Vulnerabilities > Oretnom23 > Critical

DATE CVE VULNERABILITY TITLE RISK
2023-02-06 CVE-2023-24201 SQL Injection vulnerability in Oretnom23 Raffle Draw System 1.0
Raffle Draw System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at get_ticket.php.
network
low complexity
oretnom23 CWE-89
critical
9.8
2023-02-06 CVE-2023-24202 Unrestricted Upload of File with Dangerous Type vulnerability in Oretnom23 Raffle Draw System 1.0
Raffle Draw System v1.0 was discovered to contain a local file inclusion vulnerability via the page parameter in index.php.
network
low complexity
oretnom23 CWE-434
critical
9.8
2022-12-03 CVE-2022-4273 Unrestricted Upload of File with Dangerous Type vulnerability in Oretnom23 Human Resource Management System 1.0
A vulnerability, which was classified as critical, has been found in SourceCodester Human Resource Management System 1.0.
network
low complexity
oretnom23 CWE-434
critical
9.8
2022-11-16 CVE-2022-43262 SQL Injection vulnerability in Oretnom23 Human Resource Management System 1.0
Human Resource Management System v1.0 was discovered to contain a SQL injection vulnerability via the password parameter at /hrm/controller/login.php.
network
low complexity
oretnom23 CWE-89
critical
9.8
2022-10-31 CVE-2022-40471 Unrestricted Upload of File with Dangerous Type vulnerability in Oretnom23 Clinic'S Patient Management System 1.0
Remote Code Execution in Clinic's Patient Management System v 1.0 allows Attacker to Upload arbitrary php webshell via profile picture upload functionality in users.php
network
low complexity
oretnom23 CWE-434
critical
9.8
2022-10-27 CVE-2022-3714 SQL Injection vulnerability in Oretnom23 Online Medicine Ordering System 1.0
A vulnerability classified as critical has been found in SourceCodester Online Medicine Ordering System 1.0.
network
low complexity
oretnom23 CWE-89
critical
9.8
2022-10-18 CVE-2022-3579 SQL Injection vulnerability in Oretnom23 Cashier Queuing System 1.0
A vulnerability classified as critical was found in SourceCodester Cashier Queuing System 1.0.
network
low complexity
oretnom23 CWE-89
critical
9.8
2022-10-12 CVE-2022-3458 Unrestricted Upload of File with Dangerous Type vulnerability in Oretnom23 Human Resource Management System 1.0
A vulnerability has been found in SourceCodester Human Resource Management System 1.0 and classified as critical.
network
low complexity
oretnom23 CWE-434
critical
9.8
2022-09-05 CVE-2022-3122 SQL Injection vulnerability in Oretnom23 Clinic'S Patient Management System 1.0
A vulnerability was found in SourceCodester Clinics Patient Management System 1.0.
network
low complexity
oretnom23 CWE-89
critical
9.8
2022-09-05 CVE-2022-3120 Unspecified vulnerability in Oretnom23 Clinic'S Patient Management System 1.0
A vulnerability classified as critical was found in SourceCodester Clinics Patient Management System.
network
low complexity
oretnom23
critical
9.8