CVE-2024-6016 – itsourcecode Online Laundry Management System admin_class.php sql injection
https://notcve.org/view.php?id=CVE-2024-6016
A vulnerability, which was classified as critical, has been found in itsourcecode Online Laundry Management System 1.0. Affected by this issue is some unknown functionality of the file admin_class.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. • https://github.com/chenwulin-bit/cve/issues/2 https://vuldb.com/?ctiid.268724 https://vuldb.com/?id.268724 https://vuldb.com/?submit.357463 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •
CVE-2024-6015 – itsourcecode Online House Rental System manage_user.php sql injection
https://notcve.org/view.php?id=CVE-2024-6015
A vulnerability classified as critical was found in itsourcecode Online House Rental System 1.0. Affected by this vulnerability is an unknown functionality of the file manage_user.php. The manipulation of the argument month_of leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. • https://github.com/chenwulin-bit/cve/issues/1 https://vuldb.com/?ctiid.268723 https://vuldb.com/?id.268723 https://vuldb.com/?submit.357462 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •
CVE-2024-6014 – itsourcecode Document Management System edithis.php sql injection
https://notcve.org/view.php?id=CVE-2024-6014
A vulnerability classified as critical has been found in itsourcecode Document Management System 1.0. Affected is an unknown function of the file edithis.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. • https://github.com/gabriel202212/cve/issues/2 https://vuldb.com/?ctiid.268722 https://vuldb.com/?id.268722 https://vuldb.com/?submit.357246 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •
CVE-2024-6013 – itsourcecode Online Book Store admin_delete.php sql injection
https://notcve.org/view.php?id=CVE-2024-6013
A vulnerability was found in itsourcecode Online Book Store 1.0. It has been rated as critical. This issue affects some unknown processing of the file admin_delete.php. The manipulation of the argument bookisbn leads to sql injection. The attack may be initiated remotely. • https://github.com/gabriel202212/cve/issues/1 https://vuldb.com/?ctiid.268721 https://vuldb.com/?id.268721 https://vuldb.com/?submit.357075 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •
CVE-2024-6009 – itsourcecode Event Calendar process.php regDelete sql injection
https://notcve.org/view.php?id=CVE-2024-6009
A vulnerability has been found in itsourcecode Event Calendar 1.0 and classified as critical. Affected by this vulnerability is the function regConfirm/regDelete of the file process.php. The manipulation of the argument userId leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. • https://github.com/AutoZhou1/cve/issues/1 https://vuldb.com/?ctiid.268699 https://vuldb.com/?id.268699 https://vuldb.com/?submit.357243 • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •