Known Vulnerabilities for products from Wedding Planner Project
Listed below are 12 of the newest known vulnerabilities associated with the vendor "Wedding Planner Project".
These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.
Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.
Known Vulnerabilities
| CVE | Shortened Description | Severity | Publish Date | Last Modified |
|---|---|---|---|---|
| CVE-2022-42229 json | Wedding Planner v1.0 is vulnerable to Arbitrary code execution via package_edit.php. | 8.8 - HIGH | 2022-10-11 | 2022-10-11 |
| CVE-2022-42075 json | Wedding Planner v1.0 is vulnerable to arbitrary code execution. | 9.8 - CRITICAL | 2022-10-07 | 2022-11-10 |
| CVE-2022-42034 json | Wedding Planner v1.0 is vulnerable to arbitrary code execution via users_profile.php. | 8.8 - HIGH | 2022-10-11 | 2022-10-11 |
| CVE-2022-41539 json | Wedding Planner v1.0 was discovered to contain an arbitrary file upload vulnerability in the component /admin/users_add.php. ... | 8.8 - HIGH | 2022-10-14 | 2022-10-17 |
| CVE-2022-41538 json | Wedding Planner v1.0 was discovered to contain an arbitrary file upload vulnerability in the component /Wedding-Management-PH... | 8.8 - HIGH | 2022-10-14 | 2022-10-17 |
| CVE-2022-40485 json | Wedding Planner v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /package_detail.php. | 9.8 - CRITICAL | 2022-09-26 | 2022-09-27 |
| CVE-2022-40484 json | Wedding Planner v1.0 was discovered to contain a SQL injection vulnerability via the booking parameter at /admin/client_edit.... | 9.8 - CRITICAL | 2022-09-26 | 2022-09-27 |
| CVE-2022-40483 json | Wedding Planner v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /wedding_details.php. | 9.8 - CRITICAL | 2022-09-26 | 2022-09-27 |
| CVE-2022-40404 json | Wedding Planner v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/select.php. | 8.8 - HIGH | 2022-09-26 | 2022-09-27 |
| CVE-2022-40403 json | Wedding Planner v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /admin/feature_edit.php. | 7.2 - HIGH | 2022-09-26 | 2022-09-27 |
| CVE-2022-40402 json | Wedding Planner v1.0 was discovered to contain a SQL injection vulnerability via the booking parameter at /admin/client_assig... | 8.8 - HIGH | 2022-09-26 | 2022-09-27 |
| CVE-2022-38509 json | Wedding Planner v1.0 was discovered to contain a SQL injection vulnerability via the booking_id parameter at /admin/budget.ph... | 9.8 - CRITICAL | 2022-09-19 | 2022-09-22 |