membership Management System 1.0. Affected is an unknown function of the file /intern/admin/check_admin.php. Executing a manipulation of the argument Username can lead to sql injection. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized.
nvd
CVE-2026-0728P3HIGHCVSS 7.2v1.02026-01-08
CVE-2026-0728 [HIGH] CWE-74 CVE-2026-0728: A security vulnerability has been detected in code-projects Intern Membership Management System 1.0. A security vulnerability has been detected in code-projects Intern Membership Management System 1.0. This issue affects some unknown processing of the file /intern/admin/delete_admin.php. Such manipulation of the argument admin_id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed publicly and may be used.
nvd
CVE-2026-0698P3HIGHCVSS 7.2v1.02026-01-08
CVE-2026-0698 [HIGH] CWE-74 CVE-2026-0698: A vulnerability has been found in code-projects Intern Membership Management System 1.0. This affect A vulnerability has been found in code-projects Intern Membership Management System 1.0. This affects an unknown function of the file /intern/admin/edit_students.php. Such manipulation of the argument admin_id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
nvd
CVE-2026-0701P3HIGHCVSS 7.2v1.02026-01-08
CVE-2026-0701 [HIGH] CWE-74 CVE-2026-0701: A vulnerability was identified in code-projects Intern Membership Management System 1.0. Affected by A vulnerability was identified in code-projects Intern Membership Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /intern/admin/add_admin.php. The manipulation of the argument Username leads to sql injection. The attack is possible to be carried out remotely. The exploit is publicly available and might be use
nvd
CVE-2026-0850P3HIGHCVSS 7.2v1.02026-01-11
CVE-2026-0850 [HIGH] CWE-74 CVE-2026-0850: A vulnerability was determined in code-projects Intern Membership Management System 1.0. Impacted is A vulnerability was determined in code-projects Intern Membership Management System 1.0. Impacted is an unknown function of the file /admin/delete_activity.php. Executing a manipulation of the argument activity_id can lead to sql injection. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized.
nvd
CVE-2026-0699P3HIGHCVSS 7.2v1.02026-01-08
CVE-2026-0699 [HIGH] CWE-74 CVE-2026-0699: A vulnerability was found in code-projects Intern Membership Management System 1.0. This impacts an A vulnerability was found in code-projects Intern Membership Management System 1.0. This impacts an unknown function of the file /intern/admin/edit_activity.php. Performing a manipulation of the argument activity_id results in sql injection. Remote exploitation of the attack is possible. The exploit has been made public and could be used.
nvd
CVE-2026-0729P3HIGHCVSS 7.2v1.02026-01-08
CVE-2026-0729 [HIGH] CWE-74 CVE-2026-0729: A vulnerability was detected in code-projects Intern Membership Management System 1.0. Impacted is a A vulnerability was detected in code-projects Intern Membership Management System 1.0. Impacted is an unknown function of the file /intern/admin/add_activity.php. Performing a manipulation of the argument Title results in sql injection. Remote exploitation of the attack is possible. The exploit is now public and may be used.
nvd
CVE-2026-0697P3HIGHCVSS 7.2v1.02026-01-08
CVE-2026-0697 [HIGH] CWE-74 CVE-2026-0697: A flaw has been found in code-projects Intern Membership Management System 1.0. The impacted element A flaw has been found in code-projects Intern Membership Management System 1.0. The impacted element is an unknown function of the file /intern/admin/edit_admin.php. This manipulation of the argument admin_id causes sql injection. The attack may be initiated remotely. The exploit has been published and may be used.
nvd
CVE-2025-8340P4MEDIUMCVSS 6.1v1.02025-07-31
CVE-2025-8340 [MEDIUM] CWE-79 CVE-2025-8340: A vulnerability was found in code-projects Intern Membership Management System 1.0. It has been decl A vulnerability was found in code-projects Intern Membership Management System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file fill_details.php of the component Error Message Handler. The manipulation of the argument email leads to cross site scripting. The attack can be initiated remotely. The exploit has
nvd
CVE-2023-7132P4MEDIUMCVSS 5.4v2.02023-12-28
CVE-2023-7132 [MEDIUM] CWE-79 CVE-2023-7132: A vulnerability was found in code-projects Intern Membership Management System 2.0. It has been clas A vulnerability was found in code-projects Intern Membership Management System 2.0. It has been classified as problematic. This affects an unknown part of the file /user_registration/ of the component User Registration. The manipulation of the argument userName/firstName/lastName/userEmail with the input ">confirm(document.domain)h0la leads to cross si
nvd
Code-Projects Intern Membership Management System vulnerabilities | cvebase