Search
Search Results (2 CVEs found)
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2024-40394 | 2 Oretnom23, Sourcecodester | 2 Simple Library Management System, Simple Library Management System | 2025-07-09 | 9.8 Critical |
Simple Library Management System Project Using PHP/MySQL v1.0 was discovered to contain an arbitrary file upload vulnerability via the component ajax.php. | ||||
CVE-2024-40402 | 2 Nikhil-bhalerao, Sourcecodester | 2 Simple Library Management System, Simple Library Management System | 2025-04-23 | 6.3 Medium |
A SQL injection vulnerability was found in 'ajax.php' of Sourcecodester Simple Library Management System 1.0. This vulnerability stems from insufficient user input validation of the 'username' parameter, allowing attackers to inject malicious SQL queries. |
Page 1 of 1.