Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2847▼ 221 respecto a la semana anterior
Críticas / altas1330▼ 168 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)222▼ 99 respecto a la semana anterior
–

3978 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaBaja (2.1)0.38%—Fabian Online Complaint Site8/10/20258/10/2026
Una falla de seguridad ha sido descubierta en el sitio de quejas en línea code-projects 1.0. Este problema afecta a un procesamiento desconocido del archivo /cms/users/register-complaint.php. La manipulación del argumento cid resulta en inyección SQL. Es posible iniciar el ataque de forma remota. El exploit ha sido…
AnalizadaBaja (2.1)0.38%—Fabian Online Complaint Site8/10/20258/10/2026
Una vulnerabilidad fue identificada en code-projects Online Complaint Site 1.0. Esta vulnerabilidad afecta código desconocido del archivo /cms/users/index.php. Tal manipulación del argumento Username lleva a inyección SQL. El ataque puede ser realizado desde remoto. El exploit está disponible públicamente y podría ser…
AnalizadaMedia (5.5)0.52%—Campcodes Advanced Online Voting System8/10/20258/10/2026
Una vulnerabilidad ha sido encontrada en Campcodes Advanced Online Voting Management System 1.0. El elemento impactado es una función desconocida del archivo /admin/login.PHP. Tal manipulación del argumento Username lleva a inyección SQL. El ataque puede ser ejecutado remotamente. El exploit ha sido revelado al…
AnalizadaBaja (2.1)0.33%—Campcodes Advanced Online Voting System7/10/20258/10/2026
Se ha identificado una debilidad en Campcodes Advanced Online Voting Management System 1.0. Esta vulnerabilidad afecta código desconocido del archivo /admin/voters_add.php. La ejecución de manipulación del argumento photo puede llevar a una carga sin restricciones. El ataque puede ser lanzado remotamente. El exploit…
AnalizadaBaja (2.1)0.33%—Campcodes Advanced Online Voting System7/10/20258/10/2026
Se ha encontrado una vulnerabilidad en Campcodes Advanced Online Voting Management System 1.0. Esto afecta a una función desconocida del archivo /admin/voters_add.PHP. La ejecución de la manipulación del argumento firstname puede conducir a una inyección SQL. El ataque puede ejecutarse de forma remota. El exploit ha…
AnalizadaBaja (2.1)0.33%—Campcodes Advanced Online Voting System7/10/20258/10/2026
Una vulnerabilidad fue detectada en Campcodes Advanced Online Voting Management System 1.0. El elemento afectado es una función desconocida del archivo /index.php. La manipulación del argumento voter conduce a inyección SQL. La explotación remota del ataque es posible. El exploit es ahora público y puede ser utilizado.
AplazadaCrítica (9.8)0.33%💥 PoCPuneethreddy Online Shopping System AdvancedAI7/10/202517/6/2026
A SQL Injection vulnerability exists in the edit_product.php file of PuneethReddyHC Online Shopping System Advanced 1.0. The product_id GET parameter is unsafely passed to a SQL query without proper validation or parameterization.
AnalizadaBaja (2.1)0.33%—Fabian Online Hotel Reservation System7/10/202517/6/2026
A security vulnerability has been detected in code-projects Online Hotel Reservation System 1.0. This affects an unknown function of the file /admin/addexec.php. Such manipulation of the argument image leads to unrestricted upload. The attack can be executed remotely. The exploit has been disclosed publicly and may be…
AnalizadaBaja (2.1)0.33%—Fabian Online Hotel Reservation System7/10/202517/6/2026
A weakness has been identified in code-projects Online Hotel Reservation System 1.0. The impacted element is an unknown function of the file /admin/editpicexec.php. This manipulation of the argument image causes unrestricted upload. Remote exploitation of the attack is possible. The exploit has been made available to…
ModificadaMedia (5.5)0.42%—Campcodes Online Apartment Visitor Management System7/10/202517/6/2026
A security flaw has been discovered in Campcodes Online Apartment Visitor Management System 1.0. The affected element is an unknown function of the file /bwdates-reports-details.php. The manipulation of the argument fromdate/todate results in sql injection. The attack may be launched remotely. The exploit has been…
AnalizadaMedia (5.5)0.42%—Campcodes Online Apartment Visitor Management System7/10/202517/6/2026
A vulnerability was identified in Campcodes Online Apartment Visitor Management System 1.0. Impacted is an unknown function of the file /search-visitor.php. The manipulation of the argument searchdata leads to sql injection. The attack may be initiated remotely. The exploit is publicly available and might be used.
