Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

Codezips — Vulnerabilities & Security Advisories 76

Browse all 76 CVE security advisories affecting Codezips. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Codezips operates as a software development and IT services provider, primarily focusing on custom application development and digital transformation solutions for enterprise clients. Despite its service-oriented model, the organization has accumulated a significant security footprint, with seventy-six Common Vulnerabilities and Exposures (CVEs) currently on record. These vulnerabilities predominantly stem from legacy codebases and third-party dependencies, manifesting as critical Remote Code Execution (RCE) flaws, Cross-Site Scripting (XSS) injections, and broken access control issues that allow privilege escalation. The high volume of disclosed CVEs suggests systemic gaps in secure coding practices and rigorous vulnerability management protocols within their development lifecycle. While no single catastrophic data breach has been publicly attributed to these specific flaws, the persistent presence of high-severity vulnerabilities indicates a reactive rather than proactive security posture, posing ongoing risks to client data integrity and system availability.

CVE ID Title CVSS Severity Published
CVE-2024-10370 Codezips Sales Management System addcustind.php sql injection — Sales Management System CWE-89 7.3 High 2024-10-25
CVE-2024-10369 Codezips Sales Management System addcustcom.php sql injection — Sales Management System CWE-89 7.3 High 2024-10-25
CVE-2024-10368 Codezips Sales Management System addstock.php sql injection — Sales Management System CWE-89 7.3 High 2024-10-25
CVE-2024-10167 Codezips Sales Management System deletecustind.php sql injection — Sales Management System CWE-89 7.3 High 2024-10-20
CVE-2024-10166 Codezips Sales Management System checkuser.php sql injection — Sales Management System CWE-89 7.3 High 2024-10-20
CVE-2024-10165 Codezips Sales Management System deletecustcom.php sql injection — Sales Management System CWE-89 7.3 High 2024-10-20
CVE-2024-9816 Codezips Tourist Management System change-image.php unrestricted upload — Tourist Management System CWE-434 4.7 Medium 2024-10-10
CVE-2024-9815 Codezips Tourist Management System create-package.php unrestricted upload — Tourist Management System CWE-434 4.7 Medium 2024-10-10
CVE-2024-9814 Codezips Pharmacy Management System update.php sql injection — Pharmacy Management System CWE-89 7.3 High 2024-10-10
CVE-2024-9813 Codezips Pharmacy Management System register.php sql injection — Pharmacy Management System CWE-89 7.3 High 2024-10-10
CVE-2024-9794 Codezips Online Shopping Portal update-image1.php unrestricted upload — Online Shopping Portal CWE-434 6.3 Medium 2024-10-10
CVE-2024-9460 Codezips Online Shopping Portal index.php sql injection — Online Shopping Portal CWE-89 7.3 High 2024-10-03
CVE-2024-9038 Codezips Online Shopping Portal insert-product.php unrestricted upload — Online Shopping Portal CWE-434 4.3 Medium 2024-09-20
CVE-2024-9037 Codezips Internal Marks Calculation index.php sql injection — Internal Marks Calculation CWE-89 7.3 High 2024-09-20
CVE-2024-5049 Codezips E-Commerce Site editproduct.php unrestricted upload — E-Commerce Site CWE-434 6.3 Medium 2024-05-17
CVE-2024-4923 Codezips E-Commerce Site addproduct.php unrestricted upload — E-Commerce Site CWE-434 6.3 Medium 2024-05-16

This page lists every published CVE security advisory associated with Codezips. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.