Oretnom23 CVE Vulnerabilities & CVE List (761)

Products (CPE): — CVEs: 761

Oretnom23 vulnerability overview

Aggregates CVE and security vulnerability intelligence across all Oretnom23-related products, including CVSS, EPSS, publication dates, and vulnerability intelligence data.

Historical issues mainly involve vendor risk input validation, vendor risk csrf, vendor risk path handling, and vendor risk open redirect and related problems; some flaws may lead to vendor impact unexpected behavior.

Vulnerability distribution trend (last 24 months)

Showing 2140 of 761 CVEs
«« First « Prev Page 2 / 39 Next »
CVE Summary Source Max CVSS EPSS % Published Updated
CVE-2026-3752 A flaw has been found in SourceCodester Employee Task Management System up to 1.0. The affected element is an unknown function of the file /daily-task-report.php of the component GET Parameter Handler. This manipulation of the argument Date causes sql injection. It is possible to initiate the attack remotely. The exploit has been published and may be used. [email protected] 2.0 0.31% 2026-03-08 2026-06-17
CVE-2026-3751 A vulnerability was detected in SourceCodester Employee Task Management System 1.0. Impacted is an unknown function of the file /daily-attendance-report.php of the component GET Parameter Handler. The manipulation of the argument Date results in sql injection. The attack may be performed from remote. The exploit is now public and may be used. [email protected] 2.0 0.31% 2026-03-08 2026-06-17
CVE-2026-3746 A vulnerability was determined in SourceCodester Simple Responsive Tourism Website 1.0. Affected by this vulnerability is an unknown functionality of the file /tourism/classes/Login.php?f=login of the component Login. This manipulation of the argument Username causes sql injection. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized. [email protected] 5.5 0.38% 2026-03-08 2026-06-17
CVE-2026-3702 A vulnerability was detected in SourceCodester Loan Management System 1.0. Affected by this issue is some unknown functionality of the file /index.php. Performing a manipulation of the argument page results in cross site scripting. The attack is possible to be carried out remotely. The exploit is now public and may be used. [email protected] 2.1 0.30% 2026-03-08 2026-06-17
CVE-2026-26892 Sourcecodester Logistic Hub Parcel's Management System v1.0 is vulnerable to SQL Injection in /manage_carrier.php. [email protected] 7.2 0.27% 2026-03-03 2026-06-17
CVE-2026-26891 Sourcecodester Logistic Hub Parcel's Management System v1.0 is vulnerable to SQL Injection in /manage_parcel_type.php. [email protected] 2.7 0.30% 2026-03-03 2026-06-17
CVE-2026-26889 Sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/manage_category.php. [email protected] 2.7 0.28% 2026-03-03 2026-06-17
CVE-2026-26888 Sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/manage_stock.php. [email protected] 2.7 0.28% 2026-03-03 2026-06-17
CVE-2026-26887 Sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/manage_supplier.php. [email protected] 2.7 0.28% 2026-03-03 2026-06-17
CVE-2026-26890 Sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/manage_product.php. [email protected] 2.7 0.28% 2026-03-03 2026-06-17
CVE-2026-26886 Sourcecodester Online Men's Salon Management System v1.0 is vulnerable to SQL Injection in /admin/services/manage_service.php. [email protected] 2.7 0.22% 2026-03-03 2026-06-17
CVE-2026-26885 Sourcecodester Online Men's Salon Management System v1.0 is vulnerable to SQL Injection in /classes/Master.php?f=delete_service. [email protected] 2.7 0.22% 2026-03-03 2026-06-17
CVE-2026-26884 Sourcecodester Online Men's Salon Management System v1.0 is vulnerable to SQL Injection in /msms/admin/appointments/view_appointment.php. [email protected] 2.7 0.22% 2026-03-03 2026-06-17
CVE-2026-26883 Sourcecodester Online Men's Salon Management System v1.0 is vulnerable to SQL Injection in /msms/classes/Master.php?f=delete_appointment. [email protected] 2.7 0.22% 2026-03-03 2026-06-17
CVE-2026-26707 sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/view_supplier.php. [email protected] 9.8 0.47% 2026-03-02 2026-06-17
CVE-2026-26706 sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/view_receipt.php. [email protected] 9.8 0.47% 2026-03-02 2026-06-17
CVE-2026-26705 sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/view_product.php. [email protected] 9.8 0.39% 2026-03-02 2026-06-17
CVE-2026-26704 sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/view_category.php. [email protected] 9.8 0.39% 2026-03-02 2026-06-17
CVE-2026-26708 sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/manage_user.php. [email protected] 9.8 0.32% 2026-03-02 2026-06-17
CVE-2026-2848 A flaw has been found in SourceCodester Simple Responsive Tourism Website 1.0. Affected by this vulnerability is an unknown functionality of the file /classes/Master.php?f=register of the component Registration. This manipulation of the argument Username causes sql injection. The attack may be initiated remotely. The exploit has been published and may be used. [email protected] 5.5 0.33% 2026-02-20 2026-06-17
«« First « Prev Page 2 / 39 Next »
cvelogic Threat Intelligence