Sanitization Management System Project Sanitization Management System vulnerabilities

26 known vulnerabilities affecting sanitization_management_system_project/sanitization_management_system.

Total CVEs
26
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
CRITICAL5HIGH15MEDIUM6

Vulnerabilities

Page 1 of 2
CVE-2022-44137HIGHCVSS 7.2v1.02022-12-30
CVE-2022-44137 [HIGH] CWE-89 CVE-2022-44137: SourceCodester Sanitization Management System 1.0 is vulnerable to SQL Injection. SourceCodester Sanitization Management System 1.0 is vulnerable to SQL Injection.
nvd
CVE-2022-4726CRITICALCVSS 9.8v1.02022-12-27
CVE-2022-4726 [MEDIUM] CWE-707 CVE-2022-4726: A vulnerability classified as critical was found in SourceCodester Sanitization Management System 1. A vulnerability classified as critical was found in SourceCodester Sanitization Management System 1.0. Affected by this vulnerability is an unknown functionality of the component Admin Login. The manipulation of the argument username/password leads to sql injection. The attack can be launched remotely. The associated identifier of this vulnerability i
nvd
CVE-2022-44393HIGHCVSS 7.2v1.02022-12-07
CVE-2022-44393 [HIGH] CWE-89 CVE-2022-44393: Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/?page=services Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/?page=services/view_service&id=.
nvd
CVE-2022-44345HIGHCVSS 7.2v1.02022-12-02
CVE-2022-44345 [HIGH] CWE-89 CVE-2022-44345: Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/?page=quotes/v Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/?page=quotes/view_quote&id=.
nvd
CVE-2022-44347HIGHCVSS 7.2v1.02022-12-02
CVE-2022-44347 [HIGH] CWE-89 CVE-2022-44347: Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/?page=inquirie Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/?page=inquiries/view_inquiry&id=.
nvd
CVE-2022-44348HIGHCVSS 7.2v1.02022-12-02
CVE-2022-44348 [HIGH] CWE-89 CVE-2022-44348: Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/orders/update_ Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/orders/update_status.php?id=.
nvd
CVE-2022-44277HIGHCVSS 7.2v1.02022-12-02
CVE-2022-44277 [HIGH] CWE-89 CVE-2022-44277: Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/classes/Master.php?f Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/classes/Master.php?f=delete_product.
nvd
CVE-2022-44151CRITICALCVSS 9.8v1.02022-11-30
CVE-2022-44151 [CRITICAL] CWE-89 CVE-2022-44151: Simple Inventory Management System v1.0 is vulnerable to SQL Injection via /ims/login.php. Simple Inventory Management System v1.0 is vulnerable to SQL Injection via /ims/login.php.
nvd
CVE-2022-44096CRITICALCVSS 9.8v1.02022-11-30
CVE-2022-44096 [CRITICAL] CWE-798 CVE-2022-44096: Sanitization Management System v1.0 was discovered to contain hardcoded credentials which allows att Sanitization Management System v1.0 was discovered to contain hardcoded credentials which allows attackers to escalate privileges and access the admin panel.
nvd
CVE-2022-44296HIGHCVSS 7.2v1.02022-11-30
CVE-2022-44296 [HIGH] CWE-89 CVE-2022-44296: Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/quotes/manage_ Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/quotes/manage_remark.php?id=.
nvd
CVE-2022-44295HIGHCVSS 7.2v1.02022-11-30
CVE-2022-44295 [HIGH] CWE-89 CVE-2022-44295: Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/orders/assign_ Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/orders/assign_team.php?id=.
nvd
CVE-2022-44294HIGHCVSS 7.2v1.02022-11-30
CVE-2022-44294 [HIGH] CWE-89 CVE-2022-44294: Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/?page=services Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/?page=services/manage_service&id=.
nvd
CVE-2022-45214MEDIUMCVSS 6.1v1.02022-11-28
CVE-2022-45214 [MEDIUM] CWE-79 CVE-2022-45214: A cross-site scripting (XSS) vulnerability in Sanitization Management System v1.0.0 allows attackers A cross-site scripting (XSS) vulnerability in Sanitization Management System v1.0.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the username parameter at /php-sms/classes/Login.php.
nvd
CVE-2022-44278HIGHCVSS 7.2v1.02022-11-23
CVE-2022-44278 [HIGH] CWE-89 CVE-2022-44278: Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/?page=user/man Sanitization Management System v1.0 is vulnerable to SQL Injection via /php-sms/admin/?page=user/manage_user&id=.
nvd
CVE-2022-43352HIGHCVSS 7.2v1.02022-11-07
CVE-2022-43352 [HIGH] CWE-89 CVE-2022-43352: Sanitization Management System v1.0 was discovered to contain a SQL injection vulnerability via the Sanitization Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /php-sms/classes/Master.php?f=delete_quote.
nvd
CVE-2022-43350HIGHCVSS 7.2v1.02022-11-07
CVE-2022-43350 [HIGH] CWE-89 CVE-2022-43350: Sanitization Management System v1.0 was discovered to contain a SQL injection vulnerability via the Sanitization Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /php-sms/classes/Master.php?f=delete_inquiry.
nvd
CVE-2022-43351MEDIUMCVSS 6.5v1.02022-11-07
CVE-2022-43351 [MEDIUM] CVE-2022-43351: Sanitization Management System v1.0 was discovered to contain an arbitrary file deletion vulnerabili Sanitization Management System v1.0 was discovered to contain an arbitrary file deletion vulnerability via the component /classes/Master.php?f=delete_img.
nvd
CVE-2022-3868CRITICALCVSS 9.8v1.02022-11-05
CVE-2022-3868 [MEDIUM] CWE-707 CVE-2022-3868: A vulnerability classified as critical has been found in SourceCodester Sanitization Management Syst A vulnerability classified as critical has been found in SourceCodester Sanitization Management System. Affected is an unknown function of the file /php-sms/classes/Master.php?f=save_quote. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be u
nvd
CVE-2022-43353HIGHCVSS 7.2v1.02022-11-01
CVE-2022-43353 [HIGH] CWE-89 CVE-2022-43353: Sanitization Management System v1.0 was discovered to contain a SQL injection vulnerability via the Sanitization Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/?page=orders/view_order.
nvd
CVE-2022-43354HIGHCVSS 7.2v1.02022-11-01
CVE-2022-43354 [HIGH] CWE-89 CVE-2022-43354: Sanitization Management System v1.0 was discovered to contain a SQL injection vulnerability via the Sanitization Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/?page=orders/manage_request.
nvd