Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3027▼ 69 respecto a la semana anterior
Críticas / altas1424▲ 58 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
73 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (5.4) | 0.27% | — | Emiloimagtolis Online Discussion Forum | 4/12/2024 | 17/6/2026 | Itsourcecode Online Discussion Forum Project v.1.0.0 is vulnerable to Cross Site Scripting (XSS) via /bcc_forum/members/home.php. | |
| Modificada | Alta (8.8) | 0.44% | — | Brandonwhite Author Discussion | 20/10/2024 | 17/6/2026 | Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Brandon White Author Discussion author-discussion allows Blind SQL Injection.This issue affects Author Discussion: from n/a through <= 0.2.2. | |
| Analizada | Alta (8.8) | 1.1% | — | Emiloimagtolis Online Discussion Forum | 4/10/2024 | 17/6/2026 | File Upload vulnerability in Itsourcecode Online Discussion Forum Project v.1.0 allows a remote attacker to execute arbitrary code via the "poster.php" file, and the uploaded file was received using the "$- FILES" variable | |
| Analizada | Alta (8.8) | 1.1% | — | Emiloimagtolis Online Discussion Forum | 4/10/2024 | 17/6/2026 | File Upload vulnerability in Itsourcecode Online Discussion Forum Project v.1.0 allows a remote attacker to execute arbitrary code via the "sendreply.php" file, and the uploaded file was received using the "$- FILES" variable. | |
| Analizada | Media (5.3) | 0.75% | — | Oretnom23 Simple Forum/discussion System | 20/9/2024 | 17/6/2026 | A vulnerability, which was classified as critical, was found in SourceCodester Simple Forum-Discussion System 1.0. Affected is an unknown function of the file /index.php. The manipulation of the argument page leads to path traversal. It is possible to launch the attack remotely. The exploit has been disclosed to the… | |
| Analizada | Alta (8.2) | 0.45% | — | Emiloi Online Discussion Forum | 9/7/2024 | 17/6/2026 | SQL injection vulnerability in login.php in Itsourcecode Online Discussion Forum Project in PHP with Source Code 1.0 allows remote attackers to execute arbitrary SQL commands via the email parameter. | |
| Modificada | Media (5.3) | 0.62% | — | Online Discussion Forum Project Online Discussion Forum | 7/6/2024 | 17/6/2026 | A vulnerability classified as critical has been found in itsourcecode Online Discussion Forum 1.0. Affected is an unknown function of the file /members/poster.php. The manipulation of the argument image leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to the… | |
| Modificada | Media (6.9) | 0.62% | — | Online Discussion Forum Project Online Discussion Forum | 7/6/2024 | 17/6/2026 | A vulnerability was found in itsourcecode Online Discussion Forum 1.0. It has been rated as critical. This issue affects some unknown processing of the file register_me.php. The manipulation of the argument eaddress leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the… | |
| Aplazada | Media (5.4) | 0.43% | — | WP Discussion Board Discussion BoardAI | 4/6/2024 | 17/6/2026 | Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in WP Discussion Board Discussion Board allows Content Spoofing, Cross-Site Scripting (XSS).This issue affects Discussion Board: from n/a through 2.4.8. | |
| Analizada | Media (5.3) | 0.75% | — | Emiloimagtolis Online Discussion Forum | 30/5/2024 | 17/6/2026 | A vulnerability classified as critical has been found in itsourcecode Online Discussion Forum 1.0. This affects an unknown part of the file change_profile_picture.php. The manipulation of the argument image leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit has been disclosed to… | |
| Analizada | Media (6.9) | 0.83% | — | Razormist Online Discussion Forum Site | 16/5/2024 | 17/6/2026 | A vulnerability was found in SourceCodester Online Discussion Forum Site 1.0. It has been rated as critical. This issue affects some unknown processing of the file registerH.php. The manipulation of the argument ima leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to… | |
| Analizada | Crítica (9.8) | 1.0% | — | Razormist Online Discussion Forum Site | 20/3/2024 | 17/6/2026 | A vulnerability was found in SourceCodester Online Discussion Forum Site 1.0. It has been classified as critical. Affected is an unknown function of the file /uupdate.php. The manipulation of the argument ima leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been disclosed to… | |
