Vulnerabilities (CVE)

Filtered by vendor Janobe Subscribe
Filtered by product Farm Management System
Total 5 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-13200 1 Janobe 1 Farm Management System 2025-11-19 5.0 MEDIUM 5.3 MEDIUM
A vulnerability was determined in SourceCodester Farm Management System 1.0. Affected by this vulnerability is an unknown functionality. This manipulation causes exposure of information through directory listing. The attack is possible to be carried out remotely. The exploit has been publicly disclosed and may be utilized.
CVE-2025-12926 1 Janobe 1 Farm Management System 2025-11-18 6.5 MEDIUM 6.3 MEDIUM
A weakness has been identified in SourceCodester Farm Management System 1.0. The affected element is an unknown function of the file /review.php. This manipulation of the argument pid causes sql injection. Remote exploitation of the attack is possible. The exploit has been made available to the public and could be exploited.
CVE-2025-11486 1 Janobe 1 Farm Management System 2025-10-10 6.5 MEDIUM 6.3 MEDIUM
A vulnerability was identified in SourceCodester Farm Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /buyNow.php. Such manipulation of the argument Name leads to sql injection. The attack can be launched remotely. The exploit is publicly available and might be used.
CVE-2025-11478 1 Janobe 1 Farm Management System 2025-10-09 6.5 MEDIUM 6.3 MEDIUM
A weakness has been identified in SourceCodester Farm Management System 1.0. This issue affects some unknown processing of the file /myCart.php. This manipulation of the argument pid causes sql injection. Remote exploitation of the attack is possible. The exploit has been made available to the public and could be exploited.
CVE-2025-11487 1 Janobe 1 Farm Management System 2025-10-09 6.5 MEDIUM 6.3 MEDIUM
A security flaw has been discovered in SourceCodester Farm Management System 1.0. Affected by this issue is some unknown functionality of the file /uploadProduct.php. Performing manipulation of the argument Type results in sql injection. The attack may be initiated remotely. The exploit has been released to the public and may be exploited.