📦 Customer Support System

by Oretnom23

🔍 What is Customer Support System?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-49547

CRITICAL CVSS 9.8 Mar 5, 2024

CVE-2023-49547 is a critical SQL injection vulnerability in Customer Support System v1 that allows attackers to execute arbitrary SQL commands via the username parameter during login. This affects all...

CVE-2023-49970

CRITICAL CVSS 9.8 Mar 5, 2024

This SQL injection vulnerability in Customer Support System v1 allows attackers to execute arbitrary SQL commands via the subject parameter in the save_ticket function. This affects all deployments of...

CVE-2025-40728

HIGH CVSS 8.8 Jun 16, 2025

An authenticated SQL injection vulnerability in Customer Support System v1.0 allows attackers to manipulate database queries through the id parameter in the /customer_support/manage_user.php endpoint....

CVE-2023-49978

HIGH CVSS 8.8 Mar 21, 2024

CVE-2023-49978 is an improper access control vulnerability in Customer Support System v1 that allows non-administrator users to access administrative pages and perform privileged actions. This affects...

CVE-2023-49968

HIGH CVSS 7.3 Mar 5, 2024

Customer Support System v1 contains a SQL injection vulnerability in the id parameter at /customer_support/manage_department.php. This allows attackers to execute arbitrary SQL commands on the databas...

CVE-2023-49545

HIGH CVSS 7.5 Mar 1, 2024

This directory listing vulnerability in Customer Support System v1 allows unauthenticated attackers to enumerate directories and access sensitive files without authorization. It affects all deployment...

CVE-2023-50070

HIGH CVSS 8.8 Dec 29, 2023

CVE-2023-50070 is a SQL injection vulnerability in Sourcecodester Customer Support System 1.0 that allows attackers to execute arbitrary SQL commands via the /customer_support/ajax.php endpoint. This ...