VendorsSimple Client Management System Projectsimple_client_management_system1.0
Vulnerabilities

Simple Client Management System Project Simple Client Management System 1.0

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

19CVEs
CVE-2021-43510
SQL Injection vulnerability exists in Sourcecodester Simple Client Management System 1.0 via the username field in login.php.
Published 2022-02-01 · Modified
9.8EPSS 0.075
CVE-2021-43484
A Remote Code Execution (RCE) vulnerability exists in Simple Client Management System 1.0 in create.php due to the failure to validate the extension of the file being sent in a request.
Published 2022-03-31 · Modified
9.8EPSS 0.035
CVE-2022-26285
Simple Subscription Website v1.0 was discovered to contain a SQL injection vulnerability via the id parameter in the apply endpoint. This vulnerability allows attackers to dump the application's database via crafted HTTP requests.
Published 2022-03-21 · Modified
9.8EPSS 0.020
CVE-2022-26284
Simple Client Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter in the manage_client endpoint. This vulnerability allows attackers to dump the application's database via crafted HTTP requests.
Published 2022-03-21 · Modified
9.8EPSS 0.020
CVE-2021-43509
SQL Injection vulnerability exists in Sourcecodester Simple Client Management System 1.0 via the id parameter in view-service.php.
Published 2022-02-01 · Modified
9.8EPSS 0.019
CVE-2022-29984
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/admin/?page=client/view_client&id=.
Published 2022-05-12 · Modified
9.8EPSS 0.016
CVE-2022-29983
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/admin/?page=invoice/view_invoice&id=.
Published 2022-05-12 · Modified
9.8EPSS 0.016
CVE-2022-29748
Simple Client Management System 1.0 is vulnerable to SQL Injection via \cms\admin?page=client/manage_client&id=.
Published 2022-05-12 · Modified
9.8EPSS 0.016
CVE-2022-29982
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/admin/maintenance/manage_service.php?id=.
Published 2022-05-12 · Modified
9.8EPSS 0.016
CVE-2022-29981
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Users.php?f=delete.
Published 2022-05-12 · Modified
9.8EPSS 0.016
CVE-2022-29980
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/admin/?page=user/manage_user&id=.
Published 2022-05-12 · Modified
9.8EPSS 0.016
CVE-2022-29979
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Master.php?f=delete_designation.
Published 2022-05-12 · Modified
9.8EPSS 0.016
CVE-2022-29751
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Master.php?f=delete_client.
Published 2022-05-12 · Modified
9.8EPSS 0.016
CVE-2022-29750
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Master.php?f=delete_service.
Published 2022-05-12 · Modified
9.8EPSS 0.016
CVE-2022-29749
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/classes/Master.php?f=delete_invoice.
Published 2022-05-12 · Modified
9.8EPSS 0.016
CVE-2022-29747
Simple Client Management System 1.0 is vulnerable to SQL Injection via /cms/admin/?page=invoice/manage_invoice&id= // Leak place ---> id.
Published 2022-05-12 · Modified
9.8EPSS 0.016
CVE-2021-43506
An SQL Injection vulnerability exists in Sourcecodester Simple Client Management System 1.0 via the password parameter in Login.php.
Published 2022-03-31 · Modified
9.8EPSS 0.016
CVE-2021-43657
A Stored Cross-site scripting (XSS) vulnerability via MAster.php in Sourcecodetester Simple Client Management System (SCMS) 1.0 allows remote attackers to inject arbitrary web script or HTML via the vulnerable input fields.
Published 2022-12-22 · Modified
5.4EPSS 0.007
CVE-2021-43505
Multiple Cross Site Scripting (XSS) vulnerabilities exist in Ssourcecodester Simple Client Management System v1 via (1) Add new Client and (2) Add new invoice.
Published 2022-03-31 · Modified
5.4EPSS 0.006