HOMEVULNERABILITIESVENDORSWedding Management System Project

Wedding Management System ProjectCVEs & Vulnerabilities

20 CVEs affecting Wedding Management System Project products, tracked from the National Vulnerability Database, with CVSS/EPSS scores and exploitation status.

Most Affected Products

wedding management system 20
CVE-2022-30836HIGH

Wedding Management System v1.0 is vulnerable to SQL Injection. via Wedding-Management/admin/select.php.

2 Jun 2022
7.2
CVSS
CVE-2022-30835HIGH

Wedding Management System v1.0 is vulnerable to SQL Injection. via /Wedding-Management/admin/budget.php?booking_id=.

2 Jun 2022
7.2
CVSS
CVE-2022-30834HIGH

Wedding Management System v1.0 is vulnerable to SQL Injection via /Wedding-Management/admin/client_manage_account_details.php?booking_id=31&user_id=

2 Jun 2022
7.2
CVSS
CVE-2022-30833HIGH

Wedding Management System v1.0 is vulnerable to SQL Injection via /Wedding-Management/admin/client_edit.php?booking=31&user_id=.

2 Jun 2022
7.2
CVSS
CVE-2022-30832HIGH

Wedding Management System v1.0 is vulnerable to SQL Injection via /Wedding-Management/admin/client_assign.php?booking=31&user_id=.

2 Jun 2022
7.2
CVSS
CVE-2022-30831HIGH

Wedding Management System v1.0 is vulnerable to SQL Injection via Wedding-Management/wedding_details.php.

2 Jun 2022
7.2
CVSS
CVE-2022-30830HIGH

Wedding Management System v1.0 is vulnerable to SQL Injection via \admin\feature_edit.php.

2 Jun 2022
7.2
CVSS
CVE-2022-30829HIGH

Wedding Management System v1.0 is vulnerable to SQL Injection via \admin\users_edit.php.

2 Jun 2022
7.2
CVSS
CVE-2022-30828HIGH

Wedding Management System v1.0 is vulnerable to SQL Injection via \admin\photos_edit.php.

2 Jun 2022
7.2
CVSS
CVE-2022-30827HIGH

Wedding Management System v1.0 is vulnerable to SQL Injection via \admin\package_edit.php.

2 Jun 2022
7.2
CVSS
CVE-2022-30826HIGH

Wedding Management System v1.0 is vulnerable to SQL Injection via admin\client_assign.php.

2 Jun 2022
7.2
CVSS
CVE-2022-30825HIGH

Wedding Management System v1.0 is vulnerable to SQL Injection via \admin\client_edit.php.

2 Jun 2022
7.2
CVSS
CVE-2022-30823HIGH

Wedding Management System v1.0 is vulnerable to SQL Injection via \admin\blog_events_edit.php.

2 Jun 2022
7.2
CVSS
CVE-2022-30822HIGH

In Wedding Management System v1.0, there is an arbitrary file upload vulnerability in the picture upload point of "users_profile.php" file.

2 Jun 2022
8.8
CVSS
CVE-2022-30821HIGH

In Wedding Management System v1.0, the editing function of the "Services" module in the background management system has an arbitrary file upload vulnerability in the picture upload point of "package_edit.php" file.

2 Jun 2022
8.8
CVSS
CVE-2022-30820HIGH

In Wedding Management v1.0, there is an arbitrary file upload vulnerability in the picture upload point of "users_edit.php" file.

2 Jun 2022
8.8
CVSS
CVE-2022-30819HIGH

In Wedding Management System v1.0, there is an arbitrary file upload vulnerability in the picture upload point of "photos_edit.php" file.

2 Jun 2022
8.8
CVSS
CVE-2022-30818HIGH

Wedding Management System v1.0 is vulnerable to SQL injection via /Wedding-Management/admin/blog_events_edit.php?id=31.

2 Jun 2022
7.2
CVSS
CVE-2022-29656CRITICAL

Wedding Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /Wedding-Management/package_detail.php.

11 May 2022
9.8
CVSS
CVE-2022-29655HIGH

An arbitrary file upload vulnerability in the Upload Photos module of Wedding Management System v1.0 allows attackers to execute arbitrary code via a crafted PHP file.

11 May 2022
7.2
CVSS
← PrevPage 1 / 1Next →