Vulnerabilities > Oretnom23

DATE CVE VULNERABILITY TITLE RISK
2022-08-16 CVE-2022-36242 SQL Injection vulnerability in Oretnom23 Clinic'S Patient Management System 1.0
Clinic's Patient Management System v1.0 is vulnerable to SQL Injection via /pms/update_medicine.php?id=.
network
low complexity
oretnom23 CWE-89
critical
9.8
2022-08-10 CVE-2022-36270 Unspecified vulnerability in Oretnom23 Clinic'S Patient Management System 1.0
Clinic's Patient Management System v1.0 has arbitrary code execution via url: ip/pms/users.php.
network
low complexity
oretnom23
critical
9.8
2022-08-10 CVE-2022-36750 SQL Injection vulnerability in Oretnom23 Clinic'S Patient Management System 1.0
Clinic's Patient Management System v1.0 is vulnerable to SQL injection via /pms/update_user.php?id=.
network
low complexity
oretnom23 CWE-89
critical
9.8
2022-07-26 CVE-2022-34067 SQL Injection vulnerability in Oretnom23 Warehouse Management System 1.0
Warehouse Management System v1.0 was discovered to contain a SQL injection vulnerability via the cari parameter.
network
low complexity
oretnom23 CWE-89
7.5
2022-07-12 CVE-2022-2297 Unrestricted Upload of File with Dangerous Type vulnerability in Oretnom23 Clinic'S Patient Management System 2.0
A vulnerability, which was classified as critical, was found in SourceCodester Clinics Patient Management System 2.0.
network
low complexity
oretnom23 CWE-434
8.8
2022-07-12 CVE-2022-2298 SQL Injection vulnerability in Oretnom23 Clinic'S Patient Management System 2.0
A vulnerability has been found in SourceCodester Clinics Patient Management System 2.0 and classified as critical.
network
low complexity
oretnom23 CWE-89
critical
9.8
2022-05-24 CVE-2022-30837 Cross-site Scripting vulnerability in Oretnom23 Toll TAX Management System 1.0
Toll-tax-management-system v1.0 is vulnerable to Cross Site Scripting (XSS) via /ttms/classes/Master.php?f=save_recipient, vehicle_name.
network
low complexity
oretnom23 CWE-79
5.4
2022-05-17 CVE-2022-30053 SQL Injection vulnerability in Oretnom23 Toll TAX Management System 1.0
In Toll Tax Management System 1.0, the id parameter appears to be vulnerable to SQL injection attacks.
network
low complexity
oretnom23 CWE-89
critical
9.8
2022-03-21 CVE-2022-26283 SQL Injection vulnerability in Oretnom23 Simple Subscription Website 1.0
Simple Subscription Website v1.0 was discovered to contain a SQL injection vulnerability via the id parameter in the view_plan endpoint.
network
low complexity
oretnom23 CWE-89
critical
9.8
2022-01-28 CVE-2021-45435 SQL Injection vulnerability in Oretnom23 Simple Cold Storage Management System 1.0
An SQL Injection vulnerability exists in Sourcecodester Simple Cold Storage Management System using PHP/OOP 1.0 via the username field in login.php.
network
low complexity
oretnom23 CWE-89
critical
9.8