Vulnerabilities (CVE)

Filtered by vendor Kostasmitroglou Subscribe
Total 2 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2019-25346 1 Kostasmitroglou 1 Password Management Application 2026-02-27 N/A 7.1 HIGH
TheSystem 1.0 contains a SQL injection vulnerability that allows attackers to bypass authentication by manipulating the 'server_name' parameter. Attackers can inject malicious SQL code like ' or '1=1 to retrieve unauthorized database records and potentially access sensitive system information.
CVE-2019-25347 1 Kostasmitroglou 1 Password Management Application 2026-02-27 N/A 7.1 HIGH
thesystem App 1.0 contains a SQL injection vulnerability that allows attackers to bypass authentication by manipulating the username parameter. Attackers can inject malicious SQL code like ' or '1=1 to the username field to gain unauthorized access to user accounts.