Membership Management System
CodeAstro · 19 CVEs
CodeAstro Membership Management System 1.0 contains a missing authentication vulnerability in delete_members.php that a…
Feb 18, 2026
CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in print_membership_card.php via the ID param…
Feb 18, 2026
Missing authentication and authorization in print_membership_card.php in CodeAstro Membership Management System 1.0 all…
Feb 18, 2026
CodeAstro Membership Management System renew.php sql injection
Apr 28, 2025
CodeAstro Membership Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via the membershipType paramete…
Oct 21, 2024
CodeAstro Membership Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via the address parameter in ad…
Oct 21, 2024
CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection via the parameter 'email' in the Login Page.
Sep 27, 2024
The Directory Listing in /uploads/ Folder in CodeAstro Membership Management System 1.0 exposes the structure and conte…
Sep 27, 2024
Cross Site Scripting vulnerability in CodeAstro Membership Management System 1.0 allows attackers to run malicious Java…
Sep 27, 2024
CodeAstro MembershipM-PHP (aka Membership Management System in PHP) 1.0 allows add_members.php fullname stored XSS.
Sep 2, 2024
CodeAstro Membership Management System add_members.php sql injection
Mar 9, 2024
CodeAstro Membership Management System settings.php sql injection
Mar 3, 2024
An Unrestricted File Upload vulnerability in CodeAstro Membership Management System in PHP v.1.0 allows a remote attack…
Feb 28, 2024
A Cross Site Scripting (XSS) vulnerability in CodeAstro Membership Management System in PHP v.1.0 allows a remote attac…
Feb 28, 2024
A SQL Injection vulnerability in CodeAstro Membership Management System in PHP v.1.0 allows a remote attacker to execut…
Feb 28, 2024
A SQL Injection vulnerability in CodeAstro Membership Management System in PHP v.1.0 allows a remote attacker to execut…
Feb 28, 2024
CodeAstro Membership Management System get_membership_amount.php sql injection
Feb 27, 2024
CodeAstro Membership Management System Add Members Tab unrestricted upload
Feb 23, 2024
CodeAstro Membership Management System Logo unrestricted upload
Feb 23, 2024
| CVE ID | Description | Severity | EPSS | Published |
|---|---|---|---|---|
| CVE-2025-70150 | CodeAstro Membership Management System 1.0 contains a missing authentication vulnerability in delete_members.php that allows unauthenticated attackers to delet… | CRITICAL | 0.66% | Feb 18, 2026 |
| CVE-2025-70149 | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection in print_membership_card.php via the ID parameter. | CRITICAL | 0.39% | Feb 18, 2026 |
| CVE-2025-70148 | Missing authentication and authorization in print_membership_card.php in CodeAstro Membership Management System 1.0 allows unauthenticated attackers to access… | HIGH | 0.43% | Feb 18, 2026 |
| CVE-2025-3998 | CodeAstro Membership Management System renew.php sql injection | MEDIUM | 0.56% | Apr 28, 2025 |
| CVE-2024-48709 | CodeAstro Membership Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via the membershipType parameter in edit_type.php | MEDIUM | 0.32% | Oct 21, 2024 |
| CVE-2024-46236 | CodeAstro Membership Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via the address parameter in add_members.php and edit_member.php. | MEDIUM | 0.30% | Oct 21, 2024 |
| CVE-2024-46472 | CodeAstro Membership Management System 1.0 is vulnerable to SQL Injection via the parameter 'email' in the Login Page. | HIGH | 0.44% | Sep 27, 2024 |
| CVE-2024-46471 | The Directory Listing in /uploads/ Folder in CodeAstro Membership Management System 1.0 exposes the structure and contents of directories, potentially revealin… | HIGH | 0.50% | Sep 27, 2024 |
| CVE-2024-46470 | Cross Site Scripting vulnerability in CodeAstro Membership Management System 1.0 allows attackers to run malicious JavaScript via the membership_type field in… | MEDIUM | 0.35% | Sep 27, 2024 |
| CVE-2024-45528 | CodeAstro MembershipM-PHP (aka Membership Management System in PHP) 1.0 allows add_members.php fullname stored XSS. | MEDIUM | 0.28% | Sep 2, 2024 |
| CVE-2024-2333 | CodeAstro Membership Management System add_members.php sql injection | HIGH | 0.69% | Mar 9, 2024 |
| CVE-2024-2149 | CodeAstro Membership Management System settings.php sql injection | HIGH | 0.62% | Mar 3, 2024 |
| CVE-2024-25869 | An Unrestricted File Upload vulnerability in CodeAstro Membership Management System in PHP v.1.0 allows a remote attacker to execute arbitrary code via upload… | HIGH | 18.69% | Feb 28, 2024 |
| CVE-2024-25868 | A Cross Site Scripting (XSS) vulnerability in CodeAstro Membership Management System in PHP v.1.0 allows a remote attacker to execute arbitrary code via the me… | MEDIUM | 0.58% | Feb 28, 2024 |
| CVE-2024-25867 | A SQL Injection vulnerability in CodeAstro Membership Management System in PHP v.1.0 allows a remote attacker to execute arbitrary SQL commands via the members… | CRITICAL | 0.67% | Feb 28, 2024 |
| CVE-2024-25866 | A SQL Injection vulnerability in CodeAstro Membership Management System in PHP v.1.0 allows a remote attacker to execute arbitrary SQL commands via the email p… | HIGH | 0.79% | Feb 28, 2024 |
| CVE-2024-1924 | CodeAstro Membership Management System get_membership_amount.php sql injection | MEDIUM | 0.47% | Feb 27, 2024 |
| CVE-2024-1819 | CodeAstro Membership Management System Add Members Tab unrestricted upload | HIGH | 0.67% | Feb 23, 2024 |
| CVE-2024-1818 | CodeAstro Membership Management System Logo unrestricted upload | HIGH | 0.67% | Feb 23, 2024 |
Showing 1 to 19 of 19 CVEs