« Volver al listado

Inventory Management System Project

Inventory Management System Project Inventory Management System: vulnerabilidades y CVE

Inventory Management System Project Inventory Management System tiene 16 vulnerabilidades publicadas, 2 de ellas en los últimos 12 meses. 8 son críticas y 0 figuran en el catálogo de explotación activa de CISA.

CVE16
Últimos 12 meses2
Críticas8
Explotadas activamente0

Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología

Últimas vulnerabilidades

CVESeveridadEPSSExplotación activaPublicadaDescripción
CVE-2023-36338Media (5.3)0.35%—15 dic 2025
Inventory Management System 1 was discovered to contain a SQL injection vulnerability.
CVE-2023-36337Media (6.1)0.22%—15 dic 2025
A reflected cross-site scripting (XSS) vulnerability in the component /index.php/cuzh4 of PHP Inventory Management System 1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.
CVE-2023-4558Crítica (9.8)0.74%—27 ago 2023
A vulnerability classified as critical was found in SourceCodester Inventory Management System 1.0. Affected by this vulnerability is an unknown functionality of the file staff_data.php. The manipulation of the argument…
CVE-2023-4557Crítica (9.8)0.61%—27 ago 2023
A vulnerability classified as critical has been found in SourceCodester Inventory Management System 1.0. Affected is an unknown function of the file app/ajax/search_purchase_paymen_report.php. The manipulation of the…
CVE-2023-4555Media (6.1)0.51%—27 ago 2023
A vulnerability has been found in SourceCodester Inventory Management System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file suppliar_data.php. The manipulation…
CVE-2023-4449Alta (8.8)0.79%—21 ago 2023
A vulnerability was found in SourceCodester Free and Open Source Inventory Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /index.php?page=member. The manipulation…
CVE-2023-4438Crítica (9.8)0.67%—20 ago 2023
A vulnerability has been found in SourceCodester Inventory Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file app/ajax/search_sales_report.php. The…
CVE-2023-4437Crítica (9.8)0.67%—20 ago 2023
A vulnerability, which was classified as critical, was found in SourceCodester Inventory Management System 1.0. Affected is an unknown function of the file app/ajax/search_sell_paymen_report.php. The manipulation of the…
CVE-2023-4436Crítica (9.8)0.74%—20 ago 2023
A vulnerability, which was classified as critical, has been found in SourceCodester Inventory Management System 1.0. This issue affects some unknown processing of the file app/action/edit_update.php. The manipulation of…
CVE-2023-4184Crítica (9.8)0.63%—6 ago 2023
A vulnerability was found in SourceCodester Inventory Management System 1.0 and classified as critical. This issue affects some unknown processing of the file sell_return.php. The manipulation of the argument pid leads…
CVE-2023-4183Crítica (9.8)0.50%—6 ago 2023
A vulnerability has been found in SourceCodester Inventory Management System 1.0 and classified as problematic. This vulnerability affects unknown code of the file edit_update.php of the component Password Handler. The…
CVE-2023-4182Crítica (9.8)0.63%—6 ago 2023
A vulnerability, which was classified as critical, was found in SourceCodester Inventory Management System 1.0. This affects an unknown part of the file edit_sell.php. The manipulation of the argument up_pid leads to…
CVE-2023-24234Media (4.8)0.48%—10 feb 2023
A stored cross-site scripting (XSS) vulnerability in the component php-inventory-management-system/brand.php of Inventory Management System v1 allows attackers to execute arbitrary web scripts or HTML via a crafted…
CVE-2023-24233Media (4.8)0.48%—10 feb 2023
A stored cross-site scripting (XSS) vulnerability in the component /php-inventory-management-system/orders.php?o=add of Inventory Management System v1 allows attackers to execute arbitrary web scripts or HTML via a…
CVE-2023-24232Media (4.8)0.48%—10 feb 2023
A stored cross-site scripting (XSS) vulnerability in the component /php-inventory-management-system/product.php of Inventory Management System v1 allows attackers to execute arbitrary web scripts or HTML via a crafted…
CVE-2023-24231Media (4.8)0.48%—10 feb 2023
A stored cross-site scripting (XSS) vulnerability in the component /php-inventory-management-system/categories.php of Inventory Management System v1 allows attackers to execute arbitrary web scripts or HTML via a…