Sourcecodester Online Bank Management System vulnerabilities

6 known vulnerabilities affecting sourcecodester/online_bank_management_system.

Total CVEs
6
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
MEDIUM6

Vulnerabilities

Page 1 of 1
CVE-2025-9473MEDIUMCVSS 6.9v1.02025-08-26
CVE-2025-9473 [MEDIUM] CWE-74 CVE-2025-9473: A security vulnerability has been detected in SourceCodester Online Bank Management System 1.0. This A security vulnerability has been detected in SourceCodester Online Bank Management System 1.0. This impacts an unknown function of the file /feedback.php. The manipulation of the argument msg leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed publicly and may be used.
cvelistv5nvd
CVE-2025-9305MEDIUMCVSS 6.9v1.02025-08-21
CVE-2025-9305 [MEDIUM] CWE-74 CVE-2025-9305: A security vulnerability has been detected in SourceCodester Online Bank Management System 1.0. The A security vulnerability has been detected in SourceCodester Online Bank Management System 1.0. The affected element is an unknown function of the file /bank/mnotice.php. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed publicly and may be used.
cvelistv5nvd
CVE-2025-9304MEDIUMCVSS 6.9v1.02025-08-21
CVE-2025-9304 [MEDIUM] CWE-74 CVE-2025-9304: A weakness has been identified in SourceCodester Online Bank Management System 1.0. Impacted is an u A weakness has been identified in SourceCodester Online Bank Management System 1.0. Impacted is an unknown function of the file /bank/show.php. Executing manipulation of the argument ID can lead to sql injection. The attack may be performed from a remote location. The exploit has been made available to the public and could be exploited.
cvelistv5nvd
CVE-2025-9022MEDIUMCVSS 6.9v1.02025-08-15
CVE-2025-9022 [MEDIUM] CWE-74 CVE-2025-9022: A vulnerability was identified in SourceCodester Online Bank Management System up to 1.0. This issue A vulnerability was identified in SourceCodester Online Bank Management System up to 1.0. This issue affects some unknown processing of the file /bank/statements.php. The manipulation of the argument email leads to sql injection. The attack may be initiated remotely.
cvelistv5nvd
CVE-2025-9021MEDIUMCVSS 6.9v1.02025-08-15
CVE-2025-9021 [MEDIUM] CWE-74 CVE-2025-9021: A vulnerability was determined in SourceCodester Online Bank Management System up to 1.0. This vulne A vulnerability was determined in SourceCodester Online Bank Management System up to 1.0. This vulnerability affects unknown code of the file /bank/transfer.php. The manipulation of the argument email leads to sql injection. The attack can be initiated remotely.
cvelistv5nvd
CVE-2024-8583MEDIUMCVSS 5.3v1.02024-09-08
CVE-2024-8583 [MEDIUM] CWE-79 CVE-2024-8583: A vulnerability was found in SourceCodester Online Bank Management System and Online Bank Management A vulnerability was found in SourceCodester Online Bank Management System and Online Bank Management System - 1.0. It has been classified as problematic. This affects an unknown part of the file /mfeedback.php of the component Feedback Handler. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. The exploit h
cvelistv5nvd