Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Fairy1891

#20220of 53,633
12.8Total CVSS
Vulnerabilities · 2
Medium
2
PT-2022-4941
6.5
2022-09-26
Sourcecodester · Sourcecodester Food Ordering Management System · CVE-2022-3332
**Name of the Vulnerable Software and Affected Versions** SourceCodester Food Ordering Management System (affected versions not specified) **Description** The issue is related to insufficient cleaning of special elements when handling the `username` parameter in the router.php component of the POST Parameter Handler. This can allow a remote attacker to execute arbitrary SQL code, leading to SQL injection. The manipulation of the `username` argument is the key to initiating the attack remotely. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2022-18252
6.3
2022-08-09
Sourcecodester · Sourcecodester Employee Management System · CVE-2022-2715
**Name of the Vulnerable Software and Affected Versions** SourceCodester Employee Management System (affected versions not specified) **Description** A critical vulnerability has been found in the SourceCodester Employee Management System. This issue affects the file eloginwel.php and is related to the manipulation of the `id` argument, which leads to SQL injection. The attack can be initiated remotely. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.