Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2975▼ 108 respecto a la semana anterior
Críticas / altas1449▲ 87 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
–

109 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaMedia (5.5)0.49%—Code-projects Inventory Management System23/6/202517/6/2026
A vulnerability, which was classified as critical, was found in code-projects Inventory Management System 1.0. This affects an unknown part of the file /php_action/createCategories.php. The manipulation of the argument categoriesStatus leads to sql injection. It is possible to initiate the attack remotely. The exploit…
AnalizadaMedia (5.5)0.49%—Code-projects Inventory Management System23/6/202517/6/2026
A vulnerability, which was classified as critical, has been found in code-projects Inventory Management System 1.0. Affected by this issue is some unknown functionality of the file /php_action/editCategories.php. The manipulation of the argument editCategoriesName leads to sql injection. The attack may be launched…
AnalizadaMedia (5.5)0.48%—Code-projects Inventory Management System22/6/202517/6/2026
A vulnerability has been found in code-projects Inventory Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /changeUsername.php. The manipulation of the argument user_id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to…
AnalizadaMedia (5.3)0.43%—Code-projects Point OF Sales AND Inventory Management System4/1/202517/6/2026
A vulnerability was found in code-projects Point of Sales and Inventory Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /user/update_account.php. The manipulation of the argument username leads to sql injection. The attack may be launched remotely. The…
AnalizadaMedia (5.3)0.52%—Code-projects Point OF Sales AND Inventory Management System4/1/202517/6/2026
A vulnerability has been found in code-projects Point of Sales and Inventory Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /user/search_num.php. The manipulation of the argument search leads to sql injection. The attack can be launched…
AnalizadaMedia (5.3)0.43%—Code-projects Point OF Sales AND Inventory Management System3/1/202517/6/2026
A vulnerability, which was classified as critical, was found in code-projects Point of Sales and Inventory Management System 1.0. Affected is an unknown function of the file /user/minus_cart.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has…
AnalizadaMedia (5.3)0.43%—Code-projects Point OF Sales AND Inventory Management System3/1/202517/6/2026
A vulnerability, which was classified as critical, has been found in code-projects Point of Sales and Inventory Management System 1.0. This issue affects some unknown processing of the file /user/search_result.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The…
AnalizadaMedia (5.3)0.43%—Code-projects Point OF Sales AND Inventory Management System3/1/202517/6/2026
A vulnerability classified as critical was found in code-projects Point of Sales and Inventory Management System 1.0. This vulnerability affects unknown code of the file /user/search.php. The manipulation of the argument name leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed…
AnalizadaMedia (5.3)0.43%—Code-projects Point OF Sales AND Inventory Management System3/1/202517/6/2026
A vulnerability classified as critical has been found in code-projects Point of Sales and Inventory Management System 1.0. This affects an unknown part of the file /user/plist.php. The manipulation of the argument cat leads to sql injection. It is possible to initiate the attack remotely. The exploit has been…
AnalizadaMedia (5.3)0.43%—Code-projects Point OF Sales AND Inventory Management System3/1/202517/6/2026
A vulnerability was found in code-projects Point of Sales and Inventory Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /user/del_product.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The…
AnalizadaMedia (5.3)0.45%—Code-projects Point OF Sales AND Inventory Management System3/1/202517/6/2026
A vulnerability was found in code-projects Point of Sales and Inventory Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /user/add_cart.php. The manipulation of the argument id/qty leads to sql injection. The attack may be initiated remotely. The exploit has…
AnalizadaMedia (5.3)0.43%—Code-projects Point OF Sales AND Inventory Management System3/1/202517/6/2026
A vulnerability was found in code-projects Point of Sales and Inventory Management System 1.0. It has been classified as critical. This affects an unknown part of the file /user/search_result2.php of the component Parameter Handler. The manipulation of the argument search leads to sql injection. It is possible to…
