Senior-walter
Senior-walter Web-based Pharmacy Product Management System: vulnerabilidades y CVE
Senior-walter Web-based Pharmacy Product Management System tiene 28 vulnerabilidades publicadas, 8 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE28
Últimos 12 meses8
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2026-30573 | Alta (7.5) | 0.38% | — | 1 abr 2026 | A Business Logic vulnerability exists in SourceCodester Pharmacy Product Management System 1.0. The vulnerability is located in the add-sales.php file. The application fails to validate the "txtprice" and "txttotalcost"… |
| CVE-2026-30576 | Alta (7.5) | 0.38% | — | 27 mar 2026 | A Business Logic vulnerability exists in SourceCodester Pharmacy Product Management System 1.0 in the add-stock.php file. The application fails to validate the "txtprice" and "txttotalcost" parameters during stock… |
| CVE-2026-30575 | Alta (7.5) | 0.49% | — | 27 mar 2026 | A Business Logic vulnerability exists in SourceCodester Pharmacy Product Management System 1.0 in the add-stock.php file. The application fails to validate the "txtqty" parameter during stock entry, allowing negative… |
| CVE-2026-30574 | Alta (7.5) | 0.38% | — | 27 mar 2026 | A Business Logic vulnerability exists in SourceCodester Pharmacy Product Management System 1.0 in the add-sales.php file. The application fails to verify if the requested sales quantity (txtqty) exceeds the available… |
| CVE-2026-3766 | Baja (2) | 0.35% | — | 8 mar 2026 | A security flaw has been discovered in SourceCodester Web-based Pharmacy Product Management System 1.0. This impacts an unknown function of the file edit-profile.php. Performing a manipulation of the argument fullname… |
| CVE-2026-3401 | Baja (1.3) | 0.51% | — | 2 mar 2026 | A weakness has been identified in SourceCodester Web-based Pharmacy Product Management System 1.0. This affects an unknown part. This manipulation causes session expiration. Remote exploitation of the attack is… |
| CVE-2025-65215 | Media (6.1) | 0.22% | — | 2 dic 2025 | Sourcecodester Web-based Pharmacy Product Management System v1.0 is vulnerable to Cross Site Scripting (XSS) in /product_expiry/add-supplier.php via the Supplier Name field. |
| CVE-2025-63712 | Alta (8.8) | 0.21% | — | 10 nov 2025 | Cross-Site Request Forgery (CSRF) in SourceCodester Product Expiry Management System. The User Management module (delete-user.php) allows remote attackers to delete arbitrary user accounts via forged cross-origin GET… |
| CVE-2025-56018 | Media (6.1) | 0.23% | — | 30 sept 2025 | SourceCodester Web-based Pharmacy Product Management System V1.0 is vulnerable to Cross Site Scripting (XSS) in Category Management via the category name field. |
| CVE-2025-56274 | Alta (8.1) | 0.43% | — | 15 sept 2025 | SourceCodester Web-based Pharmacy Product Management System 1.0 is vulnerable to Incorrect Access Control, which allows low-privileged users to forge high privileged (such as admin) sessions and perform sensitive… |
| CVE-2025-45997 | Alta (8.6) | 0.49% | — | 28 may 2025 | Sourcecodester Web-based Pharmacy Product Management System v.1.0 has a file upload vulnerability. An attacker can upload a PHP file disguised as an image by modifying the Content-Type header to image/jpg. |
| CVE-2025-4547 | Media (4.8) | 0.36% | — | 11 may 2025 | A vulnerability was found in SourceCodester Web-based Pharmacy Product Management System 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Add User Page. The… |
| CVE-2025-45751 | Media (6.1) | 0.29% | — | 5 may 2025 | SourceCodester Web Based Pharmacy Product Management System 1.0 is vulnerable to Cross Site Scripting (XSS) in add-admin.php via the Fullname text field. |
| CVE-2025-3826 | Media (4.8) | 0.40% | — | 20 abr 2025 | A vulnerability, which was classified as problematic, was found in SourceCodester Web-based Pharmacy Product Management System 1.0. This affects an unknown part of the file add-supplier.php. The manipulation of the… |
