Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas3090▲ 500 respecto a la semana anterior
Críticas / altas1463▲ 62 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)238▲ 224 respecto a la semana anterior
–

2506 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (6.1)8.4%💥 ExploitPhpjabbers Taxi Booking Script3/8/202317/6/2026
A vulnerability classified as problematic was found in PHP Jabbers Taxi Booking 2.0. Affected by this vulnerability is an unknown functionality of the file /index.php. The manipulation of the argument index leads to cross site scripting. The attack can be launched remotely. The associated identifier of this…
ModificadaMedia (6.1)8.4%💥 ExploitPhpjabbers Service Booking Script3/8/202317/6/2026
A vulnerability was found in PHP Jabbers Service Booking Script 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file /index.php. The manipulation of the argument index leads to cross site scripting. The attack can be initiated remotely. The identifier of this vulnerability is…
ModificadaMedia (5.5)0.32%—Artifex Ghostscript1/8/202317/6/2026
Se ha encontrado un fallo de desbordamiento de enteros en pcl/pl/plfont.c:418 en pl_glyph_name en ghostscript. Este problema puede permitir a un atacante local provocar una denegación de servicio mediante la transformación de un archivo PCL manipulado en formato PDF.
ModificadaMedia (5.5)0.43%—Artifex GhostscriptRedhat Enterprise LinuxFedoraproject FedoraDebian Linux1/8/202323/6/2026
Se ha encontrado un fallo de desbordamiento de búfer en base/gdevdevn.c:1973 en devn_pcx_write_rle() en ghostscript. Este problema puede permitir a un atacante local provocar una denegación de servicio mediante la salida de un archivo PDF manipulado para un dispositivo DEVN con gs.
ModificadaAlta (7.3)0.20%—Codesys Development SystemCodesys Scripting28/7/202317/6/2026
In CODESYS Development System 3.5.9.0 to 3.5.17.0 and CODESYS Scripting 4.0.0.0 to 4.1.0.0 unsafe directory permissions would allow an attacker with local access to the workstation to place potentially harmful and disguised scripts that could be executed by legitimate users.
ModificadaCrítica (9.8)0.52%—Phpscriptpoint Recipepoint28/7/202317/6/2026
Se ha encontrado una vulnerabilidad, clasificada como crítica, en Phpscriptpoint RecipePoint v1.9. Afecta a una parte desconocida del fichero "/recipe-result". La manipulación del argumento "text/category/type/difficulty/cuisine/cooking_method" conduce a una inyección SQL. Es posible iniciar el ataque de forma remota.…
ModificadaMedia (5.4)0.56%—Gzscripts Availability Booking Calendar PHP27/7/202317/6/2026
A vulnerability, which was classified as problematic, was found in GZ Scripts Availability Booking Calendar PHP 1.0. This affects an unknown part of the file /index.php?controller=GzUser&action=edit&id=1 of the component Image Handler. The manipulation of the argument img leads to cross site scripting. It is possible…
ModificadaMedia (5.4)0.56%—Gzscripts Availability Booking Calendar PHP27/7/202317/6/2026
A vulnerability, which was classified as problematic, has been found in GZ Scripts Availability Booking Calendar PHP 1.0. Affected by this issue is some unknown functionality of the file index.php of the component HTTP POST Request Handler. The manipulation of the argument promo_code leads to cross site scripting. The…
ModificadaMedia (6.1)0.36%—Phpscriptpoint Lawyer25/7/202317/6/2026
Se ha encontrado una vulnerabilidad en phpscriptpoint Lawyer v1.6. Se ha clasificado como problemática. Afecta a una parte desconocida del archivo "search.php". La manipulación conduce a Cross-Site Scripting (XSS). Es posible iniciar el ataque de forma remota. Se ha asignado a esta vulnerabilidad el identificador…
ModificadaMedia (6.1)0.36%—Phpscriptpoint Lawyer25/7/202317/6/2026
Se ha encontrado una vulnerabilidad en Phpscriptpoint Lawyer v1.6 y se ha clasificado como problemática. Este problema afecta a una funcionalidad desconocida del archivo "page.php". La manipulación conduce a Cross-Site Scripting (XSS). El ataque puede ser lanzado remotamente. El identificador de esta vulnerabilidad es…
ModificadaMedia (6.1)0.36%—Phpscriptpoint Insurance24/7/202317/6/2026
Se ha encontrado una vulnerabilidad en Phpscriptpoint Insurance v1.2. Se ha declarado como problemática. Esta vulnerabilidad afecta a una funcionalidad desconocida del archivo "/search.php". La manipulación conduce a Cross-Site Scripting (XSS). El ataque puede lanzarse de forma remota. Se ha asignado a esta…
ModificadaMedia (6.1)0.36%—Phpscriptpoint Insurance24/7/202317/6/2026
Se ha encontrado una vulnerabilidad en Phpscriptpoint Insurance v1.2. Se ha clasificado como problemática. Se ve afectada una función desconocida del archivo "/page.php". La manipulación conduce a Cross-Site Scripting (XSS). Es posible lanzar el ataque de forma remota. El identificador de esta vulnerabilidad es…
ModificadaCrítica (9.8)0.50%—Phpscriptpoint CAR Listing24/7/202317/6/2026
