itsourcecode records
70 published records for vendor itsourcecode.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 4
- With a fix record
- 0%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-74 Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')34
- CWE-89 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')31
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')4
- CWE-434 Unrestricted Upload of File with Dangerous Type1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
70 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
39Monitor | CVE-2024-37849No exploit | A SQL Injection vulnerability in itsourcecode Billing System 1.0 allows a local attacker to execute arbitrary code in process.php via the usitsourcecode · billing system · CWE-89 | Critical9.8 | — | 0.7% | Jun 13, 2024 |
39Monitor | CVE-2024-37873No exploit | SQL injection vulnerability in view_payslip.php in Itsourcecode Payroll Management System Project In PHP With Source Code 1.0 allows remote itsourcecode · payroll management system project in php with source code · CWE-89 | Critical9.8 | — | 0.7% | Jul 9, 2024 |
39Monitor | CVE-2026-36234No exploit | itsourcecode Online Student Enrollment System v1.0 is vulnerable to SQL Injection in newCourse.php via the 'coursename' parameter.itsourcecode · online student enrollment system · CWE-89 | Critical9.8 | — | 0.5% | Apr 10, 2026 |
39Monitor | CVE-2026-36232No exploit | A SQL injection vulnerability was found in the instructorClasses.php file of itsourcecode Online Student Enrollment System v1.0.itsourcecode · online student enrollment system · CWE-89 | Critical9.8 | — | 0.5% | Apr 10, 2026 |
39Monitor | CVE-2026-36233No exploit | A SQL injection vulnerability was found in the assignInstructorSubjects.php file of itsourcecode Online Student Enrollment System v1.0.itsourcecode · online student enrollment system · CWE-89 | Critical9.8 | — | 0.5% | Apr 10, 2026 |
39Monitor | CVE-2026-36235No exploit | A SQL injection vulnerability was found in the scheduleSubList.php file of itsourcecode Online Student Enrollment System v1.0.itsourcecode · online student enrollment system · CWE-89 | Critical9.8 | — | 0.5% | Apr 10, 2026 |
39Monitor | CVE-2024-37870No exploit | SQL injection vulnerability in processscore.php in Learning Management System Project In PHP With Source Code 1.0 allows attackers to executitsourcecode · learning management system · CWE-89 | Critical9.8 | — | 0.5% | Jul 9, 2024 |
39Monitor | CVE-2024-37831No exploit | Itsourcecode Payroll Management System 1.0 is vulnerable to SQL Injection in payroll_items.php via the ID parameter.itsourcecode · payroll management system · CWE-89 | Critical9.8 | — | 0.4% | Jun 14, 2024 |
35Monitor | CVE-2024-37840No exploit | SQL injection vulnerability in processscore.php in Itsourcecode Learning Management System Project In PHP With Source Code v1.0 allows remotitsourcecode · learning management system · CWE-89 | High8.8 | — | 0.5% | Jun 17, 2024 |
27Monitor | CVE-2024-5519No exploit | ItsourceCode Learning Management System Project In PHP login.php sql injectionitsourcecode · learning management system · CWE-89 | Medium6.9 | — | 0.9% | May 30, 2024 |
27Monitor | CVE-2024-5984No exploit | itsourcecode Online Bookstore book.php sql injectionitsourcecode · online book store project · CWE-89 | Medium6.9 | — | 0.8% | Jun 13, 2024 |
27Monitor | CVE-2024-5983No exploit | itsourcecode Online Bookstore bookPerPub.php sql injectionitsourcecode · online book store project · CWE-89 | Medium6.9 | — | 0.6% | Jun 13, 2024 |
27Monitor | CVE-2024-6196No exploit | itsourcecode Banking Management System admin_class.php sql injectionitsourcecode · banking management system project in php · CWE-89 | Medium6.9 | — | 0.6% | Jun 20, 2024 |