AnalizadaMedia (5.3)0.41%—Mayurik Free AND Open Source Inventory Management System29/9/202417/6/2026
A vulnerability was found in SourceCodester Inventory Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /app/action/add_staff.php. The manipulation leads to cross site scripting. The attack can be launched remotely. The exploit has been…
AnalizadaMedia (6.9)0.70%—Janobe Point OF Sales AND Inventory Management System20/8/202417/6/2026
A vulnerability classified as critical has been found in SourceCodester Point of Sales and Inventory Management System 1.0. This affects an unknown part of the file login.php. The manipulation of the argument email leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed…
ModificadaMedia (5.3)0.45%—Oretnom23 Simple Inventory Management System17/7/202417/6/2026
A vulnerability, which was classified as critical, was found in SourceCodester Simple Inventory Management System 1.0. Affected is an unknown function of the file action.php of the component Order Handler. The manipulation of the argument order_id leads to sql injection. It is possible to launch the attack remotely.…
AnalizadaMedia (5.4)0.55%—Bdtask Multi Store Inventory Management System27/3/202417/6/2026
A vulnerability was found in Bdtask Multi-Store Inventory Management System up to 20240320. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Store Update Page. The manipulation of the argument Store Name/Store Address leads to cross site scripting. The attack may…
AnalizadaMedia (5.4)1.2%💥 PoCBdtask Multi Store Inventory Management System27/3/202417/6/2026
A vulnerability was found in Bdtask Multi-Store Inventory Management System up to 20240320. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation of the argument Category Name/Model Name/Brand Name/Unit Name leads to cross site scripting. The attack can be…
AnalizadaMedia (4.8)0.52%—Bdtask Multi Store Inventory Management System27/3/202417/6/2026
A vulnerability was found in Bdtask Multi-Store Inventory Management System up to 20240320. It has been classified as problematic. Affected is an unknown function of the component Page Title Handler. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been…
AplazadaMedia (4.3)0.55%—Bdtask Wholesale Inventory Management SystemAI19/3/202417/6/2026
A vulnerability was found in Bdtask Wholesale Inventory Management System up to 20240311. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to session fixiation. The attack can be launched remotely. The exploit has been disclosed to the public and…
AnalizadaCrítica (9.8)0.63%—Mayurik Free AND Open Source Inventory Management System27/2/202417/6/2026
A vulnerability was found in SourceCodester Free and Open Source Inventory Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /app/ajax/search_sales_report.php. The manipulation of the argument customer leads to sql injection. The attack may be initiated…
ModificadaMedia (6.5)0.35%—Free AND Open Source Inventory Management System Project Free AND Open Source Inventory Management System30/1/202417/6/2026
Cross Site Request Forgery (CSRF) vulnerability in Free Open-Source Inventory Management System v.1.0 allows a remote attacker to execute arbitrary code via the staff_list parameter in the index.php component.
ModificadaMedia (5.4)0.50%—Codeastro POS AND Inventory Management System11/1/202417/6/2026
A vulnerability was found in CodeAstro POS and Inventory Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /new_item of the component New Item Creation Page. The manipulation of the argument new_item leads to cross site scripting. The…
ModificadaCrítica (9.8)0.66%—Mayurik Free AND Open Source Inventory Management System29/12/202317/6/2026
A vulnerability was found in SourceCodester Free and Open Source Inventory Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /app/ajax/sell_return_data.php. The manipulation of the argument columns[0][data] leads to sql injection. The attack may be initiated…
ModificadaAlta (8.8)0.63%—Mayurik Free AND Open Source Inventory Management System29/12/202317/6/2026
A vulnerability, which was classified as critical, was found in SourceCodester Free and Open Source Inventory Management System 1.0. This affects an unknown part of the file /ample/app/action/edit_product.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely.…
ModificadaMedia (6.1)0.53%—Code-projects Point OF Sales AND Inventory Management System22/12/202317/6/2026
A vulnerability was found in code-projects Point of Sales and Inventory Management System 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /main/checkout.php. The manipulation of the argument pt leads to cross site scripting. The attack may be launched remotely. The…
Orbitaley — Vulnerabilidades