Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

1000 Projects — Vulnerabilities & Security Advisories 74

Browse all 74 CVE security advisories affecting 1000 Projects. AI-powered Chinese analysis, POCs, and references for each vulnerability.

1000 Projects operates as a comprehensive repository of open-source tools designed for penetration testing, security auditing, and system administration. The platform aggregates utilities for network analysis, wireless attacks, and web application exploitation, serving as a critical resource for cybersecurity professionals and ethical hackers. Historically, the software has been associated with vulnerabilities including remote code execution, cross-site scripting, and privilege escalation flaws, often stemming from inadequate input validation or insecure default configurations. While specific major incidents are less publicly documented compared to commercial software, the nature of its tools inherently poses risks if misused or if outdated versions contain unpatched exploits. The presence of 74 recorded CVEs highlights the ongoing need for rigorous code review and timely updates within the project’s diverse ecosystem to mitigate potential security weaknesses and ensure safe deployment in professional environments.

CVE IDTitleCVSSSeverityPublished
CVE-2026-7144 1000 Projects Portfolio Management System MCA update_passwd_process.php authorization — Portfolio Management System MCACWE-639 4.3 Medium2026-04-27
CVE-2026-7143 1000 Projects Portfolio Management System MCA block_status.php sql injection — Portfolio Management System MCACWE-89 6.3 Medium2026-04-27
CVE-2025-8936 1000 Projects Sales Management System dordupdate.php sql injection — Sales Management SystemCWE-89 7.3 High2025-08-14
CVE-2025-8935 1000 Projects Sales Management System custcmp.php sql injection — Sales Management SystemCWE-89 7.3 High2025-08-14
CVE-2025-8934 1000 Projects Sales Management System sales.php cross site scripting — Sales Management SystemCWE-79 4.3 Medium2025-08-14
CVE-2025-8933 1000 Projects Sales Management System sales.php cross site scripting — Sales Management SystemCWE-79 4.3 Medium2025-08-14
CVE-2025-8932 1000 Projects Sales Management System sales.php sql injection — Sales Management SystemCWE-89 7.3 High2025-08-14
CVE-2025-8241 1000 Projects ABC Courier Management System report.php sql injection — ABC Courier Management SystemCWE-89 7.3 High2025-07-27
CVE-2025-8185 1000 Projects ABC Courier Management System getbyid.php sql injection — ABC Courier Management SystemCWE-89 7.3 High2025-07-26
CVE-2025-8173 1000 Projects ABC Courier Management System Add_reciver.php sql injection — ABC Courier Management SystemCWE-89 7.3 High2025-07-25
CVE-2025-5778 1000 Projects ABC Courier Management System admin sql injection — ABC Courier Management SystemCWE-89 7.3 High2025-06-06
CVE-2025-5332 1000 Projects Online Notice Board index.php sql injection — Online Notice BoardCWE-89 7.3 High2025-05-29
CVE-2025-5205 1000 Projects Daily College Class Work Report Book dcwr_entry.php sql injection — Daily College Class Work Report BookCWE-89 7.3 High2025-05-26
CVE-2025-4940 1000 Projects Daily College Class Work Report Book admin_info.php sql injection — Daily College Class Work Report BookCWE-89 7.3 High2025-05-19
CVE-2025-3384 1000 Projects Human Resource Management System employee.php sql injection — Human Resource Management SystemCWE-89 7.3 High2025-04-07
CVE-2025-1189 1000 Projects Attendance Tracking Management System chart1.php sql injection — Attendance Tracking Management SystemCWE-89 6.3 Medium2025-02-12
CVE-2025-1174 1000 Projects Bookstore Management System Add Book Page process_book_add.php cross site scripting — Bookstore Management SystemCWE-79 2.4 Low2025-02-11
CVE-2025-1173 1000 Projects Bookstore Management System process_users_del.php sql injection — Bookstore Management SystemCWE-89 4.7 Medium2025-02-11
CVE-2025-1172 1000 Projects Bookstore Management System addtocart.php sql injection — Bookstore Management SystemCWE-89 6.3 Medium2025-02-11
CVE-2025-0847 1000 Projects Employee Task Management System Login index.php sql injection — Employee Task Management SystemCWE-89 7.3 High2025-01-30
CVE-2025-0846 1000 Projects Employee Task Management System AdminLogin.php sql injection — Employee Task Management SystemCWE-89 7.3 High2025-01-30
CVE-2025-0536 1000 Projects Attendance Tracking Management System edit_action.php sql injection — Attendance Tracking Management SystemCWE-89 6.3 Medium2025-01-17
CVE-2025-0534 1000 Projects Campaign Management System Platform for Women loginnew.php sql injection — Campaign Management System Platform for WomenCWE-89 7.3 High2025-01-17
CVE-2025-0533 1000 Projects Campaign Management System Platform for Women sc_login.php sql injection — Campaign Management System Platform for WomenCWE-89 7.3 High2025-01-17
CVE-2024-13072 1000 Projects Beauty Parlour Management System Customer Detail add-customer-services.php sql injection — Beauty Parlour Management SystemCWE-89 6.3 Medium2024-12-31
CVE-2024-13037 1000 Projects Attendance Tracking Management System report.php attendance_report sql injection — Attendance Tracking Management SystemCWE-89 6.3 Medium2024-12-30
CVE-2024-13006 1000 Projects Human Resource Management System employeeview.php sql injection — Human Resource Management SystemCWE-89 7.3 High2024-12-29
CVE-2024-13005 1000 Projects Attendance Tracking Management System attendance_action.php sql injection — Attendance Tracking Management SystemCWE-89 6.3 Medium2024-12-29
CVE-2024-13003 1000 Projects Portfolio Management System MCA update_ed.php sql injection — Portfolio Management System MCACWE-89 6.3 Medium2024-12-29
CVE-2024-13002 1000 Projects Bookstore Management System order_process.php sql injection — Bookstore Management SystemCWE-89 7.3 High2024-12-29

This page lists every published CVE security advisory associated with 1000 Projects. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.