Vulnerabilities in SourceCodester

2,005 results
Vexday analysis

Com 1.829 CVEs catalogadas e 132 surgidas apenas nos últimos 90 dias, o volume de vulnerabilidades associadas ao SourceCodester reflete um ritmo elevado de descobertas recentes que exige atenção contínua. A taxa de exploração ativa está abaixo da média geral do catálogo, sem registros no CISA KEV, o que pode indicar menor visibilidade dos ativos em ambientes críticos, mas não reduz o risco potencial dado que 143 falhas já possuem PoC pública disponível. O tipo de falha mais comum é CWE-89 (SQL Injection), uma classe de vulnerabilidade com longa tradição de abuso e baixo custo de exploração. A CVE mais perigosa identificada atualmente é CVE-2022-4855, com score EPSS de 0,2646, sugerindo probabilidade não negligenciável de exploração e recomendando priorização imediata em processos de remediação.

CVE-2023-1037HIGHSourceCodester Dental Clinic Appointment Reservation System POST Parameter login.php sql injectionEPSS 0.9%CVE-2023-0998MEDIUMSourceCodester Alphaware Simple E-Commerce System Payment summary.php access controlEPSS 0.9%CVE-2023-0997HIGHSourceCodester Moosikay E-Commerce System POST Parameter order.php sql injectionEPSS 0.9%CVE-2024-3436MEDIUMSourceCodester Prison Management System Avatar edit-photo.php unrestricted uploadEPSS 0.9%CVE-2023-1559MEDIUMSourceCodester Storage Unit Rental Management System unrestricted uploadEPSS 0.9%CVE-2024-2849MEDIUMSourceCodester Simple File Manager unrestricted uploadEPSS 0.9%CVE-2024-1833MEDIUMSourceCodester Employee Management System login.php sql injectionEPSS 0.9%CVE-2024-3356HIGHSourceCodester Aplaya Beach Resort Online Reservation System sql injectionEPSS 0.9%CVE-2024-3355HIGHSourceCodester Aplaya Beach Resort Online Reservation System sql injectionEPSS 0.9%CVE-2024-3354HIGHSourceCodester Aplaya Beach Resort Online Reservation System index.php sql injectionEPSS 0.9%CVE-2024-3350HIGHSourceCodester Aplaya Beach Resort Online Reservation System index.php sql injectionEPSS 0.9%CVE-2024-3351HIGHSourceCodester Aplaya Beach Resort Online Reservation System index.php sql injectionEPSS 0.9%CVE-2024-3352HIGHSourceCodester Aplaya Beach Resort Online Reservation System index.php sql injectionEPSS 0.9%CVE-2023-1942MEDIUMSourceCodester Online Computer and Laptop Store Avatar unrestricted uploadEPSS 0.9%CVE-2024-7643MEDIUMSourceCodester Leads Manager Tool Delete Leads delete-leads.php sql injectionEPSS 0.9%CVE-2023-1854MEDIUMSourceCodester Online Graduate Tracer System session expirationEPSS 0.9%CVE-2022-2666MEDIUMSourceCodester Loan Management System login.php sql injectionEPSS 0.9%CVE-2023-1392MEDIUMSourceCodester Online Pizza Ordering System save_menu unrestricted uploadEPSS 0.9%CVE-2024-7753MEDIUMSourceCodester Clinics Patient Management System user_images direct requestEPSS 0.9%CVE-2022-2847MEDIUMSourceCodester Guest Management System front.php sql injectionEPSS 0.9%