Vulnerabilities > Oretnom23

DATE CVE VULNERABILITY TITLE RISK
2024-03-18 CVE-2024-2570 Unspecified vulnerability in Oretnom23 Employee Task Management System 1.0
A vulnerability was found in SourceCodester Employee Task Management System 1.0.
network
low complexity
oretnom23
critical
9.8
2024-03-17 CVE-2024-2556 Unspecified vulnerability in Oretnom23 Employee Task Management System 1.0
A vulnerability was found in SourceCodester Employee Task Management System 1.0.
network
low complexity
oretnom23
critical
9.8
2024-03-17 CVE-2024-2555 Unspecified vulnerability in Oretnom23 Employee Task Management System 1.0
A vulnerability was found in SourceCodester Employee Task Management System 1.0 and classified as critical.
network
low complexity
oretnom23
7.2
2024-03-17 CVE-2024-2554 Unspecified vulnerability in Oretnom23 Employee Task Management System 1.0
A vulnerability has been found in SourceCodester Employee Task Management System 1.0 and classified as critical.
network
low complexity
oretnom23
8.8
2024-03-09 CVE-2024-2332 Unspecified vulnerability in Oretnom23 Online Mobile Store Management System 1.0
A vulnerability was found in SourceCodester Online Mobile Management Store 1.0.
network
low complexity
oretnom23
7.2
2024-03-06 CVE-2023-33677 SQL Injection vulnerability in Oretnom23 Lost and Found Information System 1.0
Sourcecodester Lost and Found Information System's Version 1.0 is vulnerable to unauthenticated SQL Injection at "?page=items/view&id=*".
network
low complexity
oretnom23 CWE-89
7.5
2024-03-06 CVE-2023-49971 Cross-site Scripting vulnerability in Oretnom23 Customer Support System 1.0
A cross-site scripting (XSS) vulnerability in Customer Support System v1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the firstname parameter at /customer_support/index.php?page=customer_list.
network
low complexity
oretnom23 CWE-79
6.1
2024-03-06 CVE-2023-49973 Cross-site Scripting vulnerability in Oretnom23 Customer Support System 1.0
A cross-site scripting (XSS) vulnerability in Customer Support System v1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the email parameter at /customer_support/index.php?page=customer_list.
network
low complexity
oretnom23 CWE-79
6.1
2024-03-05 CVE-2022-46088 Cross-site Scripting vulnerability in Oretnom23 Online Flight Booking Management System 1.0
Online Flight Booking Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the feedback form.
network
low complexity
oretnom23 CWE-79
6.1
2024-03-04 CVE-2024-2153 Unspecified vulnerability in Oretnom23 Online Mobile Store Management System 1.0
A vulnerability, which was classified as critical, was found in SourceCodester Online Mobile Management Store 1.0.
network
low complexity
oretnom23
critical
9.8