VendorsCode-Projectssimple_admin_panelall versions
Vulnerabilities

Code-Projects Simple Admin Panel

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

14CVEs
CVE-2024-25223
Simple Admin Panel App v1.0 was discovered to contain a SQL injection vulnerability via the orderID parameter at /adminView/viewEachOrder.php.
Published 2024-02-14 · Modified
9.8EPSS 0.006
CVE-2024-12935
code-projects Simple Admin Panel editItemForm.php sql injection
Published 2024-12-26 · Analyzed
9.8EPSS 0.006
CVE-2024-12936
code-projects Simple Admin Panel catDeleteController.php sql injection
Published 2024-12-26 · Analyzed
9.8EPSS 0.006
CVE-2024-12938
code-projects Simple Admin Panel updateOrderStatus.php sql injection
Published 2024-12-26 · Analyzed
9.1EPSS 0.005
CVE-2024-12931
code-projects Simple Admin Panel addCatController.php sql injection
Published 2024-12-26 · Analyzed
8.8EPSS 0.005
CVE-2024-12937
code-projects Simple Admin Panel addVariationController.php sql injection
Published 2024-12-26 · Analyzed
8.8EPSS 0.005
CVE-2024-12928
code-projects Simple Admin Panel sql injection
Published 2024-12-25 · Analyzed
8.8EPSS 0.004
CVE-2024-12934
code-projects Simple Admin Panel updateItemController.php sql injection
Published 2024-12-26 · Analyzed
8.8EPSS 0.004
CVE-2024-25225
A cross-site scripting (XSS) vulnerability in Simple Admin Panel App v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Category Name parameter under the Add Category function.
Published 2024-02-14 · Modified
6.1EPSS 0.004
CVE-2024-25226
A cross-site scripting (XSS) vulnerability in Simple Admin Panel App v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Category Name parameter under the Add Category function.
Published 2024-02-14 · Modified
6.1EPSS 0.004
CVE-2024-12933
code-projects Simple Admin Panel updateItemController.php cross site scripting
Published 2024-12-26 · Analyzed
5.4EPSS 0.004
CVE-2024-25224
A cross-site scripting (XSS) vulnerability in Simple Admin Panel App v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Size Number parameter under the Add Size function.
Published 2024-02-14 · Modified
5.4EPSS 0.004
CVE-2024-12930
code-projects Simple Admin Panel addCatController.php cross site scripting
Published 2024-12-26 · Analyzed
5.3EPSS 0.004
CVE-2024-12932
code-projects Simple Admin Panel addSizeController.php cross site scripting
Published 2024-12-26 · Analyzed
5.3EPSS 0.004