Vulnerabilities > Oretnom23

DATE CVE VULNERABILITY TITLE RISK
2023-09-25 CVE-2023-43457 Unspecified vulnerability in Oretnom23 Service Provider Management System 1.0
An issue in Service Provider Management System v.1.0 allows a remote attacker to gain privileges via the ID parameter in the /php-spms/admin/?page=user/ endpoint.
network
low complexity
oretnom23
critical
9.8
2023-09-25 CVE-2023-43456 Cross-site Scripting vulnerability in Oretnom23 Service Provider Management System 1.0
Cross Site Scripting vulnerability in Service Provider Management System v.1.0 allows a remote attacker to execute arbitrary code and obtain sensitive information via the firstname, middlename and lastname parameters in the /php-spms/admin/?page=user endpoint.
network
low complexity
oretnom23 CWE-79
5.4
2023-09-17 CVE-2023-5021 Unspecified vulnerability in Oretnom23 AC Repair and Services System 1.0
A vulnerability, which was classified as problematic, was found in SourceCodester AC Repair and Services System 1.0.
network
low complexity
oretnom23
6.1
2023-09-17 CVE-2023-5018 Unspecified vulnerability in Oretnom23 Lost and Found Information System 1.0
A vulnerability classified as critical has been found in SourceCodester Lost and Found Information System 1.0.
network
low complexity
oretnom23
critical
9.8
2023-08-23 CVE-2023-36317 Cross-site Scripting vulnerability in Oretnom23 Student Study Center Desk Management System 1.0
Cross Site Scripting (XSS) vulnerability in sourcecodester Student Study Center Desk Management System 1.0 allows attackers to run arbitrary code via crafted GET request to web application URL.
network
low complexity
oretnom23 CWE-79
4.8
2023-08-04 CVE-2023-36159 Cross-site Scripting vulnerability in Oretnom23 Lost and Found Information System 1.0
Cross Site Scripting (XSS) vulnerability in sourcecodester Lost and Found Information System 1.0 allows remote attackers to run arbitrary code via the First Name, Middle Name and Last Name fields on the Create User page.
network
low complexity
oretnom23 CWE-79
6.1
2023-07-23 CVE-2023-3850 Unspecified vulnerability in Oretnom23 Lost and Found Information System 1.0
A vulnerability has been found in SourceCodester Lost and Found Information System 1.0 and classified as critical.
network
low complexity
oretnom23
critical
9.8
2023-07-15 CVE-2023-3679 Unspecified vulnerability in Oretnom23 Lost and Found Information System 1.0
A vulnerability was found in SourceCodester Lost and Found Information System 1.0.
network
low complexity
oretnom23
critical
9.8
2023-07-15 CVE-2023-3680 Unspecified vulnerability in Oretnom23 Lost and Found Information System 1.0
A vulnerability classified as critical has been found in SourceCodester Lost and Found Information System 1.0.
network
low complexity
oretnom23
critical
9.8
2023-07-15 CVE-2023-3678 Unspecified vulnerability in Oretnom23 AC Repair and Services System 1.0
A vulnerability was found in SourceCodester AC Repair and Services System 1.0.
network
low complexity
oretnom23
critical
9.8