Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Simple Task Managing System Project Subscribe
Filtered by product Simple Task Managing System
Total 8 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-40032 1 Simple Task Managing System Project 1 Simple Task Managing System 2023-02-24 N/A 9.8 CRITICAL
SQL Injection vulnerability in Simple Task Managing System version 1.0 in login.php in 'username' and 'password' parameters, allows attackers to execute arbitrary code and gain sensitive information.
CVE-2022-40026 1 Simple Task Managing System Project 1 Simple Task Managing System 2022-09-22 N/A 7.2 HIGH
SourceCodester Simple Task Managing System v1.0 was discovered to contain a SQL injection vulnerability via the bookId parameter at board.php.
CVE-2022-40027 1 Simple Task Managing System Project 1 Simple Task Managing System 2022-09-22 N/A 6.1 MEDIUM
SourceCodester Simple Task Managing System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the component newTask.php. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the shortName parameter.
CVE-2022-40028 1 Simple Task Managing System Project 1 Simple Task Managing System 2022-09-22 N/A 4.8 MEDIUM
SourceCodester Simple Task Managing System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the component newProjectValidation.php. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the fullName parameter.
CVE-2022-40029 1 Simple Task Managing System Project 1 Simple Task Managing System 2022-09-22 N/A 4.8 MEDIUM
SourceCodester Simple Task Managing System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the component newProjectValidation.php. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the shortName parameter.
CVE-2022-40030 1 Simple Task Managing System Project 1 Simple Task Managing System 2022-09-22 N/A 9.8 CRITICAL
SourceCodester Simple Task Managing System v1.0 was discovered to contain a SQL injection vulnerability via the bookId parameter at changeStatus.php.
CVE-2022-3013 1 Simple Task Managing System Project 1 Simple Task Managing System 2022-08-31 N/A 9.8 CRITICAL
A vulnerability classified as critical has been found in SourceCodester Simple Task Managing System. This affects an unknown part of the file /loginVaLidation.php. The manipulation of the argument login leads to sql injection. It is possible to initiate the attack remotely. The associated identifier of this vulnerability is VDB-207423.
CVE-2022-3014 1 Simple Task Managing System Project 1 Simple Task Managing System 2022-08-31 N/A 6.1 MEDIUM
A vulnerability classified as problematic was found in SourceCodester Simple Task Managing System. This vulnerability affects unknown code. The manipulation of the argument student_add leads to cross site scripting. The attack can be initiated remotely. The identifier of this vulnerability is VDB-207424.