Vulnerabilities in SourceCodester

2,002 results
Vexday analysis

Com 1.829 CVEs catalogadas e 132 surgidas apenas nos últimos 90 dias, o volume de vulnerabilidades associadas ao SourceCodester reflete um ritmo elevado de descobertas recentes que exige atenção contínua. A taxa de exploração ativa está abaixo da média geral do catálogo, sem registros no CISA KEV, o que pode indicar menor visibilidade dos ativos em ambientes críticos, mas não reduz o risco potencial dado que 143 falhas já possuem PoC pública disponível. O tipo de falha mais comum é CWE-89 (SQL Injection), uma classe de vulnerabilidade com longa tradição de abuso e baixo custo de exploração. A CVE mais perigosa identificada atualmente é CVE-2022-4855, com score EPSS de 0,2646, sugerindo probabilidade não negligenciável de exploração e recomendando priorização imediata em processos de remediação.

CVE-2022-2212MEDIUMSourceCodester Library Management System /card/index.php unrestricted uploadEPSS 1.0%CVE-2022-1101HIGHSourceCodester Royale Event Management System userregister.php improper authenticationEPSS 1.0%CVE-2024-10355MEDIUMSourceCodester Petrol Pump Management Software invoice.php sql injectionEPSS 1.0%CVE-2023-4749MEDIUMSourceCodester Inventory Management System index.php file inclusionEPSS 1.0%CVE-2025-4467MEDIUMSourceCodester Online Student Clearance System edit-admin.php sql injectionEPSS 1.0%CVE-2022-3492MEDIUMSourceCodester Human Resource Management System Profile Photo os command injectionEPSS 1.0%CVE-2024-7843MEDIUMSourceCodester Online Graduate Tracer System exportcs.php information disclosureEPSS 1.0%CVE-2024-7842MEDIUMSourceCodester Online Graduate Tracer System export_it.php information disclosureEPSS 1.0%CVE-2023-1460MEDIUMSourceCodester Online Pizza Ordering System Password Change improper authenticationEPSS 1.0%CVE-2025-3783MEDIUMSourceCodester Web-based Pharmacy Product Management System add-product.php unrestricted uploadEPSS 1.0%CVE-2024-3359HIGHSourceCodester Online Library System login.php sql injectionEPSS 1.0%CVE-2024-3413HIGHSourceCodester Human Resource Information System login_process.php sql injectionEPSS 1.0%CVE-2022-2804MEDIUMSourceCodester Zoo Management System apply_vacancy.php unrestricted uploadEPSS 1.0%CVE-2022-2724MEDIUMSourceCodester Employee Management System aprocess.php sql injectionEPSS 1.0%CVE-2022-2723MEDIUMSourceCodester Employee Management System eprocess.php sql injectionEPSS 1.0%CVE-2022-1084HIGHSourceCodester One Church Management System Session userregister.php improper authenticationEPSS 1.0%CVE-2024-7638MEDIUMSourceCodester Kortex Lite Advocate Office Management System delete_client.php sql injectionEPSS 1.0%CVE-2024-7640MEDIUMSourceCodester Kortex Lite Advocate Office Management System delete_register.php sql injectionEPSS 1.0%CVE-2024-7642MEDIUMSourceCodester Kortex Lite Advocate Office Management System activate_act.php sql injectionEPSS 1.0%CVE-2024-7639MEDIUMSourceCodester Kortex Lite Advocate Office Management System delete_act.php sql injectionEPSS 1.0%