Code-Projects Intern Membership Management System vulnerabilities

15 known vulnerabilities affecting code-projects/intern_membership_management_system.

Total CVEs
15
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL1MEDIUM14

Vulnerabilities

Page 1 of 1
CVE-2026-0850MEDIUMCVSS 5.1v1.02026-01-11
CVE-2026-0850 [MEDIUM] CWE-74 CVE-2026-0850: A vulnerability was determined in code-projects Intern Membership Management System 1.0. Impacted is A vulnerability was determined in code-projects Intern Membership Management System 1.0. Impacted is an unknown function of the file /admin/delete_activity.php. Executing a manipulation of the argument activity_id can lead to sql injection. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized.
cvelistv5nvd
CVE-2026-0728MEDIUMCVSS 5.1v1.02026-01-08
CVE-2026-0728 [MEDIUM] CWE-74 CVE-2026-0728: A security vulnerability has been detected in code-projects Intern Membership Management System 1.0. A security vulnerability has been detected in code-projects Intern Membership Management System 1.0. This issue affects some unknown processing of the file /intern/admin/delete_admin.php. Such manipulation of the argument admin_id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed publicly and may be used.
cvelistv5nvd
CVE-2026-0698MEDIUMCVSS 5.1v1.02026-01-08
CVE-2026-0698 [MEDIUM] CWE-74 CVE-2026-0698: A vulnerability has been found in code-projects Intern Membership Management System 1.0. This affect A vulnerability has been found in code-projects Intern Membership Management System 1.0. This affects an unknown function of the file /intern/admin/edit_students.php. Such manipulation of the argument admin_id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.
cvelistv5nvd
CVE-2026-0699MEDIUMCVSS 5.1v1.02026-01-08
CVE-2026-0699 [MEDIUM] CWE-74 CVE-2026-0699: A vulnerability was found in code-projects Intern Membership Management System 1.0. This impacts an A vulnerability was found in code-projects Intern Membership Management System 1.0. This impacts an unknown function of the file /intern/admin/edit_activity.php. Performing a manipulation of the argument activity_id results in sql injection. Remote exploitation of the attack is possible. The exploit has been made public and could be used.
cvelistv5nvd
CVE-2026-0697MEDIUMCVSS 5.1v1.02026-01-08
CVE-2026-0697 [MEDIUM] CWE-74 CVE-2026-0697: A flaw has been found in code-projects Intern Membership Management System 1.0. The impacted element A flaw has been found in code-projects Intern Membership Management System 1.0. The impacted element is an unknown function of the file /intern/admin/edit_admin.php. This manipulation of the argument admin_id causes sql injection. The attack may be initiated remotely. The exploit has been published and may be used.
cvelistv5nvd
CVE-2026-0729MEDIUMCVSS 5.1v1.02026-01-08
CVE-2026-0729 [MEDIUM] CWE-74 CVE-2026-0729: A vulnerability was detected in code-projects Intern Membership Management System 1.0. Impacted is a A vulnerability was detected in code-projects Intern Membership Management System 1.0. Impacted is an unknown function of the file /intern/admin/add_activity.php. Performing a manipulation of the argument Title results in sql injection. Remote exploitation of the attack is possible. The exploit is now public and may be used.
cvelistv5nvd
CVE-2026-0701MEDIUMCVSS 5.1v1.02026-01-08
CVE-2026-0701 [MEDIUM] CWE-74 CVE-2026-0701: A vulnerability was identified in code-projects Intern Membership Management System 1.0. Affected by A vulnerability was identified in code-projects Intern Membership Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /intern/admin/add_admin.php. The manipulation of the argument Username leads to sql injection. The attack is possible to be carried out remotely. The exploit is publicly available and might be u
cvelistv5nvd
CVE-2026-0700MEDIUMCVSS 6.9v1.02026-01-08
CVE-2026-0700 [MEDIUM] CWE-74 CVE-2026-0700: A vulnerability was determined in code-projects Intern Membership Management System 1.0. Affected is A vulnerability was determined in code-projects Intern Membership Management System 1.0. Affected is an unknown function of the file /intern/admin/check_admin.php. Executing a manipulation of the argument Username can lead to sql injection. The attack can be executed remotely. The exploit has been publicly disclosed and may be utilized.
cvelistv5nvd
CVE-2025-8495MEDIUMCVSS 6.9v1.02025-08-03
CVE-2025-8495 [MEDIUM] CWE-74 CVE-2025-8495: A vulnerability, which was classified as critical, was found in code-projects Intern Membership Mana A vulnerability, which was classified as critical, was found in code-projects Intern Membership Management System 1.0. Affected is an unknown function of the file /admin/edit_admin_query.php. The manipulation of the argument Username leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and m
cvelistv5nvd
CVE-2025-8494MEDIUMCVSS 6.9v1.02025-08-03
CVE-2025-8494 [MEDIUM] CWE-74 CVE-2025-8494: A vulnerability, which was classified as critical, has been found in code-projects Intern Membership A vulnerability, which was classified as critical, has been found in code-projects Intern Membership Management System 1.0. This issue affects some unknown processing of the file /admin/delete_student.php. The manipulation of the argument ID leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and m
cvelistv5nvd
CVE-2025-8493MEDIUMCVSS 6.9v1.02025-08-02
CVE-2025-8493 [MEDIUM] CWE-74 CVE-2025-8493: A vulnerability classified as critical was found in code-projects Intern Membership Management Syste A vulnerability classified as critical was found in code-projects Intern Membership Management System 1.0. This vulnerability affects unknown code of the file /admin/edit_student_query.php. The manipulation of the argument ID leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
cvelistv5nvd
CVE-2025-8339MEDIUMCVSS 6.9v1.02025-07-31
CVE-2025-8339 [MEDIUM] CWE-74 CVE-2025-8339: A vulnerability was found in code-projects Intern Membership Management System 1.0. It has been clas A vulnerability was found in code-projects Intern Membership Management System 1.0. It has been classified as critical. This affects an unknown part of the file /student_login.php. The manipulation of the argument user_name/password leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and
cvelistv5nvd
CVE-2025-8340MEDIUMCVSS 5.3v1.02025-07-31
CVE-2025-8340 [MEDIUM] CWE-79 CVE-2025-8340: A vulnerability was found in code-projects Intern Membership Management System 1.0. It has been decl A vulnerability was found in code-projects Intern Membership Management System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file fill_details.php of the component Error Message Handler. The manipulation of the argument email leads to cross site scripting. The attack can be initiated remotely. The exploit has
cvelistv5nvd
CVE-2023-7131CRITICALCVSS 9.8v2.02023-12-28
CVE-2023-7131 [MEDIUM] CWE-89 CVE-2023-7131: A vulnerability was found in code-projects Intern Membership Management System 2.0 and classified as A vulnerability was found in code-projects Intern Membership Management System 2.0 and classified as critical. Affected by this issue is some unknown functionality of the file /user_registration/ of the component User Registration. The manipulation of the argument userName leads to sql injection. The exploit has been disclosed to the public and may be
cvelistv5nvd
CVE-2023-7132MEDIUMCVSS 5.4v2.02023-12-28
CVE-2023-7132 [LOW] CWE-79 CVE-2023-7132: A vulnerability was found in code-projects Intern Membership Management System 2.0. It has been clas A vulnerability was found in code-projects Intern Membership Management System 2.0. It has been classified as problematic. This affects an unknown part of the file /user_registration/ of the component User Registration. The manipulation of the argument userName/firstName/lastName/userEmail with the input ">confirm(document.domain)h0la leads to cross site
cvelistv5nvd