A vulnerability was found in phpscriptpoint Car Listing 1.6 and classified as critical. This issue affects some unknown processing of the file /search.php of the component GET Parameter Handler. The manipulation of the argument…
ModificadaMedia (6.1)0.36%—Phpscriptpoint CAR Listing24/7/202317/6/2026
Se ha encontrado una vulnerabilidad en Phpscriptpoint Car Listing v1.6 y se ha clasificado como problemática. Esta vulnerabilidad afecta a código desconocido del archivo "search.php". La manipulación del argumento "country/state/city" conduce a Cross-Site Scripting (XSS). El ataque puede iniciarse de forma remota.…
ModificadaMedia (6.1)0.36%—Phpscriptpoint Ecommerce24/7/202317/6/2026
A vulnerability, which was classified as problematic, was found in phpscriptpoint Ecommerce 1.15. This affects an unknown part of the file /product.php. The manipulation of the argument id leads to cross site scripting. It is possible to initiate the attack remotely. The identifier VDB-235209 was assigned to this…
ModificadaMedia (6.1)0.36%—Phpscriptpoint Ecommerce24/7/202317/6/2026
A vulnerability, which was classified as problematic, has been found in phpscriptpoint Ecommerce 1.15. Affected by this issue is some unknown functionality of the file /blog-single.php. The manipulation of the argument slug leads to cross site scripting. The attack may be launched remotely. The identifier of this…
ModificadaMedia (6.1)0.36%—Phpscriptpoint Jobseeker24/7/202317/6/2026
A vulnerability classified as problematic was found in phpscriptpoint JobSeeker 1.5. Affected by this vulnerability is an unknown functionality of the file /search-result.php. The manipulation of the argument kw/lc/ct/cp/p leads to cross site scripting. The attack can be launched remotely. The associated identifier of…
ModificadaCrítica (9.8)0.50%—Phpscriptpoint Bloodbank23/7/202317/6/2026
A vulnerability classified as critical has been found in phpscriptpoint BloodBank 1.1. Affected is an unknown function of the file /search of the component POST Parameter Handler. The manipulation of the argument country/city/blood_group_id leads to sql injection. It is possible to launch the attack remotely.…
ModificadaMedia (6.1)0.36%—Phpscriptpoint Bloodbank23/7/202317/6/2026
A vulnerability was found in phpscriptpoint BloodBank 1.1. It has been rated as problematic. This issue affects some unknown processing of the file page.php. The manipulation leads to cross site scripting. The attack may be initiated remotely. The identifier VDB-235205 was assigned to this vulnerability. NOTE: The…
ModificadaMedia (6.1)0.36%—Gzscripts CAR Rental PHP Script19/7/202317/6/2026
A vulnerability classified as problematic has been found in GZ Scripts Car Rental Script 1.8. Affected is an unknown function of the file /EventBookingCalendar/load.php?controller=GzFront/action=checkout/cid=1/layout=calendar/show_header=T/local=3. The manipulation of the argument…
ModificadaMedia (6.1)0.45%—Gzscripts Vacation Rental Website12/7/202317/6/2026
Se ha encontrado una vulnerabilidad en GZ Scripts Vacation Rental Website v1.8 y se ha clasificado como problemática. Este problema afecta a una funcionalidad desconocida del archivo "/VacationRentalWebsite/property/8/ad-has-principes/" del componente HTTP POST Request Handler. La manipulación del argumento…
ModificadaMedia (6.1)0.52%—Gzscripts GZ Multi Hotel Booking System10/7/202317/6/2026
A vulnerability was found in GZ Scripts GZ Multi Hotel Booking System 1.8. It has been classified as problematic. Affected is an unknown function of the file /index.php. The manipulation of the argument adults/children/cal_id leads to cross site scripting. It is possible to launch the attack remotely. VDB-233358 is…
ModificadaMedia (6.1)0.51%—Gzscripts GZ E Learning Platform10/7/202317/6/2026
A vulnerability was found in GZ Scripts GZ E Learning Platform 1.8 and classified as problematic. This issue affects some unknown processing of the component URL Parameter Handler. The manipulation leads to cross site scripting. The attack may be initiated remotely. The identifier VDB-233357 was assigned to this…
ModificadaMedia (6.1)0.51%—Gzscripts PHP CRM Platform10/7/202317/6/2026
A vulnerability has been found in GZ Scripts PHP CRM Platform 1.8 and classified as problematic. This vulnerability affects unknown code of the file /index.php. The manipulation of the argument action leads to cross site scripting. The attack can be initiated remotely. The identifier of this vulnerability is…
ModificadaMedia (6.1)0.51%—Gzscripts PHP GZ Hotel Booking Script10/7/202317/6/2026
A vulnerability, which was classified as problematic, was found in GZ Scripts PHP GZ Hotel Booking Script 1.8. This affects an unknown part of the file /load.php. The manipulation of the argument first_name/second_name/phone/address_1/country leads to cross site scripting. It is possible to initiate the attack…