Sourcecodester Bank Management System vulnerabilities
2 known vulnerabilities affecting sourcecodester/bank_management_system.
Total CVEs
2
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH1MEDIUM1
Vulnerabilities
Page 1 of 1
CVE-2022-2086P2HIGHCVSS 8.8v1.02022-06-15
CVE-2022-2086 [HIGH] CWE-89 CVE-2022-2086: A vulnerability, which was classified as critical, has been found in SourceCodester Bank Management
A vulnerability, which was classified as critical, has been found in SourceCodester Bank Management System 1.0. Affected by this issue is login.php. The manipulation of the argument password with the input 1'and 1=2 union select 1,sleep(10),3,4,5 --+ leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public
nvd
CVE-2022-2087P4MEDIUMCVSS 4.8v1.02022-06-15
CVE-2022-2087 [MEDIUM] CWE-79 CVE-2022-2087: A vulnerability, which was classified as problematic, was found in SourceCodester Bank Management Sy
A vulnerability, which was classified as problematic, was found in SourceCodester Bank Management System 1.0. This affects the file /mnotice.php?id=2. The manipulation of the argument notice with the input alert(1) leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used
nvd