Filtered by vendor Egavilanmedia Subscriptions
Filtered by product Phpcrud Subscriptions
Total 3 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2024-8564 2 Egavilanmedia, Rems 2 Phpcrud, Php Crud 2024-09-10 6.3 Medium
A vulnerability was found in SourceCodester PHP CRUD 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /endpoint/update.php. The manipulation of the argument tbl_person_id/first_name/middle_name/last_name leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
CVE-2024-8563 2 Egavilanmedia, Rems 2 Phpcrud, Php Crud 2024-09-10 3.5 Low
A vulnerability was found in SourceCodester PHP CRUD 1.0. It has been classified as problematic. This affects an unknown part of the file /endpoint/update.php. The manipulation of the argument first_name/middle_name/last_name leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
CVE-2020-36115 2 Egavilanmedia, Microsoft 2 Phpcrud, Windows 2024-08-04 5.4 Medium
Stored Cross Site Scripting (XSS) vulnerability in EGavilan Media CRUD Operation with PHP, MySQL, Bootstrap, and Dompdf via First Name or Last Name parameter in the 'Add New Record Feature'.