Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3082▲ 502 respecto a la semana anterior
Críticas / altas1460▲ 59 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)238▲ 224 respecto a la semana anterior
2506 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (6.1) | 0.38% | — | Gzscripts Ticket Booking Script | 10/7/2023 | 17/6/2026 | A vulnerability, which was classified as problematic, has been found in GZ Scripts Ticket Booking Script 1.8. Affected by this issue is some unknown functionality of the file /load.php. The manipulation of the argument first_name/second_name/phone/address_1/country leads to cross site scripting. The attack may be… | |
| Modificada | Media (6.1) | 0.38% | — | Gzscripts PHP GZ Appointment Scheduling Script | 10/7/2023 | 17/6/2026 | A vulnerability classified as problematic was found in GZ Scripts PHP GZ Appointment Scheduling Script 1.8. Affected by this vulnerability is an unknown functionality of the file /load.php. The manipulation of the argument first_name/second_name/phone/address_1/country leads to cross site scripting. The attack can be… | |
| Modificada | Media (5.4) | 0.51% | — | Gzscripts Event Booking Calendar | 10/7/2023 | 17/6/2026 | A vulnerability classified as problematic has been found in GZ Scripts Event Booking Calendar 1.8. Affected is an unknown function of the file /load.php. The manipulation of the argument first_name/second_name/phone/address_1/country leads to cross site scripting. It is possible to launch the attack remotely. The… | |
| Modificada | Media (6.1) | 0.51% | — | Gzscripts Property Listing Script | 10/7/2023 | 17/6/2026 | A vulnerability was found in GZ Scripts Property Listing Script 1.0. It has been rated as problematic. This issue affects some unknown processing of the file /preview.php. The manipulation of the argument page/layout/sort_by leads to cross site scripting. The attack may be initiated remotely. The associated identifier… | |
| Modificada | Media (6.1) | 0.51% | — | Gzscripts CAR Listing Script PHP | 10/7/2023 | 17/6/2026 | A vulnerability was found in GZ Scripts Car Listing Script PHP 1.8. It has been declared as problematic. This vulnerability affects unknown code of the file /preview.php. The manipulation of the argument page/sort_by leads to cross site scripting. The attack can be initiated remotely. VDB-233350 is the identifier… | |
| Modificada | Media (6.1) | 0.48% | — | Gzscripts PHP Vacation Rental Script | 10/7/2023 | 17/6/2026 | A vulnerability was found in GZ Scripts PHP Vacation Rental Script 1.8. It has been classified as problematic. This affects an unknown part of the file /preview.php. The manipulation of the argument page/layout/sort_by/property_id leads to cross site scripting. It is possible to initiate the attack remotely. The… | |
| Modificada | Media (6.1) | 0.48% | — | Gzscripts GZ Forum Script | 10/7/2023 | 17/6/2026 | A vulnerability was found in GZ Scripts GZ Forum Script 1.8 and classified as problematic. Affected by this issue is some unknown functionality of the file /preview.php. The manipulation of the argument catid/topicid/topic/topic_message/free_name leads to cross site scripting. The attack may be launched remotely. The… | |
| Modificada | Alta (8.8) | 0.31% | — | Lionscripts IP Blocker Lite | 10/7/2023 | 17/6/2026 | Cross-Site Request Forgery (CSRF) vulnerability in LionScripts.Com LionScripts: IP Blocker Lite plugin <= 11.1.1 versions. | |
| Modificada | Media (6.1) | 0.39% | — | Gzscripts Time Slot Booking Calendar PHP | 7/7/2023 | 17/6/2026 | A vulnerability was found in GZ Scripts Time Slot Booking Calendar PHP 1.8. It has been declared as problematic. This vulnerability affects unknown code of the file /load.php. The manipulation of the argument first_name/second_name/phone/address_1/country leads to cross site scripting. The attack can be initiated… | |
| Modificada | Media (6.1) | 0.39% | — | Gzscripts Availability Booking Calendar PHP | 7/7/2023 | 17/6/2026 | A vulnerability was found in GZ Scripts Availability Booking Calendar PHP 1.8. It has been classified as problematic. This affects an unknown part of the file load.php of the component HTTP POST Request Handler. The manipulation of the argument cid/first_name/second_name/address_1/country leads to cross site… | |
| Modificada | Alta (7.5) | 0.61% | — | Jerryscript | 7/7/2023 | 17/6/2026 | An issue in JerryscriptProject jerryscript v.3.0.0 allows an attacker to obtain sensitive information via a crafted script to the arrays. | |
| Modificada | Media (6.1) | 0.36% | — | Simplephpscripts Newsletter Script PHP | 7/7/2023 | 17/6/2026 | A vulnerability, which was classified as problematic, was found in SimplePHPscripts NewsLetter Script PHP 2.4. Affected is an unknown function of the file /preview.php of the component URL Parameter Handler. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. The identifier of… | |
