Simple Company Website Oretnom23 Simple Company Website

Don't miss out!

Thousands of developers use stack.watch to stay informed.
Get an email whenever new security vulnerabilities are reported in Oretnom23 Simple Company Website.

By the Year

In 2026 there have been 0 vulnerabilities in Oretnom23 Simple Company Website. Last year, in 2025 Simple Company Website had 7 security vulnerabilities published. Right now, Simple Company Website is on track to have less security vulnerabilities in 2026 than it did last year.

Year Vulnerabilities Average Score
2026 0 0.00
2025 7 7.21

It may take a day or so for new Simple Company Website vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.

Recent Oretnom23 Simple Company Website Security Vulnerabilities

SourceCodester Simple Company Website 1.0 Unrestricted File Upload in Users.php
CVE-2025-6873 7.2 - High - June 29, 2025

A vulnerability, which was classified as critical, has been found in SourceCodester Simple Company Website 1.0. This issue affects some unknown processing of the file /classes/Users.php?f=save. The manipulation of the argument img leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

Authorization

Unrestricted File Upload via img in SourceCodester Simple Company Website 1.0
CVE-2025-6872 7.2 - High - June 29, 2025

A vulnerability classified as critical was found in SourceCodester Simple Company Website 1.0. This vulnerability affects unknown code of the file /classes/SystemSettings.php?f=update_settings. The manipulation of the argument img leads to unrestricted upload. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

Authorization

SQLi in SourceCodester Simple Company Website 1.0's Login.php
CVE-2025-6871 9.8 - Critical - June 29, 2025

A vulnerability classified as critical has been found in SourceCodester Simple Company Website 1.0. This affects an unknown part of the file /classes/Login.php. The manipulation of the argument Username leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

SourceCodester SCSW 1.0: Unrestricted File Upload via img param
CVE-2025-6870 4.7 - Medium - June 29, 2025

A vulnerability was found in SourceCodester Simple Company Website 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /classes/Content.php?f=service. The manipulation of the argument img leads to unrestricted upload. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.

Authorization

SourceCodester Simple Company Site 1.0 SQLi via /admin/testimonials/manage.php
CVE-2025-6869 7.2 - High - June 29, 2025

A vulnerability was found in SourceCodester Simple Company Website 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /admin/testimonials/manage.php. The manipulation of the argument ID leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Remote SQLi via ID in SourceCodester SCW 1.0 – Critical
CVE-2025-6868 7.2 - High - June 29, 2025

A vulnerability was found in SourceCodester Simple Company Website 1.0. It has been classified as critical. Affected is an unknown function of the file /admin/clients/manage.php. The manipulation of the argument ID leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

SQLi in SourceCodester Simple Comp Site 1.0 (/admin/services/manage.php)
CVE-2025-6867 7.2 - High - June 29, 2025

A vulnerability was found in SourceCodester Simple Company Website 1.0 and classified as critical. This issue affects some unknown processing of the file /admin/services/manage.php. The manipulation of the argument ID leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

SQL Injection

Stay on top of Security Vulnerabilities

Want an email whenever new vulnerabilities are published for Oretnom23 Simple Company Website or by Oretnom23? Click the Watch button to subscribe.

Oretnom23
Vendor

subscribe