VendorsMayuri Kpet_grooming_management_softwareall versions
Vulnerabilities

Mayuri K Pet Grooming Management Software

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

29CVEs
CVE-2025-10801
SourceCodester Pet Grooming Management Software edit_tax.php sql injection
Published 2025-09-22 · Analyzed
9.8EPSS 0.006
CVE-2025-11057
SourceCodester Pet Grooming Management Software print_inv.php sql injection
Published 2025-09-27 · Analyzed
9.8EPSS 0.005
CVE-2025-10836
SourceCodester Pet Grooming Management Software print1.php sql injection
Published 2025-09-23 · Analyzed
9.8EPSS 0.005
CVE-2025-10832
SourceCodester Pet Grooming Management Software fetch_product_details.php sql injection
Published 2025-09-23 · Analyzed
9.8EPSS 0.005
CVE-2025-10688
SourceCodester Pet Grooming Management Software paid.php sql injection
Published 2025-09-18 · Analyzed
9.8EPSS 0.005
CVE-2025-10396
SourceCodester Pet Grooming Management Software edit_role.php sql injection
Published 2025-09-14 · Analyzed
9.8EPSS 0.005
CVE-2025-10598
SourceCodester Pet Grooming Management Software search_product.php sql injection
Published 2025-09-17 · Analyzed
9.8EPSS 0.004
CVE-2025-60316
SourceCodester Pet Grooming Management Software 1.0 is vulnerable to SQL Injection in admin/view_customer.php via the ID parameter.
Published 2025-10-09 · Analyzed
9.4EPSS 0.004
CVE-2025-10840
SourceCodester Pet Grooming Management Software print-payment.php sql injection
Published 2025-09-23 · Analyzed
8.8EPSS 0.005
CVE-2025-10839
SourceCodester Pet Grooming Management Software inv-print.php sql injection
Published 2025-09-23 · Analyzed
8.8EPSS 0.005
CVE-2025-10083
SourceCodester Pet Grooming Management Software profile.php unrestricted upload
Published 2025-09-08 · Analyzed
8.8EPSS 0.004
CVE-2025-10428
SourceCodester Pet Grooming Management Software Setting seo_setting.php unrestricted upload
Published 2025-09-15 · Analyzed
8.8EPSS 0.004
CVE-2025-10427
SourceCodester Pet Grooming Management Software user.php unrestricted upload
Published 2025-09-15 · Analyzed
8.8EPSS 0.004
CVE-2025-10430
SourceCodester Pet Grooming Management Software barcode.php sql injection
Published 2025-09-15 · Analyzed
8.8EPSS 0.004
CVE-2025-10828
SourceCodester Pet Grooming Management Software edit.php sql injection
Published 2025-09-23 · Analyzed
8.8EPSS 0.004
CVE-2025-10429
SourceCodester Pet Grooming Management Software ajax_product.php sql injection
Published 2025-09-15 · Analyzed
8.8EPSS 0.004
CVE-2025-10835
SourceCodester Pet Grooming Management Software view_payorder.php sql injection
Published 2025-09-23 · Analyzed
8.8EPSS 0.004
CVE-2025-10431
SourceCodester Pet Grooming Management Software ajax_represent.php sql injection
Published 2025-09-15 · Analyzed
8.8EPSS 0.004
CVE-2026-1702
SourceCodester Pet Grooming Management Software User Management user.php improper authorization
Published 2026-01-30 · Analyzed
8.8EPSS 0.004
CVE-2025-10085
SourceCodester Pet Grooming Management Software manage_website.php unrestricted upload
Published 2025-09-08 · Analyzed
8.8EPSS 0.004
CVE-2025-63298
A path traversal vulnerability was identified in SourceCodester Pet Grooming Management System 1.0, affecting the admin/manage_website.php component. An authenticated user with administrative privileges can leverage this flaw by submitting a specially crafted POST request, enabling the deletion of arbitrary files on the web server or underlying operating system.
Published 2025-10-30 · Analyzed
8.2EPSS 0.005
CVE-2025-10081
SourceCodester Pet Management System profile.php unrestricted upload
Published 2025-09-08 · Analyzed
7.2EPSS 0.005
CVE-2025-10087
SourceCodester Pet Grooming Management Software profit_report.php sql injection
Published 2025-09-08 · Analyzed
7.2EPSS 0.004
CVE-2026-3737
SourceCodester Pet Grooming Management Software User Creation add_user.php improper authorization
Published 2026-03-08 · Analyzed
6.5EPSS 0.004
CVE-2026-3738
SourceCodester Pet Grooming Management Software Financial Report improper authorization
Published 2026-03-08 · Analyzed
6.5EPSS 0.004
CVE-2025-11051
SourceCodester Pet Grooming Management Software cross-site request forgery
Published 2025-09-27 · Analyzed
6.5EPSS 0.003
CVE-2025-63717
The change password functionality at /pet_grooming/admin/change_pass.php in SourceCodester Pet Grooming Management Software 1.0 is vulnerable to Cross-Site Request Forgery (CSRF) attacks. The application does not implement adequate anti-CSRF tokens or same-site cookie restrictions, allowing attackers to trick authenticated users into unknowingly changing their passwords.
Published 2025-11-07 · Analyzed
6.5EPSS 0.001
CVE-2025-60318
SourceCodester Pet Grooming Management Software 1.0 is vulnerable to Cross Site Scripting (XSS) in /admin/profile.php via the fname (First Name) and lname (Last Name) fields.
Published 2025-10-08 · Analyzed
6.1EPSS 0.002
CVE-2025-61087
SourceCodester Pet Grooming Management Software 1.0 is vulnerable to Cross Site Scripting (XSS) via the Customer Name field under Customer Management Section.
Published 2025-10-02 · Analyzed
6.1EPSS 0.002