📦 Senayan Library Management System

by Slims

🔍 What is Senayan Library Management System?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2023-3744

CRITICAL CVSS 9.9 Oct 2, 2023

CVE-2023-3744 is a Server-Side Request Forgery vulnerability in SLims 9.6.0 that allows authenticated attackers to make requests to internal services or read files via the scrape_image.php file. This ...

CVE-2025-26200

HIGH CVSS 7.2 Feb 24, 2025

This SQL injection vulnerability in SLIMS v9.6.1 allows remote attackers to execute arbitrary SQL commands via the month parameter in visitor_report_day.php. Successful exploitation could lead to priv...

CVE-2023-45996

HIGH CVSS 8.8 Oct 31, 2023

This SQL injection vulnerability in Senayan Library Management Systems allows remote attackers to execute arbitrary SQL commands via the reborrowLimit parameter in member_type.php. Attackers can extra...

CVE-2023-40970

HIGH CVSS 8.8 Sep 1, 2023

This SQL injection vulnerability in Senayan Library Management Systems SLIMS 9 Bulian allows attackers to execute arbitrary SQL commands via the loan_rules.php module. It affects administrators who ca...

CVE-2023-29850

HIGH CVSS 7.5 Apr 14, 2023

SENAYAN Library Management System (SLiMS) Bulian v9.5.2 fails to strip EXIF metadata from uploaded images, allowing attackers to extract sensitive information including user geolocation and device det...

CVE-2021-45794

HIGH CVSS 7.5 Mar 17, 2022

CVE-2021-45794 is an SQL injection vulnerability in Slims9 Bulian's backup.php module that allows attackers to execute arbitrary SQL commands. This can lead to unauthorized access to sensitive user da...

CVE-2021-45791

HIGH CVSS 8.8 Mar 17, 2022

Slims8 Akasia 8.3.1 contains SQL injection vulnerabilities in multiple admin modules through the dir parameter. This allows authenticated librarian users to execute arbitrary SQL commands on the datab...