Vulnerabilities (CVE)

Filtered by vendor Mayurik Subscribe
Filtered by product Courier Management System
Total 3 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-46974 1 Mayurik 1 Courier Management System 2023-12-10 N/A 5.4 MEDIUM
Cross Site Scripting vulnerability in Best Courier Management System v.1.000 allows a remote attacker to execute arbitrary code via a crafted payload to the page parameter in the URL.
CVE-2023-48823 1 Mayurik 1 Courier Management System 2023-12-10 N/A 9.8 CRITICAL
A Blind SQL injection issue in ajax.php in GaatiTrack Courier Management System 1.0 allows an unauthenticated attacker to inject a payload via the email parameter during login.
CVE-2023-48206 1 Mayurik 1 Courier Management System 2023-12-10 N/A 6.1 MEDIUM
A Cross Site Scripting (XSS) vulnerability in GaatiTrack Courier Management System 1.0 allows a remote attacker to inject JavaScript via the page parameter to login.php or header.php.