Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Inventory Management System Project Subscribe
Filtered by product Inventory Management System
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-24233 1 Inventory Management System Project 1 Inventory Management System 2023-02-17 N/A 4.8 MEDIUM
A stored cross-site scripting (XSS) vulnerability in the component /php-inventory-management-system/orders.php?o=add of Inventory Management System v1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Client Name parameter.
CVE-2023-24234 1 Inventory Management System Project 1 Inventory Management System 2023-02-17 N/A 4.8 MEDIUM
A stored cross-site scripting (XSS) vulnerability in the component php-inventory-management-system/brand.php of Inventory Management System v1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Brand Name parameter.
CVE-2023-24232 1 Inventory Management System Project 1 Inventory Management System 2023-02-17 N/A 4.8 MEDIUM
A stored cross-site scripting (XSS) vulnerability in the component /php-inventory-management-system/product.php of Inventory Management System v1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Product Name parameter.
CVE-2023-24231 1 Inventory Management System Project 1 Inventory Management System 2023-02-17 N/A 4.8 MEDIUM
A stored cross-site scripting (XSS) vulnerability in the component /php-inventory-management-system/categories.php of Inventory Management System v1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Categories Name parameter.