
CVE-2024-8345 – SourceCodester Music Gallery Site Users.php sql injection
https://notcve.org/view.php?id=CVE-2024-8345
30 Aug 2024 — A vulnerability was found in SourceCodester Music Gallery Site 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /classes/Users.php?f=delete. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. • https://github.com/GAO-UNO/cve/blob/main/sql3.md • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •

CVE-2024-8336 – SourceCodester Music Gallery Site Master.php sql injection
https://notcve.org/view.php?id=CVE-2024-8336
30 Aug 2024 — A vulnerability classified as critical was found in SourceCodester Music Gallery Site 1.0. Affected by this vulnerability is an unknown functionality of the file /php-music/classes/Master.php?f=delete_music. The manipulation of the argument id leads to sql injection. The attack can be launched remotely. • https://github.com/LiuHaoBin6/cve/blob/main/sql5.md • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •

CVE-2024-8223 – SourceCodester Music Gallery Site Master.php sql injection
https://notcve.org/view.php?id=CVE-2024-8223
27 Aug 2024 — A vulnerability classified as critical was found in SourceCodester Music Gallery Site 1.0. This vulnerability affects unknown code of the file /classes/Master.php?f=delete_category. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. • https://github.com/LiuHaoBin6/cve/blob/main/sql4.md • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •

CVE-2024-8222 – SourceCodester Music Gallery Site sql injection
https://notcve.org/view.php?id=CVE-2024-8222
27 Aug 2024 — A vulnerability classified as critical has been found in SourceCodester Music Gallery Site 1.0. This affects an unknown part of the file /admin/?page=musics/manage_music. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. • https://github.com/LiuHaoBin6/cve/blob/main/sql3.md • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •

CVE-2024-8221 – SourceCodester Music Gallery Site manage_category.php sql injection
https://notcve.org/view.php?id=CVE-2024-8221
27 Aug 2024 — A vulnerability was found in SourceCodester Music Gallery Site 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /admin/categories/manage_category.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. • https://github.com/LiuHaoBin6/cve/blob/main/sql.md • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •

CVE-2024-2930 – SourceCodester Music Gallery Site unrestricted upload
https://notcve.org/view.php?id=CVE-2024-2930
26 Mar 2024 — A vulnerability was found in SourceCodester Music Gallery Site 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file classes/Master.php?f=save_music. The manipulation leads to unrestricted upload. • https://github.com/xuanluansec/vul/blob/main/vul/Music%20Gallery%20Site%20using%20PHP%20and%20MySQL%20Database%20Free%20Source%20Code/Music%20Gallery%20Site%20using%20PHP%20and%20MySQL%20Database%20Free%20Source%20Code.md • CWE-434: Unrestricted Upload of File with Dangerous Type •