Code-Projects Job Diary是Code-Projects开源的一个工作日记软件。 Code-Projects Job Diary 1.0版本存在注入漏洞,该漏洞源于文件/view-details.php中参数job_id的错误操作导致SQL注入。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| code-projects | Job Diary | 1.0 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2025-7541 | 7.3 HIGH | code-projects Online Appointment Booking System get_town.php sql injection |
| CVE-2025-7540 | 7.3 HIGH | code-projects Online Appointment Booking System getclinic.php sql injection |
| CVE-2025-7539 | 7.3 HIGH | code-projects Online Appointment Booking System getdoctordaybooking.php sql injection |
| CVE-2025-7517 | 7.3 HIGH | code-projects Online Appointment Booking System getDay.php sql injection |
| CVE-2025-7516 | 7.3 HIGH | code-projects Online Appointment Booking System cancelbookingpatient.php sql injection |
| CVE-2025-7515 | 7.3 HIGH | code-projects Online Appointment Booking System ulocateus.php sql injection |
| CVE-2025-7514 | 7.3 HIGH | code-projects Modern Bag contact-list.php sql injection |
| CVE-2025-7513 | 7.3 HIGH | code-projects Modern Bag slideupdate.php sql injection |
| CVE-2025-7512 | 7.3 HIGH | code-projects Modern Bag contact-back.php sql injection |
| CVE-2025-7510 | 7.3 HIGH | code-projects Modern Bag productadd_back.php sql injection |
| CVE-2025-7509 | 7.3 HIGH | code-projects Modern Bag slide.php sql injection |
| CVE-2025-7511 | 6.3 MEDIUM | code-projects Chat System update_account.php sql injection |
No comments yet