Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2737▼ 484 respecto a la semana anterior
Críticas / altas1302▼ 187 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
–

505 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaMedia (5.3)0.56%—Oretnom23 LOT Reservation Management System31/7/202417/6/2026
A vulnerability, which was classified as critical, has been found in SourceCodester Lot Reservation Management System 1.0. Affected by this issue is some unknown functionality of the file /admin/manage_user.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The…
AnalizadaMedia (5.3)0.58%—Oretnom23 LOT Reservation Management System31/7/202417/6/2026
A vulnerability classified as critical was found in SourceCodester Lot Reservation Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/manage_model.php. The manipulation of the argument id leads to sql injection. The attack can be launched remotely. The exploit has been…
AnalizadaMedia (5.3)0.58%—Oretnom23 LOT Reservation Management System31/7/202417/6/2026
A vulnerability classified as critical has been found in SourceCodester Lot Reservation Management System 1.0. Affected is an unknown function of the file /admin/index.php?page=manage_lot. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been…
AnalizadaMedia (5.3)0.58%—Oretnom23 LOT Reservation Management System31/7/202417/6/2026
A vulnerability was found in SourceCodester Lot Reservation Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /admin/view_reserved.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been…
AnalizadaMedia (6.9)0.69%—Oretnom23 LOT Reservation Management System31/7/202417/6/2026
A vulnerability was found in SourceCodester Lot Reservation Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /admin/ajax.php?action=login. The manipulation of the argument username leads to sql injection. The attack can be initiated remotely. The exploit has…
ModificadaMedia (5.3)0.51%—Oretnom23 LOT Reservation Management System30/7/202417/6/2026
A vulnerability was found in SourceCodester Lot Reservation Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /lot_details.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit has been…
ModificadaMedia (5.3)0.52%—Oretnom23 LOT Reservation Management System30/7/202417/6/2026
A vulnerability has been found in SourceCodester Lot Reservation Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /view_model.php. The manipulation of the argument id leads to sql injection. The attack can be launched remotely. The exploit has…
ModificadaMedia (5.3)0.60%—Oretnom23 LOT Reservation Management System30/7/202417/6/2026
A vulnerability, which was classified as critical, was found in SourceCodester Lot Reservation Management System 1.0. Affected is an unknown function of the file /home.php. The manipulation of the argument type leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the…
ModificadaMedia (5.4)0.27%—Bibleserver Link TO Bible21/7/202417/6/2026
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Thomas Kuhlmann Link To Bible allows Stored XSS.This issue affects Link To Bible: from n/a through 2.5.9.
ModificadaMedia (6.9)0.74%—Janobe Pool OF Bethesda Online Reservation System27/6/202417/6/2026
A vulnerability, which was classified as critical, has been found in itsourcecode Pool of Bethesda Online Reservation System 1.0. Affected by this issue is some unknown functionality of the file controller.php. The manipulation of the argument rmtype_id leads to sql injection. The attack may be launched remotely. The…
ModificadaMedia (6.9)0.68%—Clive 21 Simple Online Hotel Reservation System25/6/202417/6/2026
A vulnerability was found in itsourcecode Simple Online Hotel Reservation System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file index.php. The manipulation of the argument username leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed…
AplazadaMedia (5.4)0.42%—Envisionware Computer Access AND Reservation Control SelfcheckAIEnvisionware OnestopAI24/6/202417/6/2026
An issue in EnvisionWare Computer Access & Reservation Control SelfCheck v1.0 (fixed in OneStop 3.2.0.27184 Hotfix May 2024) allows unauthenticated attackers on the same network to perform a directory traversal.
ModificadaMedia (6.9)0.71%—Janobe Monbela Tourist INN Online Reservation System20/6/202417/6/2026
A vulnerability was found in itsourcecode Monbela Tourist Inn Online Reservation System 1.0. It has been rated as critical. This issue affects some unknown processing of the file login.php. The manipulation of the argument email leads to sql injection. The attack may be initiated remotely. The identifier VDB-268865…
AnalizadaMedia (6.1)0.35%—Code-projects Restaurant Reservation System18/6/202417/6/2026
CodeProjects Restaurant Reservation System v1.0 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the Date parameter at index.php.
