Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

Codezips — Vulnerabilities & Security Advisories 76

Browse all 76 CVE security advisories affecting Codezips. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Codezips operates as a software development and IT services provider, primarily focusing on custom application development and digital transformation solutions for enterprise clients. Despite its service-oriented model, the organization has accumulated a significant security footprint, with seventy-six Common Vulnerabilities and Exposures (CVEs) currently on record. These vulnerabilities predominantly stem from legacy codebases and third-party dependencies, manifesting as critical Remote Code Execution (RCE) flaws, Cross-Site Scripting (XSS) injections, and broken access control issues that allow privilege escalation. The high volume of disclosed CVEs suggests systemic gaps in secure coding practices and rigorous vulnerability management protocols within their development lifecycle. While no single catastrophic data breach has been publicly attributed to these specific flaws, the persistent presence of high-severity vulnerabilities indicates a reactive rather than proactive security posture, posing ongoing risks to client data integrity and system availability.

CVE IDTitleCVSSSeverityPublished
CVE-2024-10370 Codezips Sales Management System addcustind.php sql injection — Sales Management SystemCWE-89 7.3 High2024-10-25
CVE-2024-10369 Codezips Sales Management System addcustcom.php sql injection — Sales Management SystemCWE-89 7.3 High2024-10-25
CVE-2024-10368 Codezips Sales Management System addstock.php sql injection — Sales Management SystemCWE-89 7.3 High2024-10-25
CVE-2024-10167 Codezips Sales Management System deletecustind.php sql injection — Sales Management SystemCWE-89 7.3 High2024-10-20
CVE-2024-10166 Codezips Sales Management System checkuser.php sql injection — Sales Management SystemCWE-89 7.3 High2024-10-20
CVE-2024-10165 Codezips Sales Management System deletecustcom.php sql injection — Sales Management SystemCWE-89 7.3 High2024-10-20
CVE-2024-9816 Codezips Tourist Management System change-image.php unrestricted upload — Tourist Management SystemCWE-434 4.7 Medium2024-10-10
CVE-2024-9815 Codezips Tourist Management System create-package.php unrestricted upload — Tourist Management SystemCWE-434 4.7 Medium2024-10-10
CVE-2024-9814 Codezips Pharmacy Management System update.php sql injection — Pharmacy Management SystemCWE-89 7.3 High2024-10-10
CVE-2024-9813 Codezips Pharmacy Management System register.php sql injection — Pharmacy Management SystemCWE-89 7.3 High2024-10-10
CVE-2024-9794 Codezips Online Shopping Portal update-image1.php unrestricted upload — Online Shopping PortalCWE-434 6.3 Medium2024-10-10
CVE-2024-9460 Codezips Online Shopping Portal index.php sql injection — Online Shopping PortalCWE-89 7.3 High2024-10-03
CVE-2024-9038 Codezips Online Shopping Portal insert-product.php unrestricted upload — Online Shopping PortalCWE-434 4.3 Medium2024-09-20
CVE-2024-9037 Codezips Internal Marks Calculation index.php sql injection — Internal Marks CalculationCWE-89 7.3 High2024-09-20
CVE-2024-5049 Codezips E-Commerce Site editproduct.php unrestricted upload — E-Commerce SiteCWE-434 6.3 Medium2024-05-17
CVE-2024-4923 Codezips E-Commerce Site addproduct.php unrestricted upload — E-Commerce SiteCWE-434 6.3 Medium2024-05-16

This page lists every published CVE security advisory associated with Codezips. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.