Vulnerabilidades em SourceCodester

2.005 resultados
Análise Vexday

Com 1.829 CVEs catalogadas e 132 surgidas apenas nos últimos 90 dias, o volume de vulnerabilidades associadas ao SourceCodester reflete um ritmo elevado de descobertas recentes que exige atenção contínua. A taxa de exploração ativa está abaixo da média geral do catálogo, sem registros no CISA KEV, o que pode indicar menor visibilidade dos ativos em ambientes críticos, mas não reduz o risco potencial dado que 143 falhas já possuem PoC pública disponível. O tipo de falha mais comum é CWE-89 (SQL Injection), uma classe de vulnerabilidade com longa tradição de abuso e baixo custo de exploração. A CVE mais perigosa identificada atualmente é CVE-2022-4855, com score EPSS de 0,2646, sugerindo probabilidade não negligenciável de exploração e recomendando priorização imediata em processos de remediação.

CVE-2025-2602MEDIUMSourceCodester Kortex Lite Advocate Office Management System deactivate_reg.php sql injectionEPSS 0.4%CVE-2025-2601MEDIUMSourceCodester Kortex Lite Advocate Office Management System activate_reg.php sql injectionEPSS 0.4%CVE-2025-5712MEDIUMSourceCodester Open Source Clinic Management System appointment.php sql injectionEPSS 0.4%CVE-2024-8172MEDIUMSourceCodester QR Code Attendance System delete-student.php cross site scriptingEPSS 0.4%CVE-2022-3458MEDIUMSourceCodester Human Resource Management System Image File employeeview.php unrestricted uploadEPSS 0.4%CVE-2023-5814MEDIUMSourceCodester Task Reminder System sql injectionEPSS 0.4%CVE-2025-5758MEDIUMSourceCodester Open Source Clinic Management System doctor.php sql injectionEPSS 0.4%CVE-2025-5755MEDIUMSourceCodester Open Source Clinic Management System email_config.php sql injectionEPSS 0.4%CVE-2022-3496MEDIUMSourceCodester Human Resource Management System Admin Panel employeeadd.php access controlEPSS 0.4%CVE-2023-5813MEDIUMSourceCodester Task Reminder System sql injectionEPSS 0.4%CVE-2024-9297MEDIUMSourceCodester Online Railway Reservation System admin improper authorizationEPSS 0.4%CVE-2025-10595MEDIUMSourceCodester Online Student File Management System delete_user.php sql injectionEPSS 0.4%CVE-2024-9083MEDIUMSourceCodester Employee Management System add-admin.php cross site scriptingEPSS 0.4%CVE-2024-7800MEDIUMSourceCodester Simple Online Bidding System ajax.php sql injectionEPSS 0.4%CVE-2026-2059MEDIUMSourceCodester Medical Center Portal Management System emp_edit1.php sql injectionEPSS 0.4%CVE-2024-10411MEDIUMSourceCodester Online Hotel Reservation System controller.php doCheckout sql injectionEPSS 0.4%CVE-2024-10406MEDIUMSourceCodester Petrol Pump Management Software edit_fuel.php sql injectionEPSS 0.4%CVE-2025-13060MEDIUMSourceCodester Survey Application System view_survey.php sql injectionEPSS 0.4%CVE-2025-12929MEDIUMSourceCodester Survey Application System LoginRegistration.php update_user sql injectionEPSS 0.4%CVE-2025-12208MEDIUMSourceCodester Best House Rental Management System admin_class.php login2 sql injectionEPSS 0.4%