Vulnerabilities > Customer Relationship Management System Project

DATE CVE VULNERABILITY TITLE RISK
2021-11-03 CVE-2021-43130 SQL Injection vulnerability in Customer Relationship Management System Project Customer Relationship Management System 1.0
An SQL Injection vulnerability exists in Sourcecodester Customer Relationship Management System (CRM) 1.0 via the username parameter in customer/login.php.
9.8
2021-10-27 CVE-2021-37221 Unrestricted Upload of File with Dangerous Type vulnerability in Customer Relationship Management System Project Customer Relationship Management System 1.0
A file upload vulnerability exists in Sourcecodester Customer Relationship Management System 1.0 via the account update option & customer create option, which could let a remote malicious user upload an arbitrary php file.
8.8