📦 Advanced Library Management System

by Projectworlds

🔍 What is Advanced Library Management System?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-14571

HIGH CVSS 7.3 Dec 12, 2025

This CVE describes an SQL injection vulnerability in the Advanced Library Management System 1.0 by projectworlds. Attackers can exploit the roll_number parameter in /borrow_book.php to execute arbitra...

CVE-2025-14570

HIGH CVSS 7.3 Dec 12, 2025

CVE-2025-14570 is a SQL injection vulnerability in Advanced Library Management System 1.0 that allows attackers to execute arbitrary SQL commands via the admin_id parameter in /view_admin.php. This af...

CVE-2025-14210

HIGH CVSS 7.3 Dec 8, 2025

CVE-2025-14210 is an SQL injection vulnerability in Advanced Library Management System 1.0 that allows remote attackers to execute arbitrary SQL commands via the user_id parameter in delete_member.php...

CVE-2025-14211

HIGH CVSS 7.3 Dec 8, 2025

CVE-2025-14211 is a SQL injection vulnerability in Advanced Library Management System 1.0 that allows attackers to manipulate database queries via the book_id parameter in /delete_book.php. This enabl...

CVE-2025-14212

HIGH CVSS 7.3 Dec 8, 2025

This CVE describes a SQL injection vulnerability in Advanced Library Management System 1.0's member_search.php file. Attackers can manipulate the roll_number parameter to execute arbitrary SQL command...

CVE-2025-13572

HIGH CVSS 7.3 Nov 23, 2025

This SQL injection vulnerability in Advanced Library Management System 1.0 allows attackers to manipulate database queries through the admin_id parameter in delete_admin.php. Remote attackers can pote...

CVE-2025-11475

HIGH CVSS 7.3 Oct 8, 2025

Advanced Library Management System 1.0 contains a SQL injection vulnerability in the view_member.php file through the user_id parameter. Attackers can remotely execute arbitrary SQL commands to potent...

CVE-2025-13573

MEDIUM CVSS 6.3 Nov 24, 2025

This vulnerability allows remote attackers to upload malicious files via the /add_book.php endpoint in projectworlds can pass software up to version 1.0. Attackers can exploit this unrestricted file u...

CVE-2025-13278

MEDIUM CVSS 6.3 Nov 17, 2025

This SQL injection vulnerability in Advanced Library Management System 1.0 allows attackers to manipulate database queries through the datefrom/dateto parameters in borrowed_book_search.php. Attackers...

CVE-2025-13256

MEDIUM CVSS 6.3 Nov 17, 2025

This CVE describes a SQL injection vulnerability in the Advanced Library Management System 1.0 by projectworlds. Attackers can exploit the roll_number parameter in /borrow.php to execute arbitrary SQL...

CVE-2025-13254

MEDIUM CVSS 6.3 Nov 17, 2025

This SQL injection vulnerability in Advanced Library Management System 1.0 allows attackers to manipulate database queries through the roll_number parameter in /add_member.php. Attackers can potential...

CVE-2025-13255

MEDIUM CVSS 6.3 Nov 17, 2025

This SQL injection vulnerability in Advanced Library Management System 1.0 allows attackers to manipulate database queries through the book_search.php endpoint. Remote attackers can potentially access...

CVE-2025-13253

MEDIUM CVSS 6.3 Nov 17, 2025

This SQL injection vulnerability in Advanced Library Management System 1.0 allows attackers to manipulate database queries through the Username parameter in /add_librarian.php. Attackers can potential...

CVE-2025-11426

MEDIUM CVSS 6.3 Oct 8, 2025

Advanced Library Management System 1.0 contains an unrestricted file upload vulnerability in the edit_book.php file's image parameter. This allows remote attackers to upload malicious files, potential...