VendorsRemsleads_manager_toolall versions
Vulnerabilities

Rems Leads Manager Tool

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

4CVEs
CVE-2024-7643
SourceCodester Leads Manager Tool Delete Leads delete-leads.php sql injection
Published 2024-08-09 · Analyzed
9.8EPSS 0.009
CVE-2025-63716
The SourceCodester Leads Manager Tool v1.0 is vulnerable to Cross-Site Request Forgery (CSRF) attacks that allow unauthorized state-changing operations. The application lacks CSRF protection mechanisms such as anti-CSRF tokens or same-origin verification for critical endpoints.
Published 2025-11-07 · Analyzed
6.5EPSS 0.001
CVE-2024-7644
SourceCodester Leads Manager Tool Add Leads add-leads.php cross site scripting
Published 2024-08-09 · Modified
5.4EPSS 0.007
CVE-2024-7942
SourceCodester Leads Manager Tool update-leads.php cross site scripting
Published 2024-08-20 · Analyzed
5.4EPSS 0.004