AnalizadaMedia (5.4)0.32%—Code-projects Restaurant Reservation System18/6/202417/6/2026
CodeProjects Restaurant Reservation System v1.0 was discovered to contain a SQL injection vulnerability via the reserv_id parameter at view_reservations.php.
ModificadaMedia (6.9)0.80%—Clive 21 Simple Online Hotel Reservation System18/6/202417/6/2026
A vulnerability, which was classified as critical, has been found in itsourcecode Simple Online Hotel Reservation System 1.0. Affected by this issue is some unknown functionality of the file edit_room.php. The manipulation of the argument photo leads to unrestricted upload. The attack may be launched remotely. The…
ModificadaMedia (6.9)0.80%—Clive 21 Simple Online Hotel Reservation System18/6/202417/6/2026
A vulnerability classified as critical was found in itsourcecode Simple Online Hotel Reservation System 1.0. Affected by this vulnerability is an unknown functionality of the file add_room.php. The manipulation of the argument photo leads to unrestricted upload. The attack can be launched remotely. The exploit has…
ModificadaMedia (6.9)0.76%—Janobe Monbela Tourist INN Online Reservation System18/6/202417/6/2026
A vulnerability classified as critical has been found in itsourcecode Monbela Tourist Inn Online Reservation System up to 1.0. Affected is an unknown function of the file controller.php. The manipulation of the argument image leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has…
ModificadaMedia (6.9)0.65%—Janobe Pool OF Bethesda Online Reservation System18/6/202417/6/2026
A vulnerability classified as critical was found in itsourcecode Pool of Bethesda Online Reservation System 1.0. This vulnerability affects unknown code of the file index.php. The manipulation of the argument log_email leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the…
ModificadaMedia (6.9)0.68%—Janobe Pool OF Bethesda Online Reservation System18/6/202417/6/2026
A vulnerability classified as critical has been found in itsourcecode Pool of Bethesda Online Reservation System 1.0. This affects an unknown part of the file login.php. The manipulation of the argument email leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the…
ModificadaMedia (6.9)0.80%—Janobe Magbanua Beach Resort Online Reservation System18/6/202417/6/2026
A vulnerability was found in itsourcecode Magbanua Beach Resort Online Reservation System up to 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file controller.php. The manipulation of the argument image leads to unrestricted upload. The attack may be launched remotely.…
ModificadaMedia (6.9)0.87%—Janobe Pool OF Bethesda Online Reservation System18/6/202417/6/2026
A vulnerability has been found in itsourcecode Pool of Bethesda Online Reservation System up to 1.0 and classified as critical. Affected by this vulnerability is the function uploadImage of the file /admin/mod_room/controller.php?action=add. The manipulation of the argument image leads to unrestricted upload. The…
AplazadaMedia (6.4)0.27%—Restaurant Menu Food Ordering System Table ReservationAI15/6/202417/6/2026
The Restaurant Menu – Food Ordering System – Table Reservation plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's shortcode(s) in all versions up to, and including, 2.4.0 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for…
ModificadaAlta (8.5)0.16%—Johnsoncontrols Software House C-cure 9000 Siteserver6/6/202417/6/2026
Under certain circumstances the Microsoft® Internet Information Server (IIS) used to host the C•CURE 9000 Web Server will log Microsoft Windows credential details within logs. There is no impact to non-web service interfaces C•CURE 9000 or prior versions
AplazadaMedia (6.1)0.96%💥 ExploitTileserver-glAI22/5/202417/6/2026
tileserver-gl up to v4.4.10 was discovered to contain a cross-site scripting (XSS) vulnerability via the component /data/v3/?key.
Orbitaley — Vulnerabilidades