Filtered by vendor Sourcecodester Subscriptions
Filtered by product Lost And Found Information System Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-37859 1 Sourcecodester 1 Lost And Found Information System 2024-11-21 6.1 Medium
Cross Site Scripting vulnerability in Lost and Found Information System 1.0 allows a remote attacker to escalate privileges via the page parameter to php-lfis/admin/index.php.
CVE-2024-37857 1 Sourcecodester 1 Lost And Found Information System 2024-11-21 8.8 High
SQL Injection vulnerability in Lost and Found Information System 1.0 allows a remote attacker to escalate privileges via id parameter to php-lfis/admin/categories/view_category.php.