Fast5 develops a specialized prison management system that sits at a critical juncture in criminal justice operations, and its vulnerability footprint concentrates in web-application input-handling and session-management weaknesses such as cross-site scripting, SQL injection, unrestricted file upload, and session fixation. Vulnerabilities affecting this vendor skew toward serious outcomes and acquire public exploit tooling at a moderate tendency, warranting careful patch prioritization for what is effectively a high-assurance system. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Fast5 over time
Signals from CVEs in this vendor scope (15 CVEs).
15 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2024-48594HIGH File Upload vulnerability in Prison Management System v.1.0 allows a remote attacker to execute arbitrary code via the file upload component. | Oct 28, 2024 | 8.8 | 34 | NO | YES |
CVE-2024-3438CRITICAL A vulnerability was found in SourceCodester Prison Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /Admin/login.php. The ma | Apr 8, 2024 | 9.8 | 30 | NO | NO |
CVE-2024-3439CRITICAL A vulnerability was found in SourceCodester Prison Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /Account/login.php. The ma | Apr 8, 2024 | 9.8 | 27 | NO | NO |
CVE-2024-3442HIGH A vulnerability classified as critical has been found in SourceCodester Prison Management System 1.0. This affects an unknown part of the file /Employee/delete_leave.php. The manip | Apr 8, 2024 | 8.8 | 25 | NO | NO |
CVE-2026-2177HIGH A vulnerability has been found in SourceCodester Prison Management System 1.0. The impacted element is an unknown function of the component Login. The manipulation leads to session | Feb 8, 2026 | 7.3 | 24 | NO | NO |
CVE-2024-4500HIGH A vulnerability was found in SourceCodester Prison Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /Employee/edit-photo | May 5, 2024 | 8.8 | 24 | NO | NO |
CVE-2024-3441HIGH A vulnerability was found in SourceCodester Prison Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /Employee/ | Apr 8, 2024 | 8.8 | 24 | NO | NO |
CVE-2024-3440HIGH A vulnerability was found in SourceCodester Prison Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file / | Apr 8, 2024 | 7.2 | 21 | NO | NO |
CVE-2024-3437HIGH A vulnerability was found in SourceCodester Prison Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /Admin/add-admin.php | Apr 8, 2024 | 7.2 | 21 | NO | NO |
CVE-2024-3436HIGH A vulnerability was found in SourceCodester Prison Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /Admin/edit-photo.ph | Apr 8, 2024 | 7.2 | 21 | NO | NO |
Signals from CVEs in this vendor scope (15 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Fast5.
Media articles that mention a CVE ID that affects a product developed by Fast5 — matched by CVE ID, not by vendor name.