Vulnerabilities (CVE)

Filtered by vendor Purchase Order Management System Project Subscribe
Filtered by product Purchase Order Management System
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-28021 1 Purchase Order Management System Project 1 Purchase Order Management System 2022-04-29 7.5 HIGH 9.8 CRITICAL
Purchase Order Management System v1.0 was discovered to contain a remote code execution (RCE) vulnerability via /purchase_order/admin/?page=user.
CVE-2022-28023 1 Purchase Order Management System Project 1 Purchase Order Management System 2022-04-28 7.5 HIGH 9.8 CRITICAL
Purchase Order Management System v1.0 was discovered to contain a SQL injection vulnerability via /purchase_order/classes/Master.php?f=delete_supplier.
CVE-2022-28022 1 Purchase Order Management System Project 1 Purchase Order Management System 2022-04-28 7.5 HIGH 9.8 CRITICAL
Purchase Order Management System v1.0 was discovered to contain a SQL injection vulnerability via /purchase_order/classes/Master.php?f=delete_item.
CVE-2021-40908 1 Purchase Order Management System Project 1 Purchase Order Management System 2022-01-28 7.5 HIGH 9.8 CRITICAL
SQL injection vulnerability in Login.php in Sourcecodester Purchase Order Management System v1 by oretnom23, allows attackers to execute arbitrary SQL commands via the username parameter.