Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

ItsourceCode — Vulnerabilities & Security Advisories 574

Browse all 574 CVE security advisories affecting ItsourceCode. AI-powered Chinese analysis, POCs, and references for each vulnerability.

ItsSourceCode operates as a repository for pre-built source code and software projects, primarily targeting students and developers seeking ready-made solutions for academic or commercial applications. This business model inherently distributes complex, often unvetted codebases that frequently contain significant security flaws. Historical analysis reveals a high prevalence of critical vulnerability classes, including Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, stemming from inadequate input validation and insecure default configurations. The platform’s lack of rigorous security auditing allows these defects to persist, creating a widespread attack surface for downstream users. With over 503 CVEs currently recorded, the site serves as a notable vector for exploiting known weaknesses in popular frameworks. Major incidents involve the distribution of compromised templates that facilitate unauthorized access and data exfiltration, highlighting the risks associated with sourcing unverified software components from third-party aggregators without proper security review.

CVE IDTitleCVSSSeverityPublished
CVE-2024-6953 itsourcecode Tailoring Management System sms.php sql injection — Tailoring Management SystemCWE-89 6.3 Medium2024-07-21
CVE-2024-6952 itsourcecode University Management System sql injection — University Management SystemCWE-89 6.3 Medium2024-07-21
CVE-2024-6808 itsourcecode Simple Task List signUp.php insertUserRecord sql injection — Simple Task ListCWE-89 7.3 High2024-07-17
CVE-2024-6803 itsourcecode Document Management System insert.php sql injection — Document Management SystemCWE-89 5.5 Medium2024-07-17
CVE-2024-6735 itsourcecode Tailoring Management System setgeneral.php sql injection — Tailoring Management SystemCWE-89 6.3 Medium2024-07-15
CVE-2024-6734 itsourcecode Tailoring Management System templateadd.php sql injection — Tailoring Management SystemCWE-89 6.3 Medium2024-07-14
CVE-2024-6733 itsourcecode Tailoring Management System templateedit.php sql injection — Tailoring Management SystemCWE-89 6.3 Medium2024-07-14
CVE-2024-6728 itsourcecode Tailoring Management System typeedit.php sql injection — Tailoring Management SystemCWE-89 6.3 Medium2024-07-14
CVE-2024-6652 itsourcecode Gym Management System manage_member.php sql injection — Gym Management SystemCWE-89 6.3 Medium2024-07-10
CVE-2024-6453 itsourcecode Farm Management System sql injection — Farm Management SystemCWE-89 6.3 Medium2024-07-02
CVE-2024-6373 itsourcecode Online Food Ordering System addproduct.php unrestricted upload — Online Food Ordering SystemCWE-434 7.3 High2024-06-27
CVE-2024-6372 itsourcecode Tailoring Management System customeradd.php sql injection — Tailoring Management SystemCWE-89 6.3 Medium2024-06-27
CVE-2024-6371 itsourcecode Pool of Bethesda Online Reservation System controller.php sql injection — Pool of Bethesda Online Reservation SystemCWE-89 7.3 High2024-06-27
CVE-2024-6308 itsourcecode Simple Online Hotel Reservation System index.php sql injection — Simple Online Hotel Reservation SystemCWE-89 7.3 High2024-06-25
CVE-2024-6253 itsourcecode Online Food Ordering System purchase.php sql injection — Online Food Ordering SystemCWE-89 7.3 High2024-06-22
CVE-2024-6218 itsourcecode Vehicle Management System busprofile.php sql injection — Vehicle Management SystemCWE-89 7.3 High2024-06-21
CVE-2024-6196 itsourcecode Banking Management System admin_class.php sql injection — Banking Management SystemCWE-89 7.3 High2024-06-20
CVE-2024-6195 itsourcecode Tailoring Management System orderadd.php sql injection — Tailoring Management SystemCWE-89 6.3 Medium2024-06-20
CVE-2024-6194 itsourcecode Tailoring Management System editmeasurement.php sql injection — Tailoring Management SystemCWE-89 6.3 Medium2024-06-20
CVE-2024-6193 itsourcecode Vehicle Management System driverprofile.php sql injection — Vehicle Management SystemCWE-89 7.3 High2024-06-20
CVE-2024-6192 itsourcecode Loan Management System Login Page login.php sql injection — Loan Management SystemCWE-89 7.3 High2024-06-20
CVE-2024-6191 itsourcecode Student Management System Login Page login.php sql injection — Student Management SystemCWE-89 7.3 High2024-06-20
CVE-2024-6190 itsourcecode Farm Management System Login index.php sql injection — Farm Management SystemCWE-89 7.3 High2024-06-20
CVE-2024-6113 itsourcecode Monbela Tourist Inn Online Reservation System login.php sql injection — Monbela Tourist Inn Online Reservation SystemCWE-89 7.3 High2024-06-20
CVE-2024-6116 itsourcecode Simple Online Hotel Reservation System edit_room.php unrestricted upload — Simple Online Hotel Reservation SystemCWE-434 7.3 High2024-06-18
CVE-2024-6115 itsourcecode Simple Online Hotel Reservation System add_room.php unrestricted upload — Simple Online Hotel Reservation SystemCWE-434 7.3 High2024-06-18
CVE-2024-6114 itsourcecode Monbela Tourist Inn Online Reservation System controller.php unrestricted upload — Monbela Tourist Inn Online Reservation SystemCWE-434 7.3 High2024-06-18
CVE-2024-6112 itsourcecode Pool of Bethesda Online Reservation System index.php sql injection — Pool of Bethesda Online Reservation SystemCWE-89 7.3 High2024-06-18
CVE-2024-6111 itsourcecode Pool of Bethesda Online Reservation System login.php sql injection — Pool of Bethesda Online Reservation SystemCWE-89 7.3 High2024-06-18
CVE-2024-6110 itsourcecode Magbanua Beach Resort Online Reservation System controller.php unrestricted upload — Magbanua Beach Resort Online Reservation SystemCWE-434 7.3 High2024-06-18

This page lists every published CVE security advisory associated with ItsourceCode. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.