Vulnerabilities (CVE)

Filtered by vendor Insurance Management System Project Subscribe
Total 8 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-7080 1 Insurance Management System Project 1 Insurance Management System 2024-07-26 5.0 MEDIUM 7.5 HIGH
A vulnerability was found in SourceCodester Insurance Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /E-Insurance/. The manipulation leads to direct request. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-272365 was assigned to this vulnerability.
CVE-2024-7068 1 Insurance Management System Project 1 Insurance Management System 2024-07-25 4.0 MEDIUM 4.6 MEDIUM
A vulnerability classified as problematic has been found in SourceCodester Insurance Management System 1.0. This affects an unknown part of the file /Script/admin/core/update_sub_category. The manipulation of the argument name leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-272349 was assigned to this vulnerability.
CVE-2022-30002 1 Insurance Management System Project 1 Insurance Management System 2022-05-21 6.5 MEDIUM 7.2 HIGH
Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/editNominee.php?nominee_id=.
CVE-2022-29998 1 Insurance Management System Project 1 Insurance Management System 2022-05-19 7.5 HIGH 9.8 CRITICAL
Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/clientStatus.php?client_id=.
CVE-2022-29999 1 Insurance Management System Project 1 Insurance Management System 2022-05-19 7.5 HIGH 9.8 CRITICAL
Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/editClient.php?client_id=.
CVE-2022-30000 1 Insurance Management System Project 1 Insurance Management System 2022-05-19 7.5 HIGH 9.8 CRITICAL
Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/editPayment.php?recipt_no=.
CVE-2022-30001 1 Insurance Management System Project 1 Insurance Management System 2022-05-19 7.5 HIGH 9.8 CRITICAL
Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/editAgent.php?agent_id=.
CVE-2022-27124 1 Insurance Management System Project 1 Insurance Management System 2022-04-12 7.5 HIGH 9.8 CRITICAL
Insurance Management System 1.0 was discovered to contain a SQL injection vulnerability via the username parameter.