Vulnerabilities in SourceCodester

2,005 results
Vexday analysis

Com 1.829 CVEs catalogadas e 132 surgidas apenas nos últimos 90 dias, o volume de vulnerabilidades associadas ao SourceCodester reflete um ritmo elevado de descobertas recentes que exige atenção contínua. A taxa de exploração ativa está abaixo da média geral do catálogo, sem registros no CISA KEV, o que pode indicar menor visibilidade dos ativos em ambientes críticos, mas não reduz o risco potencial dado que 143 falhas já possuem PoC pública disponível. O tipo de falha mais comum é CWE-89 (SQL Injection), uma classe de vulnerabilidade com longa tradição de abuso e baixo custo de exploração. A CVE mais perigosa identificada atualmente é CVE-2022-4855, com score EPSS de 0,2646, sugerindo probabilidade não negligenciável de exploração e recomendando priorização imediata em processos de remediação.

CVE-2023-1351MEDIUMSourceCodester Computer Parts Sales and Inventory System cust_transac.php sql injectionEPSS 0.8%CVE-2023-1856MEDIUMSourceCodester Air Cargo Management System GET Parameter track_shipment.php sql injectionEPSS 0.8%CVE-2023-1848MEDIUMSourceCodester Online Payroll System attendance_row.php sql injectionEPSS 0.8%CVE-2023-1850MEDIUMSourceCodester Online Payroll System login.php sql injectionEPSS 0.8%CVE-2023-1847MEDIUMSourceCodester Online Payroll System attendance.php sql injectionEPSS 0.8%CVE-2023-1846MEDIUMSourceCodester Online Payroll System deduction_row.php sql injectionEPSS 0.8%CVE-2023-1439MEDIUMSourceCodester Medicine Tracker System GET Parameter view_details.php sql injectionEPSS 0.8%CVE-2023-1845MEDIUMSourceCodester Online Payroll System employee_row.php sql injectionEPSS 0.8%CVE-2023-1461MEDIUMSourceCodester Canteen Management System createCategories.php query sql injectionEPSS 0.8%CVE-2024-5116MEDIUMSourceCodester Online Examination System save.php sql injectionEPSS 0.8%CVE-2023-6305MEDIUMSourceCodester Free and Open Source Inventory Management System suppliar_data.php sql injectionEPSS 0.8%CVE-2023-5373HIGHSourceCodester Online Computer and Laptop Store Master.php register sql injectionEPSS 0.8%CVE-2022-2704MEDIUMSourceCodester Simple E-Learning System downloadFiles.php information disclosureEPSS 0.8%CVE-2023-2094MEDIUMSourceCodester Vehicle Service Management System manage_mechanic.php sql injectionEPSS 0.8%CVE-2022-1078HIGHSourceCodester College Website Management System sql injectionEPSS 0.8%CVE-2023-3693HIGHSourceCodester Life Insurance Management System login.php sql injectionEPSS 0.8%CVE-2023-1253HIGHSourceCodester Health Center Patient Record Management System login.php sql injectionEPSS 0.8%CVE-2023-2641HIGHSourceCodester Online Internship Management System POST Parameter login.php sql injectionEPSS 0.8%CVE-2023-1955HIGHSourceCodester Online Computer and Laptop Store User Registration login.php sql injectionEPSS 0.8%CVE-2023-2670MEDIUMSourceCodester Lost and Found Information System access controlEPSS 0.8%