Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2737▼ 484 respecto a la semana anterior
Críticas / altas1302▼ 187 respecto a la semana anterior
Nueva explotación activa (KEV)3▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)227▼ 275 respecto a la semana anterior
–

599 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaMedia (5.4)0.55%—Bdtask Multi Store Inventory Management System27/3/202417/6/2026
A vulnerability was found in Bdtask Multi-Store Inventory Management System up to 20240320. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Store Update Page. The manipulation of the argument Store Name/Store Address leads to cross site scripting. The attack may…
AnalizadaMedia (5.4)1.2%💥 PoCBdtask Multi Store Inventory Management System27/3/202417/6/2026
A vulnerability was found in Bdtask Multi-Store Inventory Management System up to 20240320. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation of the argument Category Name/Model Name/Brand Name/Unit Name leads to cross site scripting. The attack can be…
AnalizadaMedia (4.8)0.52%—Bdtask Multi Store Inventory Management System27/3/202417/6/2026
A vulnerability was found in Bdtask Multi-Store Inventory Management System up to 20240320. It has been classified as problematic. Affected is an unknown function of the component Page Title Handler. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been…
AplazadaAlta (7.1)0.38%—Dmitry V Barcode Scanner With Inventory AND Order ManagerAI19/3/202417/6/2026
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Dmitry V. (CEO of "UKR Solution") Barcode Scanner with Inventory & Order Manager barcode-scanner-lite-pos-to-manage-products-inventory-and-orders.This issue affects Barcode Scanner with Inventory & Order Manager: from…
AplazadaMedia (4.3)0.55%—Bdtask Wholesale Inventory Management SystemAI19/3/202417/6/2026
A vulnerability was found in Bdtask Wholesale Inventory Management System up to 20240311. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to session fixiation. The attack can be launched remotely. The exploit has been disclosed to the public and…
AnalizadaAlta (8)0.45%—Ciena Blue Planet Inventory6/3/202417/6/2026
In Blue Planet® products through 22.12, a misconfiguration in the SAML implementation allows for privilege escalation. Only products using SAML authentication are affected. Blue Planet® has released software updates that address this vulnerability for the affected products. Customers are advised to upgrade their Blue…
AnalizadaMedia (6.1)2.5%—Remyandrade Computer Inventory System1/3/202417/6/2026
A vulnerability was found in SourceCodester Computer Inventory System 1.0. It has been rated as problematic. This issue affects some unknown processing of the file /endpoint/update-computer.php. The manipulation of the argument model leads to cross site scripting. The attack may be initiated remotely. The exploit has…
AnalizadaCrítica (9.8)0.48%—Remyandrade Computer Inventory System1/3/202417/6/2026
A vulnerability was found in SourceCodester Computer Inventory System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /endpoint/delete-computer.php. The manipulation of the argument computer leads to sql injection. The attack can be initiated remotely. The exploit has been…
AnalizadaMedia (6.1)0.39%—Remyandrade Computer Inventory System1/3/202417/6/2026
A vulnerability was found in SourceCodester Computer Inventory System 1.0. It has been classified as problematic. This affects an unknown part of the file /endpoint/add-computer.php. The manipulation of the argument model leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has…
AnalizadaCrítica (9.8)0.63%—Mayurik Free AND Open Source Inventory Management System27/2/202417/6/2026
A vulnerability was found in SourceCodester Free and Open Source Inventory Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /app/ajax/search_sales_report.php. The manipulation of the argument customer leads to sql injection. The attack may be initiated…
ModificadaMedia (5.5)0.12%—Snowsoftware Snow Inventory Agent8/2/202417/6/2026
Improper Verification of Cryptographic Signature vulnerability in Snow Software Inventory Agent on Unix allows File Manipulation through Snow Update Packages.This issue affects Inventory Agent: through 7.3.1.
