Inventory Management System Project
Inventory Management System Project Inventory Management System: vulnerabilidades y CVE
Inventory Management System Project Inventory Management System tiene 16 vulnerabilidades publicadas, 2 de ellas en los últimos 12 meses. 8 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE16
Últimos 12 meses2
Críticas8
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2023-36338 | Media (5.3) | 0.35% | — | 15 dic 2025 | Inventory Management System 1 was discovered to contain a SQL injection vulnerability. |
| CVE-2023-36337 | Media (6.1) | 0.22% | — | 15 dic 2025 | A reflected cross-site scripting (XSS) vulnerability in the component /index.php/cuzh4 of PHP Inventory Management System 1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload. |
| CVE-2023-4558 | Crítica (9.8) | 0.74% | — | 27 ago 2023 | A vulnerability classified as critical was found in SourceCodester Inventory Management System 1.0. Affected by this vulnerability is an unknown functionality of the file staff_data.php. The manipulation of the argument… |
| CVE-2023-4557 | Crítica (9.8) | 0.61% | — | 27 ago 2023 | A vulnerability classified as critical has been found in SourceCodester Inventory Management System 1.0. Affected is an unknown function of the file app/ajax/search_purchase_paymen_report.php. The manipulation of the… |
| CVE-2023-4555 | Media (6.1) | 0.51% | — | 27 ago 2023 | A vulnerability has been found in SourceCodester Inventory Management System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file suppliar_data.php. The manipulation… |
| CVE-2023-4449 | Alta (8.8) | 0.79% | — | 21 ago 2023 | A vulnerability was found in SourceCodester Free and Open Source Inventory Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /index.php?page=member. The manipulation… |
| CVE-2023-4438 | Crítica (9.8) | 0.67% | — | 20 ago 2023 | A vulnerability has been found in SourceCodester Inventory Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file app/ajax/search_sales_report.php. The… |
| CVE-2023-4437 | Crítica (9.8) | 0.67% | — | 20 ago 2023 | A vulnerability, which was classified as critical, was found in SourceCodester Inventory Management System 1.0. Affected is an unknown function of the file app/ajax/search_sell_paymen_report.php. The manipulation of the… |
| CVE-2023-4436 | Crítica (9.8) | 0.74% | — | 20 ago 2023 | A vulnerability, which was classified as critical, has been found in SourceCodester Inventory Management System 1.0. This issue affects some unknown processing of the file app/action/edit_update.php. The manipulation of… |
| CVE-2023-4184 | Crítica (9.8) | 0.63% | — | 6 ago 2023 | A vulnerability was found in SourceCodester Inventory Management System 1.0 and classified as critical. This issue affects some unknown processing of the file sell_return.php. The manipulation of the argument pid leads… |
| CVE-2023-4183 | Crítica (9.8) | 0.50% | — | 6 ago 2023 | A vulnerability has been found in SourceCodester Inventory Management System 1.0 and classified as problematic. This vulnerability affects unknown code of the file edit_update.php of the component Password Handler. The… |
| CVE-2023-4182 | Crítica (9.8) | 0.63% | — | 6 ago 2023 | A vulnerability, which was classified as critical, was found in SourceCodester Inventory Management System 1.0. This affects an unknown part of the file edit_sell.php. The manipulation of the argument up_pid leads to… |
| CVE-2023-24234 | Media (4.8) | 0.48% | — | 10 feb 2023 | A stored cross-site scripting (XSS) vulnerability in the component php-inventory-management-system/brand.php of Inventory Management System v1 allows attackers to execute arbitrary web scripts or HTML via a crafted… |
| CVE-2023-24233 | Media (4.8) | 0.48% | — | 10 feb 2023 | A stored cross-site scripting (XSS) vulnerability in the component /php-inventory-management-system/orders.php?o=add of Inventory Management System v1 allows attackers to execute arbitrary web scripts or HTML via a… |
| CVE-2023-24232 | Media (4.8) | 0.48% | — | 10 feb 2023 | A stored cross-site scripting (XSS) vulnerability in the component /php-inventory-management-system/product.php of Inventory Management System v1 allows attackers to execute arbitrary web scripts or HTML via a crafted… |
| CVE-2023-24231 | Media (4.8) | 0.48% | — | 10 feb 2023 | A stored cross-site scripting (XSS) vulnerability in the component /php-inventory-management-system/categories.php of Inventory Management System v1 allows attackers to execute arbitrary web scripts or HTML via a… |