| CVE-2025-3825 | Media (4.8) | 0.40% | — | 20 abr 2025 | A vulnerability, which was classified as problematic, has been found in SourceCodester Web-based Pharmacy Product Management System 1.0. Affected by this issue is some unknown functionality of the file add-category.php.… |
| CVE-2025-3824 | Media (4.8) | 0.40% | — | 20 abr 2025 | A vulnerability classified as problematic was found in SourceCodester Web-based Pharmacy Product Management System 1.0. Affected by this vulnerability is an unknown functionality of the file add-product.php. The… |
| CVE-2025-3823 | Media (4.8) | 0.41% | — | 20 abr 2025 | A vulnerability classified as problematic has been found in SourceCodester Web-based Pharmacy Product Management System 1.0. Affected is an unknown function of the file add-stock.php. The manipulation of the argument… |
| CVE-2025-3822 | Media (4.8) | 0.45% | — | 20 abr 2025 | A vulnerability was found in SourceCodester Web-based Pharmacy Product Management System 1.0. It has been rated as problematic. This issue affects some unknown processing of the file changepassword.php. The manipulation… |
| CVE-2025-3821 | Media (4.8) | 0.38% | — | 20 abr 2025 | A vulnerability was found in SourceCodester Web-based Pharmacy Product Management System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file add-admin.php. The manipulation of… |
| CVE-2025-3783 | Media (5.3) | 0.97% | — | 18 abr 2025 | A vulnerability classified as critical was found in SourceCodester Web-based Pharmacy Product Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /add-product.php. The… |
| CVE-2025-3765 | Media (5.3) | 0.55% | — | 17 abr 2025 | A vulnerability, which was classified as critical, has been found in SourceCodester Web-based Pharmacy Product Management System 1.0. This issue affects some unknown processing of the file /edit-photo.php. The… |
| CVE-2025-3764 | Media (5.3) | 0.55% | — | 17 abr 2025 | A vulnerability classified as critical was found in SourceCodester Web-based Pharmacy Product Management System 1.0. This vulnerability affects unknown code of the file /edit-product.php. The manipulation of the… |
| CVE-2025-3729 | Media (6.9) | 3.3% | — | 16 abr 2025 | A vulnerability, which was classified as critical, has been found in SourceCodester Web-based Pharmacy Product Management System 1.0. This issue affects some unknown processing of the file backup.php of the component… |
| CVE-2025-3697 | Media (5.3) | 0.53% | — | 16 abr 2025 | A vulnerability, which was classified as critical, has been found in SourceCodester Web-based Pharmacy Product Management System 1.0. This issue affects some unknown processing of the file /edit-product.php. The… |
| CVE-2025-3696 | Media (5.3) | 0.53% | — | 16 abr 2025 | A vulnerability classified as critical was found in SourceCodester Web-based Pharmacy Product Management System 1.0. This vulnerability affects unknown code of the file /search/search_stock. php. The manipulation of the… |
| CVE-2025-3694 | Media (6.9) | 0.64% | — | 16 abr 2025 | A vulnerability classified as critical has been found in SourceCodester Web-based Pharmacy Product Management System 1.0. This affects an unknown part of the component Login Handler. The manipulation of the argument… |
| CVE-2025-3383 | Media (6.9) | 0.64% | — | 7 abr 2025 | A vulnerability was found in SourceCodester Web-based Pharmacy Product Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /search/search_sales.php. The manipulation… |
| CVE-2025-3244 | Media (5.3) | 0.56% | — | 4 abr 2025 | A vulnerability was found in SourceCodester Web-based Pharmacy Product Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /add-admin.php of… |
🎯 Cómo se explota (técnicas ATT&CK)
Número de CVE de esta tecnología asignadas a cada técnica de explotación o de impacto principal.