27Monitor | CVE-2024-6193No exploit | itsourcecode Vehicle Management System driverprofile.php sql injectionitsourcecode · vehicle management system project in php and mysql with source code · CWE-89 | Medium6.9 | — | 0.5% | Jun 20, 2024 |
22Monitor | CVE-2026-3261No exploit | itsourcecode School Management System Setting index.php sql injectionitsourcecode · school management system · CWE-74 | Medium5.5 | — | 0.6% | Feb 26, 2026 |
22Monitor | CVE-2025-10673No exploit | itsourcecode Student Information Management System index.php sql injectionitsourcecode · student information management system · CWE-74 | Medium5.5 | — | 0.6% | Sep 18, 2025 |
22Monitor | CVE-2026-5334No exploit | itsourcecode Online Enrollment System Parameter index.php sql injectionitsourcecode · online enrollment system · CWE-74 | Medium5.5 | — | 0.6% | Apr 2, 2026 |
22Monitor | CVE-2026-3730No exploit | itsourcecode Free Hotel Reservation System index.php sql injectionitsourcecode · free hotel reservation system · CWE-74 | Medium5.5 | — | 0.6% | Mar 8, 2026 |
22Monitor | CVE-2026-1701No exploit | itsourcecode School Management System index.php sql injectionitsourcecode · school management system · CWE-74 | Medium5.5 | — | 0.5% | Jan 30, 2026 |
22Monitor | CVE-2025-10599No exploit | itsourcecode Web-Based Internet Laboratory Management System login.php AuthenticateUser sql injectionitsourcecode · web-based internet laboratory management system · CWE-74 | Medium5.5 | — | 0.5% | Sep 17, 2025 |
22Monitor | CVE-2025-11432No exploit | itsourcecode Leave Management System reset.php sql injectionitsourcecode · leave management system · CWE-74 | Medium5.5 | — | 0.5% | Oct 8, 2025 |
22Monitor | CVE-2025-15074No exploit | itsourcecode Online Frozen Foods Ordering System customer_details.php sql injectionitsourcecode · online frozen foods ordering system · CWE-74 | Medium5.5 | — | 0.5% | Dec 24, 2025 |
22Monitor | CVE-2026-2014No exploit | itsourcecode Student Management System index.php sql injectionitsourcecode · school management system · CWE-74 | Medium5.5 | — | 0.4% | Feb 6, 2026 |
22Monitor | CVE-2026-2013No exploit | itsourcecode Student Management System index.php sql injectionitsourcecode · school management system · CWE-74 | Medium5.5 | — | 0.4% | Feb 6, 2026 |
22Monitor | CVE-2025-10404No exploit | itsourcecode Baptism Information Management System rptbaptismal.php sql injectionitsourcecode · baptism information management system · CWE-74 | Medium5.5 | — | 0.4% | Sep 14, 2025 |
- CVE-2024-3784939Monitor
A SQL Injection vulnerability in itsourcecode Billing System 1.0 allows a local attacker to execute arbitrary code in process.php via the us
CriticalCVSS 9.8No exploitEPSS 1%itsourcecode · billing systemJun 13, 2024
- CVE-2024-3787339Monitor
SQL injection vulnerability in view_payslip.php in Itsourcecode Payroll Management System Project In PHP With Source Code 1.0 allows remote
CriticalCVSS 9.8No exploitEPSS 1%itsourcecode · payroll management system project in php with source codeJul 9, 2024
- CVE-2026-3623439Monitor
itsourcecode Online Student Enrollment System v1.0 is vulnerable to SQL Injection in newCourse.php via the 'coursename' parameter.
CriticalCVSS 9.8No exploitEPSS 1%itsourcecode · online student enrollment systemApr 10, 2026
- CVE-2026-3623239Monitor
A SQL injection vulnerability was found in the instructorClasses.php file of itsourcecode Online Student Enrollment System v1.0.
CriticalCVSS 9.8No exploitEPSS 1%itsourcecode · online student enrollment systemApr 10, 2026
- CVE-2026-3623339Monitor
A SQL injection vulnerability was found in the assignInstructorSubjects.php file of itsourcecode Online Student Enrollment System v1.0.
CriticalCVSS 9.8No exploitEPSS 1%itsourcecode · online student enrollment systemApr 10, 2026
- CVE-2026-3623539Monitor
A SQL injection vulnerability was found in the scheduleSubList.php file of itsourcecode Online Student Enrollment System v1.0.
