Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2855▼ 333 respecto a la semana anterior
Críticas / altas1381▼ 36 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)296▼ 213 respecto a la semana anterior
40 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (4.8) | 0.42% | — | Phpgurukul ZOO Management System | 21/9/2023 | 17/6/2026 | A stored cross-site scripting (XSS) vulnerability in the Add Animal Details function of Zoo Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Description of Animal parameter. | |
| Modificada | Crítica (9.8) | 0.98% | — | Phpgurukul ZOO Management System | 8/9/2023 | 17/6/2026 | Zoo Management System v1.0 was discovered to contain multiple SQL injection vulnerabilities in the Admin sign-in page via the username and password fields. | |
| Modificada | Alta (7.2) | 1.1% | — | Phpgurukul ZOO Management System | 26/9/2022 | 17/6/2026 | Zoo Management System v1.0 has an arbitrary file upload vulnerability in the picture upload point of the "save_event" file of the "Events" module in the background management system. | |
| Modificada | Alta (7.2) | 1.2% | — | Phpgurukul ZOO Management System | 26/9/2022 | 17/6/2026 | Zoo Management System v1.0 has an arbitrary file upload vulnerability in the picture upload point of the "save_animal" file of the "Animals" module in the background management system. | |
| Modificada | Alta (7.2) | 1.1% | — | Phpgurukul ZOO Management System | 22/9/2022 | 17/6/2026 | In Zoo Management System v1.0, there is an arbitrary file upload vulnerability in the picture upload point of the "gallery" file of the "Gallery" module in the background management system. | |
| Modificada | Crítica (9.8) | 0.98% | — | Phpgurukul ZOO Management System | 12/8/2022 | 17/6/2026 | A vulnerability was found in SourceCodester Zoo Management System. It has been classified as critical. Affected is an unknown function of the file /pages/apply_vacancy.php. The manipulation of the argument filename leads to unrestricted upload. It is possible to launch the attack remotely. The exploit has been… | |
| Modificada | Crítica (9.8) | 0.87% | — | Phpgurukul ZOO Management System | 12/8/2022 | 17/6/2026 | A vulnerability was found in SourceCodester Zoo Management System and classified as critical. This issue affects some unknown processing of the file /pages/animals.php. The manipulation of the argument class_id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public… | |
| Modificada | Media (5.4) | 0.64% | 💥 PoC | Phpgurukul ZOO Management System | 5/7/2022 | 9/7/2026 | A stored cross-site scripting (XSS) vulnerability in the Add Classification function of Zoo Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via unspecified vectors. | |
| Modificada | Media (6.1) | 0.90% | 💥 PoC | Phpgurukul ZOO Management System | 29/6/2022 | 9/7/2026 | SourceCodester Zoo Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via public_html/register_visitor?msg=. | |
| Modificada | Media (5.4) | 0.50% | — | Phpgurukul ZOO Management System | 16/6/2022 | 17/6/2026 | Zoo Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via zms/admin/public_html/save_animal?an_id=24. | |
| Modificada | Media (6.1) | 0.52% | — | Phpgurukul ZOO Management System | 26/5/2022 | 17/6/2026 | A vulnerability classified as problematic has been found in Zoo Management System 1.0. Affected is an unknown function of the file admin/manage-ticket.php. The manipulation with the input <script>alert(1)</script> leads to cross site scripting. It is possible to launch the attack remotely. | |
| Modificada | Media (5.4) | 0.57% | — | Phpgurukul ZOO Management System | 23/5/2022 | 17/6/2026 | A vulnerability, which was classified as problematic, has been found in Zoo Management System 1.0. Affected by this issue is /zoo/admin/public_html/view_accounts?type=zookeeper of the content module. The manipulation of the argument admin_name with the input <script>alert(1)</script> leads to an authenticated cross… | |
| Modificada | Alta (8.8) | 1.5% | — | Phpgurukul ZOO Management System | 8/4/2022 | 17/6/2026 | Zoo Management System v1.0 was discovered to contain a SQL injection vulnerability at /public_html/animals via the class_id parameter. | |
| Modificada | Crítica (9.8) | 3.5% | — | Phpgurukul ZOO Management System | 8/4/2022 | 17/6/2026 | Zoo Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via /public_html/apply_vacancy. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file. | |
| Modificada | Alta (7.8) | 0.51% | — | Phpgurukul ZOO Management System | 22/9/2020 | 9/7/2026 | PHPGURUKUL Zoo Management System Using PHP and MySQL version 1.0 is affected by: SQL Injection via zms/animal-detail.php. |