Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2976▼ 107 respecto a la semana anterior
Críticas / altas1449▲ 87 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
38 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (5.1) | 0.39% | — | Phpgurukul ART Gallery Management System | 6/3/2025 | 17/6/2026 | A vulnerability was found in PHPGurukul Art Gallery Management System 1.0. It has been classified as problematic. This affects an unknown part of the file /search.php. The manipulation of the argument search leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed… | |
| Analizada | Media (5.3) | 0.67% | — | Donbermoy Online ART Gallery Management System | 16/5/2024 | 17/6/2026 | A vulnerability was found in SourceCodester Online Art Gallery Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file admin/adminHome.php. The manipulation of the argument sliderpic leads to unrestricted upload. The attack can be launched… | |
| Analizada | Alta (7.5) | 0.64% | — | Campcodes Online ART Gallery Management System | 27/3/2024 | 17/6/2026 | A vulnerability classified as critical has been found in Campcodes Online Art Gallery Management System 1.0. This affects an unknown part of the file /admin/adminHome.php. The manipulation of the argument uname leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to… | |
| Modificada | Media (6.5) | 0.54% | — | Phpgurukul ART Gallery Management System | 12/1/2024 | 17/6/2026 | In PHPGurukul Art Gallery Management System v1.1, "Update Artist Image" functionality of "imageid" parameter is vulnerable to SQL Injection. | |
| Modificada | Crítica (9.8) | 1.5% | 💥 PoC | Phpgurukul ART Gallery Management System | 31/7/2023 | 17/6/2026 | Art Gallery Management System v1.0 contains a SQL injection vulnerability via the cid parameter at /agms/product.php. | |
| Modificada | Crítica (9.8) | 1.1% | — | Phpgurukul ART Gallery Management System | 15/3/2023 | 17/6/2026 | Art Gallery Management System v1.0 was discovered to contain a SQL injection vulnerability via the viewid parameter on the enquiry page. | |
| Modificada | Media (5.4) | 0.56% | — | Phpgurukul ART Gallery Management System | 27/2/2023 | 17/6/2026 | A stored cross-site scripting (XSS) vulnerability in Art Gallery Management System Project v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the message parameter on the enquiry page. | |
| Modificada | Media (5.4) | 0.56% | — | Phpgurukul ART Gallery Management System | 27/2/2023 | 17/6/2026 | A stored cross-site scripting (XSS) vulnerability in Art Gallery Management System Project v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the fullname parameter on the enquiry page. | |
| Modificada | Crítica (9.8) | 3.7% | 💥 Exploit | Phpgurukul ART Gallery Management System | 27/2/2023 | 17/6/2026 | Art Gallery Management System Project in PHP 1.0 was discovered to contain a SQL injection vulnerability via the pid parameter in the single-product page. | |
| Modificada | Crítica (9.8) | 1.1% | — | Phpgurukul ART Gallery Management System | 27/2/2023 | 17/6/2026 | Art Gallery Management System Project in PHP 1.0 was discovered to contain a SQL injection vulnerability via the username parameter in the Admin Login. | |
| Modificada | Crítica (9.8) | 4.4% | 💥 Exploit | Phpgurukul ART Gallery Management System | 10/2/2023 | 17/6/2026 | Art Gallery Management System Project v1.0 was discovered to contain a SQL injection vulnerability via the editid parameter. | |
| Modificada | Crítica (9.8) | 4.4% | 💥 Exploit | Phpgurukul ART Gallery Management System | 10/2/2023 | 17/6/2026 | Art Gallery Management System Project v1.0 was discovered to contain a SQL injection vulnerability via the cid parameter at product.php. | |
| Modificada | Media (6.1) | 5.9% | 💥 Exploit | Phpgurukul ART Gallery Management System | 10/2/2023 | 17/6/2026 | A reflected cross-site scripting (XSS) vulnerability in Art Gallery Management System Project v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the artname parameter under ART TYPE option in the navigation bar. |