| Analizada | Alta (8.8) | 0.84% | — | Razormist Online Discussion Forum Site | 7/6/2023 | 17/6/2026 | A vulnerability classified as critical has been found in SourceCodester Online Discussion Forum Site 1.0. This affects an unknown part of the file admin\posts\view_post.php. The manipulation leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be… | |
| Analizada | Alta (8.8) | 0.78% | — | Razormist Online Discussion Forum Site | 7/6/2023 | 17/6/2026 | A vulnerability was found in SourceCodester Online Discussion Forum Site 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file user\manage_user.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit has been… | |
| Analizada | Alta (8.8) | 0.75% | — | Razormist Online Discussion Forum Site | 7/6/2023 | 17/6/2026 | A vulnerability was found in SourceCodester Online Discussion Forum Site 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file posts\manage_post.php. The manipulation of the argument id leads to sql injection. The attack can be launched remotely. The exploit has… | |
| Analizada | Alta (8.8) | 0.84% | — | Razormist Online Discussion Forum Site | 7/6/2023 | 17/6/2026 | A vulnerability was found in SourceCodester Online Discussion Forum Site 1.0. It has been classified as critical. Affected is an unknown function of the file admin\user\manage_user.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been… | |
| Analizada | Alta (8.8) | 0.78% | — | Razormist Online Discussion Forum Site | 7/6/2023 | 17/6/2026 | A vulnerability was found in SourceCodester Online Discussion Forum Site 1.0 and classified as critical. This issue affects some unknown processing of the file admin\posts\manage_post.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed… | |
| Analizada | Alta (8.8) | 0.78% | — | Razormist Online Discussion Forum Site | 7/6/2023 | 17/6/2026 | A vulnerability has been found in SourceCodester Online Discussion Forum Site 1.0 and classified as critical. This vulnerability affects unknown code of the file admin\categories\view_category.php. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit has been… | |
| Analizada | Alta (8.8) | 0.75% | — | Razormist Online Discussion Forum Site | 7/6/2023 | 17/6/2026 | A vulnerability, which was classified as critical, was found in SourceCodester Online Discussion Forum Site 1.0. This affects an unknown part of the file admin\categories\manage_category.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has… | |
| Analizada | Alta (8.8) | 0.78% | — | Razormist Online Discussion Forum Site | 7/6/2023 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in SourceCodester Online Discussion Forum Site 1.0. Affected by this issue is some unknown functionality of the file classes\Users.php?f=registration. The manipulation of the argument username leads to sql injection. The attack may be launched remotely.… | |
| Analizada | Media (5.4) | 0.64% | — | Razormist Online Discussion Forum Site | 7/6/2023 | 17/6/2026 | A vulnerability classified as problematic was found in SourceCodester Online Discussion Forum Site 1.0. Affected by this vulnerability is an unknown functionality of the file admin\posts\manage_post.php. The manipulation of the argument title leads to cross site scripting. The attack can be launched remotely. The… | |
| Analizada | Media (5.4) | 0.61% | — | Razormist Online Discussion Forum Site | 7/6/2023 | 17/6/2026 | A vulnerability classified as problematic has been found in SourceCodester Online Discussion Forum Site 1.0. Affected is an unknown function of the file admin\posts\manage_post.php. The manipulation of the argument content leads to cross site scripting. It is possible to launch the attack remotely. The exploit has… | |
| Modificada | Crítica (9.8) | 0.66% | — | Discussion-board Project Discussion-board | 15/1/2023 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in bony2023 Discussion-Board. Affected by this issue is the function display_all_replies of the file functions/main.php. The manipulation of the argument str leads to sql injection. The patch is identified as 26439bc4c63632d63ba89ebc0f149b25a9010361. It… | |
| Modificada | Crítica (9.8) | 2.4% | — | Online Discussion Forum Project Online Discussion Forum | 17/6/2022 | 17/6/2026 | Online Discussion Forum Site 1 was discovered to contain a blind SQL injection vulnerability via the component /odfs/posts/view_post.php. | |
| Modificada | Alta (7.5) | 1.4% | — | Razormist Online Discussion Forum Site | 16/6/2022 | 17/6/2026 | An issue in the delete_post() function of Online Discussion Forum Site 1 allows unauthenticated attackers to arbitrarily delete posts. |