Event Management System
14 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Event Management System, a product in the enterprise software space. Use it to gauge the current risk picture and drill into individual advisories.
Event Management System CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 1 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 1 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 6 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 14 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical1
- High8
- Medium5
Latest CVEs
The 14 most recently published vulnerabilities affecting Event Management System.
- CVE-2026-3043itsourcecode Event Management System navbar.php cross site scripting4.3
- CVE-2026-3042itsourcecode Event Management System index.php sql injection7.3
- CVE-2026-2691itsourcecode Event Management System manage_register.php sql injection7.3
- CVE-2026-2690itsourcecode Event Management System Admin Login ajax.php sql injection7.3
- CVE-2026-2689itsourcecode Event Management System manage_booking.php sql injection7.3
- CVE-2026-2217itsourcecode Event Management System manage_user.php sql injection7.3
- CVE-2025-56243A Cross-Site Scripting (XSS) vulnerability was found in the register.php page of PuneethReddyHC Event Management System 1.0, where the event_id GET parameter is improperly handled. An attacker can ...6.1
- CVE-2024-13007Codezips Event Management System contact.php sql injection6.3
- CVE-2024-44728Sourcecodehero Event Management System 1.0 allows Stored Cross-Site Scripting via parameters Full Name, Address, Email, and contact# in /clientdetails/admin/regester.php.6.1
- CVE-2024-44727Sourcecodehero Event Management System1.0 is vulnerable to SQL Injection via the parameter 'username' in /event/admin/login.php.9.8
- CVE-2022-1102SourceCodester Royale Event Management System companyprofile.php cross site scripting4.3
- CVE-2022-1101SourceCodester Royale Event Management System userregister.php improper authentication7.3
- CVE-2022-38323Event Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via the component /Royal_Event/update_image.php. This vulnerability allows attackers to execute arbitra...7.2
- CVE-2022-28080Royal Event Management System v1.0 was discovered to contain a SQL injection vulnerability via the todate parameter.8.8
Product grouping is registry-driven, with AI assist and human review. How it works