Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

itsourcecode — Vulnerabilities & Security Advisories 503

Browse all 503 CVE security advisories affecting itsourcecode. AI-powered Chinese analysis, POCs, and references for each vulnerability.

ItsSourceCode operates as a repository for pre-built source code and software projects, primarily targeting students and developers seeking ready-made solutions for academic or commercial applications. This business model inherently distributes complex, often unvetted codebases that frequently contain significant security flaws. Historical analysis reveals a high prevalence of critical vulnerability classes, including Remote Code Execution (RCE), Cross-Site Scripting (XSS), and SQL Injection, stemming from inadequate input validation and insecure default configurations. The platform’s lack of rigorous security auditing allows these defects to persist, creating a widespread attack surface for downstream users. With over 503 CVEs currently recorded, the site serves as a notable vector for exploiting known weaknesses in popular frameworks. Major incidents involve the distribution of compromised templates that facilitate unauthorized access and data exfiltration, highlighting the risks associated with sourcing unverified software components from third-party aggregators without proper security review.

CVE IDTitleCVSSSeverityPublished
CVE-2024-5984 itsourcecode Online Bookstore book.php sql injection — Online BookstoreCWE-89 7.3 High2024-06-14
CVE-2024-5983 itsourcecode Online Bookstore bookPerPub.php sql injection — Online BookstoreCWE-89 7.3 High2024-06-14
CVE-2024-5981 itsourcecode Online House Rental System manage_user.php sql injection — Online House Rental SystemCWE-89 6.3 Medium2024-06-14
CVE-2024-5898 itsourcecode Payroll Management System print_payroll.php sql injection — Payroll Management SystemCWE-89 6.3 Medium2024-06-12
CVE-2024-5745 itsourcecode Bakery Online Ordering System unrestricted upload — Bakery Online Ordering SystemCWE-434 7.3 High2024-06-07
CVE-2024-5734 itsourcecode Online Discussion Forum poster.php unrestricted upload — Online Discussion ForumCWE-434 6.3 Medium2024-06-07
CVE-2024-5733 itsourcecode Online Discussion Forum register_me.php sql injection — Online Discussion ForumCWE-89 7.3 High2024-06-07
CVE-2024-5636 itsourcecode Bakery Online Ordering System index.php sql injection — Bakery Online Ordering SystemCWE-89 6.3 Medium2024-06-05
CVE-2024-5635 itsourcecode Bakery Online Ordering System index.php sql injection — Bakery Online Ordering SystemCWE-89 6.3 Medium2024-06-04
CVE-2024-5588 itsourcecode Learning Management System processscore.php sql injection — Learning Management SystemCWE-89 6.3 Medium2024-06-02
CVE-2024-5519 ItsourceCode Learning Management System Project In PHP login.php sql injection — Learning Management System Project In PHPCWE-89 7.3 High2024-05-30
CVE-2024-5518 itsourcecode Online Discussion Forum change_profile_picture.php unrestricted upload — Online Discussion ForumCWE-434 6.3 Medium2024-05-30
CVE-2024-5517 itsourcecode Online Blood Bank Management System changepwd.php sql injection — Online Blood Bank Management SystemCWE-89 7.3 High2024-05-30
CVE-2024-5516 itsourcecode Online Blood Bank Management System massage.php sql injection — Online Blood Bank Management SystemCWE-89 6.3 Medium2024-05-30
CVE-2024-5397 itsourcecode Online Student Enrollment System instructorSubjects.php sql injection — Online Student Enrollment SystemCWE-89 6.3 Medium2024-05-27
CVE-2024-5396 itsourcecode Online Student Enrollment System newfaculty.php sql injection — Online Student Enrollment SystemCWE-89 6.3 Medium2024-05-27
CVE-2024-5395 itsourcecode Online Student Enrollment System listofinstructor.php sql injection — Online Student Enrollment SystemCWE-89 6.3 Medium2024-05-27
CVE-2024-5394 itsourcecode Online Student Enrollment System newDept.php sql injection — Online Student Enrollment SystemCWE-89 6.3 Medium2024-05-27
CVE-2024-5393 itsourcecode Online Student Enrollment System listofcourse.php sql injection — Online Student Enrollment SystemCWE-89 6.3 Medium2024-05-27
CVE-2024-5392 itsourcecode Online Student Enrollment System editSubject.php sql injection — Online Student Enrollment SystemCWE-89 6.3 Medium2024-05-27
CVE-2024-5391 itsourcecode Online Student Enrollment System listofsubject.php sql injection — Online Student Enrollment SystemCWE-89 6.3 Medium2024-05-27
CVE-2024-5390 itsourcecode Online Student Enrollment System listofstudent.php sql injection — Online Student Enrollment SystemCWE-89 6.3 Medium2024-05-27
CVE-2024-5381 itsourcecode Student Information Management System view.php sql injection — Student Information Management SystemCWE-89 6.3 Medium2024-05-26

This page lists every published CVE security advisory associated with itsourcecode. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.