ModificadaMedia (5.5)0.12%—Snowsoftware Snow Inventory Agent8/2/202417/6/2026
Improper Verification of Cryptographic Signature vulnerability in Snow Software Inventory Agent on MacOS, Snow Software Inventory Agent on Windows, Snow Software Inventory Agent on Linux allows File Manipulation through Snow Update Packages.This issue affects Inventory Agent: through 6.12.0; Inventory Agent: through…
ModificadaMedia (5.5)0.16%—Snowsoftware Snow Inventory Agent8/2/202417/6/2026
Authentication Bypass by Spoofing vulnerability in Snow Software Snow Inventory Agent on Windows allows Signature Spoof.This issue affects Snow Inventory Agent: through 6.14.5. Customers advised to upgrade to version 7.0
ModificadaMedia (6.5)0.35%—Free AND Open Source Inventory Management System Project Free AND Open Source Inventory Management System30/1/202417/6/2026
Cross Site Request Forgery (CSRF) vulnerability in Free Open-Source Inventory Management System v.1.0 allows a remote attacker to execute arbitrary code via the staff_list parameter in the index.php component.
ModificadaMedia (6.1)0.66%💥 PoCRemyandrade Product Inventory With Export TO Excel29/1/202417/6/2026
Product Name and Product Code in the 'Add Product' section of Sourcecodester Product Inventory with Export to Excel 1.0 are vulnerable to XSS attacks.
ModificadaCrítica (9.8)0.63%—Ukrsolution Barcode Scanner AND Inventory Manager24/1/202417/6/2026
Unrestricted Upload of File with Dangerous Type vulnerability in UkrSolution Barcode Scanner and Inventory manager.This issue affects Barcode Scanner and Inventory manager: from n/a through 1.5.1.
ModificadaMedia (5.4)0.50%—Codeastro POS AND Inventory Management System11/1/202417/6/2026
A vulnerability was found in CodeAstro POS and Inventory Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /new_item of the component New Item Creation Page. The manipulation of the argument new_item leads to cross site scripting. The…
ModificadaCrítica (9.8)0.55%—Ukrsolution Barcode Scanner AND Inventory Manager8/1/202417/6/2026
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in UkrSolution Simple Inventory Management – just scan barcode to manage products and orders. For WooCommerce.This issue affects Simple Inventory Management – just scan barcode to manage products and orders. For…
ModificadaMedia (6.9)0.63%—Ocsinventory-ng Ocsinventory-ocsreports4/1/202417/6/2026
OCSInventory allow stored email template with special characters that lead to a Stored cross-site Scripting.
ModificadaCrítica (9.8)0.66%—Mayurik Free AND Open Source Inventory Management System29/12/202317/6/2026
A vulnerability was found in SourceCodester Free and Open Source Inventory Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /app/ajax/sell_return_data.php. The manipulation of the argument columns[0][data] leads to sql injection. The attack may be initiated…
ModificadaAlta (8.8)0.63%—Mayurik Free AND Open Source Inventory Management System29/12/202317/6/2026
A vulnerability, which was classified as critical, was found in SourceCodester Free and Open Source Inventory Management System 1.0. This affects an unknown part of the file /ample/app/action/edit_product.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely.…
ModificadaMedia (6.1)0.53%—Code-projects Point OF Sales AND Inventory Management System22/12/202317/6/2026
A vulnerability was found in code-projects Point of Sales and Inventory Management System 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /main/checkout.php. The manipulation of the argument pt leads to cross site scripting. The attack may be launched remotely. The…
ModificadaMedia (6.1)0.47%—Crmperks Integration FOR Woocommerce AND Zoho Crm, Books, Invoice, Inventory, Bigin19/12/202317/6/2026
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in CRM Perks Integration for WooCommerce and Zoho CRM, Books, Invoice, Inventory, Bigin.This issue affects Integration for WooCommerce and Zoho CRM, Books, Invoice, Inventory, Bigin: from n/a before 1.3.7.
ModificadaMedia (6.1)0.58%—Codeastro POS AND Inventory Management System13/12/202317/6/2026
A vulnerability was found in CodeAstro POS and Inventory Management System 1.0. It has been classified as problematic. This affects an unknown part of the file /item/item_con. The manipulation of the argument item_name leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been…
ModificadaMedia (5.4)0.68%—Codeastro POS AND Inventory Management System13/12/202317/6/2026
A vulnerability was found in CodeAstro POS and Inventory Management System 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /accounts_con/register_account. The manipulation of the argument Username with the input <script>alert(document.cookie)</script> leads to cross…