cve,link,title,description,vendor,products,score,severity,epss,cisa,cisa_published,article,ransomware,exploited,exploited_date,poc,trended,trended_no_1,trended_no_1_date,published,trended_score CVE-2023-5260,https://securityvulnerability.io/vulnerability/CVE-2023-5260,SourceCodester Simple Membership System group_validator.php sql injection,"A vulnerability, which was classified as critical, has been found in SourceCodester Simple Membership System 1.0. This issue affects some unknown processing of the file group_validator.php. The manipulation of the argument club_id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-240869 was assigned to this vulnerability.",Sourcecodester,Simple Membership System,6.3,MEDIUM,0.008709999732673168,false,,false,false,false,,,false,false,,2023-09-29T12:15:00.000Z,0 CVE-2023-5027,https://securityvulnerability.io/vulnerability/CVE-2023-5027,SourceCodester Simple Membership System club_validator.php sql injection,A vulnerability classified as critical was found in SourceCodester Simple Membership System 1.0. Affected by this vulnerability is an unknown functionality of the file club_validator.php. The manipulation of the argument club leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-239869 was assigned to this vulnerability.,Sourcecodester,Simple Membership System,6.3,MEDIUM,0.0013299999991431832,false,,false,false,false,,,false,false,,2023-09-17T17:15:00.000Z,0 CVE-2023-4846,https://securityvulnerability.io/vulnerability/CVE-2023-4846,SourceCodester Simple Membership System delete_member.php sql injection,"A security flaw in the Simple Membership System 1.0 allows an attacker to manipulate parameters in the delete_member.php file, leading to SQL injection vulnerabilities. This manipulation, specifically targeting the mem_id argument, can be exploited remotely, potentially giving attackers unauthorized access to the database. The vulnerability is publicly disclosed, raising concerns about the impact it may have on the security of affected systems.",SourceCodester,Simple Membership System,7.5,HIGH,0.0013299999991431832,false,,false,false,false,,,false,false,,2023-09-09T08:15:00.000Z,0 CVE-2023-4845,https://securityvulnerability.io/vulnerability/CVE-2023-4845,SourceCodester Simple Membership System account_edit_query.php sql injection,"A SQL injection vulnerability exists in the SourceCodester Simple Membership System version 1.0, specifically within the account_edit_query.php file. The flaw arises from improper handling of the admin_id argument, allowing attackers to execute arbitrary SQL queries on the database remotely. This vulnerability has been publicly disclosed, raising concerns for the security of systems utilizing this software. Admins of affected installations are advised to implement patches or workarounds to mitigate potential exploits effectively.",SourceCodester,Simple Membership System,9.8,CRITICAL,0.0014100000262260437,false,,false,false,false,,,false,false,,2023-09-09T07:15:00.000Z,0 CVE-2023-4844,https://securityvulnerability.io/vulnerability/CVE-2023-4844,SourceCodester Simple Membership System club_edit_query.php sql injection,A vulnerability was found in SourceCodester Simple Membership System 1.0. It has been classified as critical. This affects an unknown part of the file club_edit_query.php. The manipulation of the argument club_id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-239253 was assigned to this vulnerability.,Sourcecodester,Simple Membership System,6.3,MEDIUM,0.0013299999991431832,false,,false,false,false,,,false,false,,2023-09-08T22:15:00.000Z,0