Vulnerabilities in SourceCodester

2,005 results
Vexday analysis

Com 1.829 CVEs catalogadas e 132 surgidas apenas nos últimos 90 dias, o volume de vulnerabilidades associadas ao SourceCodester reflete um ritmo elevado de descobertas recentes que exige atenção contínua. A taxa de exploração ativa está abaixo da média geral do catálogo, sem registros no CISA KEV, o que pode indicar menor visibilidade dos ativos em ambientes críticos, mas não reduz o risco potencial dado que 143 falhas já possuem PoC pública disponível. O tipo de falha mais comum é CWE-89 (SQL Injection), uma classe de vulnerabilidade com longa tradição de abuso e baixo custo de exploração. A CVE mais perigosa identificada atualmente é CVE-2022-4855, com score EPSS de 0,2646, sugerindo probabilidade não negligenciável de exploração e recomendando priorização imediata em processos de remediação.

CVE-2024-1009HIGHSourceCodester Employee Management System login.php sql injectionEPSS 0.8%CVE-2023-1058HIGHSourceCodester Doctors Appointment System create-account.php sql injectionEPSS 0.8%CVE-2024-3423MEDIUMSourceCodester Online Courseware activateteach.php sql injectionEPSS 0.8%CVE-2023-1059MEDIUMSourceCodester Doctors Appointment System Parameter doctors.php sql injectionEPSS 0.8%CVE-2024-3424MEDIUMSourceCodester Online Courseware listscore.php sql injectionEPSS 0.8%CVE-2023-1061MEDIUMSourceCodester Doctors Appointment System edit-doc.php sql injectionEPSS 0.8%CVE-2024-6801MEDIUMSourceCodester Online Student Management System add-students.php unrestricted uploadEPSS 0.8%CVE-2024-3259MEDIUMSourceCodester Internship Portal Management System delete_activity.php sql injectionEPSS 0.8%CVE-2022-3122MEDIUMSourceCodester Clinics Patient Management System medicine_details.php sql injectionEPSS 0.8%CVE-2024-3255MEDIUMSourceCodester Internship Portal Management System edit_admin_query.php sql injectionEPSS 0.8%CVE-2024-3465MEDIUMSourceCodester Laundry Management System Transaki.php laporan_filter sql injectionEPSS 0.8%CVE-2024-3445MEDIUMSourceCodester Laundry Management System laporan_filter sql injectionEPSS 0.8%CVE-2024-3464MEDIUMSourceCodester Laundry Management System Pelanggan.php laporan_filter sql injectionEPSS 0.8%CVE-2024-3419MEDIUMSourceCodester Online Courseware edit.php sql injectionEPSS 0.8%CVE-2024-3425MEDIUMSourceCodester Online Courseware activateall.php sql injectionEPSS 0.8%CVE-2024-3420MEDIUMSourceCodester Online Courseware saveedit.php sql injectionEPSS 0.8%CVE-2024-3417MEDIUMSourceCodester Online Courseware saveeditt.php sql injectionEPSS 0.8%CVE-2023-3383MEDIUMSourceCodester Game Result Matrix System GET Parameter athlete-profile.php sql injectionEPSS 0.8%CVE-2024-1927MEDIUMSourceCodester Web-Based Student Clearance System login.php sql injectionEPSS 0.8%CVE-2023-2823MEDIUMSourceCodester Class Scheduling System GET Parameter edit_subject.php sql injectionEPSS 0.8%