Vulnerabilities
Vulnerable Software
Phpgurukul:  Security Vulnerabilities
Multiple SQL injection vulnerabilities via the username and password parameters in the Admin panel of Directory Management System v1.0 allows attackers to bypass authentication.
CVSS Score
9.8
EPSS Score
0.874
Published
2022-05-11
Multiple SQL injection vulnerabilities via the username and password parameters in the Admin panel of Dairy Farm Shop Management System v1.0 allows attackers to bypass authentication.
CVSS Score
9.8
EPSS Score
0.925
Published
2022-05-11
Zoo Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via /public_html/apply_vacancy. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.
CVSS Score
9.8
EPSS Score
0.029
Published
2022-04-08
Zoo Management System v1.0 was discovered to contain a SQL injection vulnerability at /public_html/animals via the class_id parameter.
CVSS Score
8.8
EPSS Score
0.003
Published
2022-04-08
Online Shopping Portal v3.1 was discovered to contain multiple time-based SQL injection vulnerabilities via the email and contactno parameters.
CVSS Score
9.8
EPSS Score
0.003
Published
2022-02-18
Hospital Management System v4.0 was discovered to contain a blind SQL injection vulnerability via the register function in func2.php.
CVSS Score
7.5
EPSS Score
0.005
Published
2022-02-15
Dairy Farm Shop Management System v1.0 was discovered to contain hardcoded credentials in the source code which allows attackers access to the control panel if compromised.
CVSS Score
9.8
EPSS Score
0.009
Published
2022-02-11
Hospital Management System v4.0 was discovered to contain a SQL injection vulnerability in /Hospital-Management-System-master/contact.php via the txtMsg parameters.
CVSS Score
7.5
EPSS Score
0.004
Published
2022-02-10
Hospital Management System v4.0 was discovered to contain a SQL injection vulnerability in /Hospital-Management-System-master/func.php via the email parameter.
CVSS Score
9.8
EPSS Score
0.049
Published
2022-01-31
In Bus Pass Management System v1.0, Directory Listing/Browsing is enabled on the web server which allows an attacker to view the sensitive files of the application, for example: Any file which contains sensitive information of the user or server.
CVSS Score
7.5
EPSS Score
0.003
Published
2021-12-16


Contact Us

Shodan ® - All rights reserved