Filtered by vendor Mayurik
                        
                        Subscribe
                        
                        
                    
                    
                
                    Total
                    251 CVE
                
            | CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 | 
|---|---|---|---|---|---|
| CVE-2025-6583 | 1 Mayurik | 1 Best Salon Management System | 2025-07-02 | 6.5 MEDIUM | 6.3 MEDIUM | 
| A vulnerability, which was classified as critical, was found in SourceCodester Best Salon Management System 1.0. This affects an unknown part of the file /view-appointment.php. The manipulation of the argument viewid leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. | |||||
| CVE-2025-6604 | 1 Mayurik | 1 Best Salon Management System | 2025-07-02 | 6.5 MEDIUM | 6.3 MEDIUM | 
| A vulnerability classified as critical has been found in SourceCodester Best Salon Management System 1.0. This affects an unknown part of the file /panel/add-staff.php. The manipulation of the argument Name leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. | |||||
| CVE-2025-6605 | 1 Mayurik | 1 Best Salon Management System | 2025-07-02 | 6.5 MEDIUM | 6.3 MEDIUM | 
| A vulnerability classified as critical was found in SourceCodester Best Salon Management System 1.0. This vulnerability affects unknown code of the file /panel/edit-staff.php. The manipulation of the argument editid leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. | |||||
| CVE-2025-6606 | 1 Mayurik | 1 Best Salon Management System | 2025-07-02 | 6.5 MEDIUM | 6.3 MEDIUM | 
| A vulnerability, which was classified as critical, has been found in SourceCodester Best Salon Management System 1.0. This issue affects some unknown processing of the file /panel/add-services.php. The manipulation of the argument Type leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. | |||||
| CVE-2025-6607 | 1 Mayurik | 1 Best Salon Management System | 2025-07-02 | 6.5 MEDIUM | 6.3 MEDIUM | 
| A vulnerability, which was classified as critical, was found in SourceCodester Best Salon Management System 1.0. Affected is an unknown function of the file /panel/stock.php. The manipulation of the argument ID leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. | |||||
| CVE-2025-6880 | 1 Mayurik | 1 Best Salon Management System | 2025-07-01 | 6.5 MEDIUM | 6.3 MEDIUM | 
| A vulnerability classified as critical has been found in SourceCodester Best Salon Management System 1.0. Affected is an unknown function of the file /panel/edit-tax.php. The manipulation of the argument editid leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. | |||||
| CVE-2025-6879 | 1 Mayurik | 1 Best Salon Management System | 2025-07-01 | 6.5 MEDIUM | 6.3 MEDIUM | 
| A vulnerability was found in SourceCodester Best Salon Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /panel/add-tax.php. The manipulation of the argument Name leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. | |||||
| CVE-2025-6878 | 1 Mayurik | 1 Best Salon Management System | 2025-07-01 | 6.5 MEDIUM | 6.3 MEDIUM | 
| A vulnerability was found in SourceCodester Best Salon Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /panel/search-appointment.php. The manipulation of the argument searchdata leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. | |||||
| CVE-2025-6877 | 1 Mayurik | 1 Best Salon Management System | 2025-07-01 | 6.5 MEDIUM | 6.3 MEDIUM | 
| A vulnerability was found in SourceCodester Best Salon Management System 1.0. It has been classified as critical. This affects an unknown part of the file /panel/edit-category.php. The manipulation of the argument editid leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. | |||||
| CVE-2025-6876 | 1 Mayurik | 1 Best Salon Management System | 2025-07-01 | 6.5 MEDIUM | 6.3 MEDIUM | 
| A vulnerability was found in SourceCodester Best Salon Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /panel/add-category.php. The manipulation of the argument Name leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. | |||||
| CVE-2025-6875 | 1 Mayurik | 1 Best Salon Management System | 2025-07-01 | 6.5 MEDIUM | 6.3 MEDIUM | 
| A vulnerability has been found in SourceCodester Best Salon Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /panel/edit-subscription.php. The manipulation of the argument editid leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. | |||||
| CVE-2025-6874 | 1 Mayurik | 1 Best Salon Management System | 2025-07-01 | 6.5 MEDIUM | 6.3 MEDIUM | 
| A vulnerability, which was classified as critical, was found in SourceCodester Best Salon Management System 1.0. Affected is an unknown function of the file /panel/add_subscribe.php. The manipulation of the argument user_id/plan_id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. | |||||
| CVE-2025-6860 | 1 Mayurik | 1 Best Salon Management System | 2025-07-01 | 6.5 MEDIUM | 6.3 MEDIUM | 
| A vulnerability was found in SourceCodester Best Salon Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /panel/staff_commision.php. The manipulation of the argument fromdate/todate leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. | |||||
| CVE-2025-6861 | 1 Mayurik | 1 Best Salon Management System | 2025-07-01 | 6.5 MEDIUM | 6.3 MEDIUM | 
| A vulnerability was found in SourceCodester Best Salon Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /panel/add_plan.php. The manipulation of the argument plan_name/description/duration_days/price leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. | |||||
| CVE-2025-6862 | 1 Mayurik | 1 Best Salon Management System | 2025-07-01 | 6.5 MEDIUM | 6.3 MEDIUM | 
| A vulnerability classified as critical has been found in SourceCodester Best Salon Management System 1.0. Affected is an unknown function of the file /panel/edit_plan.php. The manipulation of the argument editid leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. | |||||
| CVE-2023-44755 | 1 Mayurik | 1 Sacco Management System | 2025-06-19 | N/A | 9.8 CRITICAL | 
| Sacco Management system v1.0 was discovered to contain a SQL injection vulnerability via the password parameter at /sacco/ajax.php. | |||||
| CVE-2025-44184 | 1 Mayurik | 1 Best Employee Management System | 2025-05-28 | N/A | 4.8 MEDIUM | 
| SourceCodester Best Employee Management System V1.0 is vulnerable to Cross Site Scripting (XSS) in /admin/profile.php via the website_image, fname, lname, contact, username, and address parameters. | |||||
| CVE-2025-44185 | 1 Mayurik | 1 Best Employee Management System | 2025-05-28 | N/A | 5.4 MEDIUM | 
| SourceCodester Best Employee Management System V1.0 is vulnerable to Cross Site Request Forgery (CSRF) in /admin/change_pass.php via the password parameter. | |||||
| CVE-2025-4728 | 1 Mayurik | 1 Best Online News Portal | 2025-05-27 | 7.5 HIGH | 7.3 HIGH | 
| A vulnerability was found in SourceCodester Best Online News Portal 1.0. It has been classified as critical. Affected is an unknown function of the file /search.php. The manipulation of the argument searchtitle leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. | |||||
| CVE-2025-44186 | 1 Mayurik | 1 Best Employee Management System | 2025-05-27 | N/A | 5.4 MEDIUM | 
| SourceCodester Best Employee Management System 1.0 is vulnerable to Cross Site Request Forgery (CSRF) in /admin/Operation/User.php page. | |||||
