📦 Library System

by Code Projects

🔍 What is Library System?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2025-13578

HIGH CVSS 7.3 Nov 24, 2025

CVE-2025-13578 is an SQL injection vulnerability in code-projects Library System 1.0 that allows attackers to manipulate database queries through the login username parameter. This can lead to unautho...

CVE-2025-7185

HIGH CVSS 7.3 Jul 8, 2025

CVE-2025-7185 is a critical SQL injection vulnerability in code-projects Library System 1.0 that allows remote attackers to execute arbitrary SQL commands via the ID parameter in /approve.php. This ca...

CVE-2025-7179

HIGH CVSS 7.3 Jul 8, 2025

A critical SQL injection vulnerability in code-projects Library System 1.0 allows attackers to manipulate database queries through the Username parameter in /add-teacher.php. This enables unauthorized...

CVE-2025-7173

HIGH CVSS 7.3 Jul 8, 2025

CVE-2025-7173 is a critical SQL injection vulnerability in code-projects Library System 1.0 that allows remote attackers to execute arbitrary SQL commands via the Username parameter in /add-student.ph...

CVE-2025-6836

HIGH CVSS 7.3 Jun 29, 2025

A critical SQL injection vulnerability in code-projects Library System 1.0 allows remote attackers to execute arbitrary SQL commands via the phone parameter in profile.php. This can lead to unauthoriz...

CVE-2024-1827

HIGH CVSS 7.3 Feb 23, 2024

This is a critical SQL injection vulnerability in code-projects Library System 1.0 that allows attackers to execute arbitrary SQL commands via the teacher login page. Remote attackers can potentially ...

CVE-2024-1829

HIGH CVSS 7.3 Feb 23, 2024

This critical SQL injection vulnerability in code-projects Library System 1.0 allows attackers to manipulate database queries through the student registration form. Remote attackers can potentially ac...

CVE-2024-1826

HIGH CVSS 7.3 Feb 23, 2024

This critical SQL injection vulnerability in code-projects Library System 1.0 allows attackers to execute arbitrary SQL commands through the student login page. Remote attackers can potentially access...

CVE-2025-13579

MEDIUM CVSS 6.3 Nov 24, 2025

This SQL injection vulnerability in code-projects Library System 1.0 allows remote attackers to execute arbitrary SQL commands via the ID parameter in /return.php. This could lead to unauthorized data...

CVE-2025-13580

MEDIUM CVSS 6.3 Nov 24, 2025

CVE-2025-13580 is a SQL injection vulnerability in code-projects Library System 1.0 affecting the /mail.php file. Attackers can remotely exploit this to execute arbitrary SQL commands on the database....

CVE-2025-7412

MEDIUM CVSS 6.3 Jul 10, 2025

CVE-2025-7412 is a critical unrestricted file upload vulnerability in code-projects Library System 1.0. Attackers can remotely upload malicious files via the /user/student/profile.php image parameter,...

CVE-2025-6900

MEDIUM CVSS 6.3 Jun 30, 2025

This critical vulnerability in code-projects Library System 1.0 allows remote attackers to upload arbitrary files via the /add-book.php endpoint's image parameter. This can lead to remote code executi...