| Modificada | Media (6.1) | 0.36% | — | Simplephpscripts Simple Forum PHP | 7/7/2023 | 17/6/2026 | A vulnerability, which was classified as problematic, has been found in SimplePHPscripts Simple Forum PHP 2.7. This issue affects some unknown processing of the file /preview.php of the component URL Parameter Handler. The manipulation leads to cross site scripting. The attack may be initiated remotely. The associated… | |
| Modificada | Media (5.4) | 0.36% | — | Simplephpscripts Photo Gallery PHP | 7/7/2023 | 17/6/2026 | A vulnerability classified as problematic was found in SimplePHPscripts Photo Gallery PHP 2.0. This vulnerability affects unknown code of the file /preview.php of the component URL Parameter Handler. The manipulation leads to cross site scripting. The attack can be initiated remotely. VDB-233290 is the identifier… | |
| Modificada | Media (6.1) | 0.36% | — | Simplephpscripts News Script PHP PRO | 7/7/2023 | 17/6/2026 | A vulnerability classified as problematic has been found in SimplePHPscripts News Script PHP Pro 2.4. This affects an unknown part of the file /preview.php of the component URL Parameter Handler. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. The identifier VDB-233289… | |
| Modificada | Media (6.1) | 0.36% | — | Simplephpscripts Funeral Script PHP | 7/7/2023 | 17/6/2026 | A vulnerability was found in SimplePHPscripts Funeral Script PHP 3.1. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /preview.php of the component URL Parameter Handler. The manipulation leads to cross site scripting. The attack may be launched remotely. The… | |
| Modificada | Media (6.1) | 0.36% | — | Simplephpscripts FAQ Script PHP | 7/7/2023 | 17/6/2026 | A vulnerability was found in SimplePHPscripts FAQ Script PHP 2.3. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /preview.php of the component URL Parameter Handler. The manipulation leads to cross site scripting. The attack can be launched remotely. The… | |
| Modificada | Crítica (9.8) | 1.3% | — | Jerryscript | 3/7/2023 | 17/6/2026 | An issue in Jerrscript- project Jerryscrip v. 2.3.0 allows a remote attacker to execute arbitrary code via the ecma_builtin_array_prototype_object_slice parameter. | |
| Modificada | Media (5.3) | 0.88% | — | Nullsoft Scriptable Install System | 3/7/2023 | 17/6/2026 | Nullsoft Scriptable Install System (NSIS) before 3.09 mishandles access control for an uninstaller directory. | |
| Modificada | Media (6.1) | 0.39% | — | Simplephpscripts Guestbook Script | 30/6/2023 | 17/6/2026 | Se ha encontrado una vulnerabilidad en SimplePHPscripts GuestBook Script v2.2. Se ha clasificado como problemática. Esto afecta a una parte desconocida del archivo "preview.php" del componente "URL Parameter Handler". La manipulación conduce a Cross-Site Scripting (XSS). Es posible iniciar el ataque de forma remota.… | |
| Modificada | Media (6.1) | 0.39% | — | Simplephpscripts Event Script | 30/6/2023 | 17/6/2026 | A vulnerability was found in SimplePHPscripts Event Script 2.1 and classified as problematic. Affected by this issue is some unknown functionality of the file preview.php of the component URL Parameter Handler. The manipulation leads to cross site scripting. The attack may be launched remotely. It is recommended to… | |
| Modificada | Media (6.1) | 0.39% | — | Simplephpscripts Simple Blog | 30/6/2023 | 17/6/2026 | A vulnerability has been found in SimplePHPscripts Simple Blog 3.2 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file preview.php of the component URL Parameter Handler. The manipulation leads to cross site scripting. The attack can be launched remotely. It is… | |
| Modificada | Media (6.1) | 0.50% | — | Simplephpscripts Classified ADS Script PHP | 29/6/2023 | 17/6/2026 | A vulnerability was found in SimplePHPscripts Classified Ads Script 1.8. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file user.php of the component HTTP POST Request Handler. The manipulation of the argument title leads to cross site scripting. The attack can… | |
| Modificada | Media (6.1) | 0.50% | — | Simplephpscripts Classified ADS Script PHP | 29/6/2023 | 17/6/2026 | A vulnerability was found in SimplePHPscripts Classified Ads Script 1.8. It has been classified as problematic. Affected is an unknown function of the file /preview.php of the component URL Parameter Handler. The manipulation of the argument p leads to cross site scripting. It is possible to launch the attack… | |
| Modificada | Alta (7.8) | 3.9% | 💥 PoC | Artifex GhostscriptDebian LinuxFedoraproject Fedora | 25/6/2023 | 28/8/2026 | Artifex Ghostscript a través de 10.01.2 maneja mal la validación de permisos para dispositivos pipe (con el prefijo %pipe% o el prefijo | pipe character). |