Filtered by vendor Codeastro Subscriptions
Filtered by product Simple Inventory System Subscriptions
Total 3 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-13280 1 Codeastro 1 Simple Inventory System 2025-11-19 7.3 High
A vulnerability was determined in CodeAstro Simple Inventory System 1.0. The impacted element is an unknown function of the file /index.php of the component Login. Executing manipulation of the argument Username can lead to sql injection. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized.
CVE-2025-11610 3 Codeastro, Simple Inventory System Project, Sourcecodester 3 Simple Inventory System, Simple Inventory System, Simple Inventory System 2025-10-21 6.3 Medium
A security flaw has been discovered in SourceCodester Simple Inventory System 1.0. This issue affects some unknown processing of the file /brand.php. The manipulation of the argument editBrandName results in sql injection. The attack can be executed remotely. The exploit has been released to the public and may be exploited.
CVE-2025-11611 3 Codeastro, Simple Inventory System Project, Sourcecodester 3 Simple Inventory System, Simple Inventory System, Simple Inventory System 2025-10-21 6.3 Medium
A weakness has been identified in SourceCodester Simple Inventory System 1.0. Impacted is an unknown function of the file /user.php. This manipulation of the argument uemail causes sql injection. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be exploited.