CriticalCVSS 9.8No exploitEPSS 1%itsourcecode · online student enrollment systemApr 10, 2026
- CVE-2024-3787039Monitor
SQL injection vulnerability in processscore.php in Learning Management System Project In PHP With Source Code 1.0 allows attackers to execut
CriticalCVSS 9.8No exploitEPSS 0%itsourcecode · learning management systemJul 9, 2024
- CVE-2024-3783139Monitor
Itsourcecode Payroll Management System 1.0 is vulnerable to SQL Injection in payroll_items.php via the ID parameter.
CriticalCVSS 9.8No exploitEPSS 0%itsourcecode · payroll management systemJun 14, 2024
- CVE-2024-3784035Monitor
SQL injection vulnerability in processscore.php in Itsourcecode Learning Management System Project In PHP With Source Code v1.0 allows remot
HighCVSS 8.8No exploitEPSS 1%itsourcecode · learning management systemJun 17, 2024
- CVE-2024-551927Monitor
ItsourceCode Learning Management System Project In PHP login.php sql injection
MediumCVSS 6.9No exploitEPSS 1%itsourcecode · learning management systemMay 30, 2024
- CVE-2024-598427Monitor
itsourcecode Online Bookstore book.php sql injection
MediumCVSS 6.9No exploitEPSS 1%itsourcecode · online book store projectJun 13, 2024
- CVE-2024-598327Monitor
itsourcecode Online Bookstore bookPerPub.php sql injection
MediumCVSS 6.9No exploitEPSS 1%itsourcecode · online book store projectJun 13, 2024
- CVE-2024-619627Monitor
itsourcecode Banking Management System admin_class.php sql injection
MediumCVSS 6.9No exploitEPSS 1%itsourcecode · banking management system project in phpJun 20, 2024
- CVE-2024-619327Monitor
itsourcecode Vehicle Management System driverprofile.php sql injection
MediumCVSS 6.9No exploitEPSS 1%itsourcecode · vehicle management system project in php and mysql with source codeJun 20, 2024
- CVE-2026-326122Monitor
itsourcecode School Management System Setting index.php sql injection
MediumCVSS 5.5No exploitEPSS 1%itsourcecode · school management systemFeb 26, 2026
- CVE-2025-1067322Monitor
itsourcecode Student Information Management System index.php sql injection
MediumCVSS 5.5No exploitEPSS 1%itsourcecode · student information management systemSep 18, 2025
- CVE-2026-533422Monitor
itsourcecode Online Enrollment System Parameter index.php sql injection
MediumCVSS 5.5No exploitEPSS 1%itsourcecode · online enrollment systemApr 2, 2026
- CVE-2026-373022Monitor
itsourcecode Free Hotel Reservation System index.php sql injection
MediumCVSS 5.5No exploitEPSS 1%itsourcecode · free hotel reservation systemMar 8, 2026
- CVE-2026-170122Monitor
itsourcecode School Management System index.php sql injection
MediumCVSS 5.5No exploitEPSS 0%itsourcecode · school management systemJan 30, 2026
- CVE-2025-1059922Monitor
itsourcecode Web-Based Internet Laboratory Management System login.php AuthenticateUser sql injection
MediumCVSS 5.5No exploitEPSS 0%itsourcecode · web-based internet laboratory management systemSep 17, 2025
- CVE-2025-1143222Monitor
itsourcecode Leave Management System reset.php sql injection
MediumCVSS 5.5No exploitEPSS 0%itsourcecode · leave management systemOct 8, 2025
- CVE-2025-1507422Monitor
itsourcecode Online Frozen Foods Ordering System customer_details.php sql injection
MediumCVSS 5.5No exploitEPSS 0%itsourcecode · online frozen foods ordering systemDec 24, 2025
- CVE-2026-201422Monitor
itsourcecode Student Management System index.php sql injection
MediumCVSS 5.5No exploitEPSS 0%itsourcecode · school management systemFeb 6, 2026
- CVE-2026-201322Monitor
itsourcecode Student Management System index.php sql injection
MediumCVSS 5.5No exploitEPSS 0%itsourcecode · school management systemFeb 6, 2026
- CVE-2025-1040422Monitor
itsourcecode Baptism Information Management System rptbaptismal.php sql injection
MediumCVSS 5.5No exploitEPSS 0%itsourcecode · baptism information management systemSep 14, 2025