AnalizadaBaja (2.1)0.40%—Fabian Online Hotel Reservation System7/10/20258/10/2026
Se ha encontrado una falla en el Sistema de Reserva de Hoteles Online 1.0 de code-projects. Se ve afectada una función desconocida del archivo /admin/addslideexec.PHP. La manipulación del argumento image puede conducir a una carga sin restricciones. El ataque puede realizarse de forma remota. El exploit ha sido…
AnalizadaBaja (2.1)0.33%—Fabian Online Hotel Reservation System7/10/20258/10/2026
Una vulnerabilidad fue detectada en code-projects Online Hotel Reservation System 1.0. Esto impacta una función desconocida del archivo /admin/addgalleryexec.PHP. Realizar la manipulación del argumento image resulta en carga sin restricciones. El ataque es posible de ser llevado a cabo remotamente. El exploit es ahora…
ModificadaMedia (5.5)0.42%—Campcodes Online Apartment Visitor Management System7/10/202517/6/2026
A vulnerability was determined in Campcodes Online Apartment Visitor Management System 1.0. This issue affects some unknown processing of the file /index.php. Executing a manipulation of the argument Username can lead to sql injection. The attack can be launched remotely. The exploit has been publicly disclosed and…
AnalizadaBaja (2)0.41%—Fabian Online Course Registration Site6/10/202517/6/2026
A weakness has been identified in code-projects Online Course Registration 1.0. This impacts an unknown function of the file /admin/edit-course.php. Executing manipulation of the argument coursecode can lead to sql injection. The attack can be executed remotely. The exploit has been made available to the public and…
ModificadaMedia (5.5)0.42%—Campcodes Online Apartment Visitor Management System6/10/202517/6/2026
A security flaw has been discovered in Campcodes Online Apartment Visitor Management System 1.0. Affected is an unknown function of the file /visitor-detail.php. The manipulation of the argument editid results in sql injection. The attack can be executed remotely. The exploit has been released to the public and may be…
AplazadaBaja (1.9)0.27%—Langleyfcu Online Banking SystemAI6/10/202517/6/2026
A vulnerability was identified in langleyfcu Online Banking System up to 57437e6400ce0ae240e692c24e6346b8d0c17d7a. This impacts an unknown function of the file /customer_add_action.php of the component Add Customer Page. The manipulation of the argument First Name leads to cross site scripting. Remote exploitation of…
AnalizadaMedia (5.5)0.42%—Fabian Online Course Registration Site6/10/202517/6/2026
A flaw has been found in code-projects Online Course Registration 1.0. Impacted is an unknown function of the file /admin/manage-students.php. This manipulation of the argument ID causes sql injection. The attack can be initiated remotely. The exploit has been published and may be used.
AnalizadaMedia (6.5)0.26%—Phpgurukul Online Shopping Portal Project2/10/202517/6/2026
PHPGurukul Online Shopping Portal Project v2.1 is vulnerable to SQL Injection in /shopping/login.php via the fullname parameter.
AplazadaCrítica (9.3)1.2%—Telenium Online WEB ApplicationAI30/9/202517/6/2026
La aplicación web Telenium Online es vulnerable debido a un endpoint PHP accesible para usuarios de red no autenticados que maneja incorrectamente la entrada proporcionada por el usuario. Esta vulnerabilidad ocurre debido a la terminación insegura de una verificación de expresión regular dentro del endpoint. Debido a…
AplazadaBaja (2.1)0.35%—Langleyfcu Online Banking SystemAI29/9/202517/6/2026
A vulnerability was found in langleyfcu Online Banking System up to 57437e6400ce0ae240e692c24e6346b8d0c17d7a. Affected by this vulnerability is an unknown functionality of the file /connection_error.php of the component Error Message Handler. Performing manipulation of the argument Error results in cross site…
AnalizadaBaja (2.1)0.38%—Codeastro Online Leave Application28/9/202517/6/2026
A flaw has been found in CodeAstro Online Leave Application 1.0. Affected by this vulnerability is an unknown functionality of the file /leaveAplicationForm.php. Executing manipulation of the argument absence[] can lead to sql injection. The attack may be launched remotely. The exploit has been published and may be…
AnalizadaBaja (2.1)0.38%—Codeastro Online Leave Application28/9/202517/6/2026
A vulnerability was detected in CodeAstro Online Leave Application 1.0. Affected is an unknown function of the file /signup.php. Performing manipulation of the argument city results in sql injection. The attack may be initiated remotely. The exploit is now public and may be used. Other parameters might be affected as…
AnalizadaMedia (5.5)0.48%—Campcodes Advanced Online Voting System28/9/202517/6/2026
A weakness has been identified in Campcodes Advanced Online Voting Management System 1.0. This affects an unknown function of the file /admin/candidates_edit.php. This manipulation of the argument ID causes sql injection. The attack can be initiated remotely. The exploit has been made available to the public and could…
AnalizadaMedia (5.5)0.48%—Campcodes Online Learning Management System28/9/202517/6/2026
A security flaw has been discovered in Campcodes Online Learning Management System 1.0. The impacted element is an unknown function of the file /admin/school_year.php. The manipulation of the argument school_year results in sql injection. It is possible to launch the attack remotely. The exploit has been released to…
Orbitaley — Vulnerabilidades