Puneethreddyhc

    Dashboard / Vendors

    Products: 3
    Vulnerabilities: 14
    Known Exploited: 0
    4
    Critical Level Threats
    2
    High Level Threats
    7
    Medium Level Threats
    1
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2025-56605

    A reflected Cross-Site Scripting (XSS) vulnerability exists in the register.php backend script of PuneethReddyHC Event Management System 1.0. The mobile POST parameter is improperly validated and echoed back in the HTTP response without sanitization, allowing an attacker to inject and execute arbitrary JavaScript code in the victim's browser.

    Last Modified: Apr 15, 2026
    Published: Feb 26, 2026

    CVE-2025-65354

    Improper input handling in /Grocery/search_products_itname.php inPuneethReddyHC event-management 1.0 permits SQL injection via the sitem_name POST parameter. Crafted payloads can alter query logic and disclose database contents. Exploitation may result in sensitive data disclosure and backend compromise.

    Last Modified: Jan 06, 2026
    Published: Dec 23, 2025

    CVE-2024-58316

    Online Shopping System Advanced 1.0 SQL Injection via Payment Success Parameter

    Last Modified: Apr 07, 2026
    Published: Dec 12, 2025

    CVE-2025-52021

    A SQL Injection vulnerability exists in the edit_product.php file of PuneethReddyHC Online Shopping System Advanced 1.0. The product_id GET parameter is unsafely passed to a SQL query without proper validation or parameterization.

    Last Modified: Apr 15, 2026
    Published: Oct 07, 2025

    CVE-2025-56243

    A Cross-Site Scripting (XSS) vulnerability was found in the register.php page of PuneethReddyHC Event Management System 1.0, where the event_id GET parameter is improperly handled. An attacker can craft a malicious URL to execute arbitrary JavaScript in the victim s browser by injecting code into this parameter.

    Last Modified: Oct 15, 2025
    Published: Oct 07, 2025
    Items Per Page
    Puneethreddyhc Vulnerabilities & Security CVEs | CVE-DB