Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2716▼ 140 respecto a la semana anterior
Críticas / altas1239▼ 295 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)244▲ 207 respecto a la semana anterior
1147 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (4.8) | 0.46% | — | Phpgurukul Maid Hiring Management System | 8/8/2023 | 9/7/2026 | Maid Hiring Management System v1.0 was discovered to contain a SQL injection vulnerability in the Search Maid page. | |
| Modificada | Media (4.8) | 0.47% | — | Phpgurukul Maid Hiring Management System | 8/8/2023 | 9/7/2026 | Maid Hiring Management System v1.0 was discovered to contain a SQL injection vulnerability in the Booking Request page. | |
| Modificada | Media (4.8) | 0.47% | — | Phpgurukul Maid Hiring Management System | 8/8/2023 | 9/7/2026 | Maid Hiring Management System v1.0 was discovered to contain a SQL injection vulnerability in the Admin page. | |
| Modificada | Alta (7.2) | 1.0% | — | Phpgurukul Online Nurse Hiring System | 8/8/2023 | 9/7/2026 | Online Nurse Hiring System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in the View Request of Nurse Page in the Admin portal. | |
| Modificada | Media (4.8) | 0.49% | — | Phpgurukul Online Nurse Hiring System | 8/8/2023 | 9/7/2026 | Online Nurse Hiring System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in the Add Nurse Page in the Admin portal. | |
| Modificada | Media (4.8) | 0.49% | — | Phpgurukul Online Nurse Hiring System | 8/8/2023 | 9/7/2026 | Online Nurse Hiring System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in the Search Report Page of the Admin portal. | |
| Modificada | Media (4.8) | 0.49% | — | Phpgurukul Online Nurse Hiring System | 8/8/2023 | 9/7/2026 | Online Nurse Hiring System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in the Search Report Details of the Admin portal. | |
| Modificada | Media (4.8) | 0.48% | — | Phpgurukul Online Nurse Hiring System | 8/8/2023 | 9/7/2026 | Online Nurse Hiring System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability in the Profile Page of the Admin. | |
| Modificada | Crítica (9.8) | 1.4% | — | Phpgurukul Online Security Guards Hiring System | 4/8/2023 | 17/6/2026 | Online Security Guards Hiring System v.1.0 de PHPGurukul es vulnerable a SQL Injection a través de osghs/admin/search.php. | |
| Modificada | Alta (8.8) | 1.1% | 💥 PoC | Phpgurukul Online Shopping Portal | 1/8/2023 | 17/6/2026 | Online Shopping Portal Project v3.1 was discovered to contain a SQL injection vulnerability via the Email parameter at /shopping/login.php. | |
| Modificada | Crítica (9.8) | 1.5% | 💥 PoC | Phpgurukul ART Gallery Management System | 31/7/2023 | 17/6/2026 | Art Gallery Management System v1.0 contains a SQL injection vulnerability via the cid parameter at /agms/product.php. | |
| Modificada | Alta (7.2) | 1.1% | — | Phpgurukul Rail Pass Management System | 28/7/2023 | 17/6/2026 | Sql injection vulnerability found in Rail Pass Management System v.1.0 allows a remote attacker to execute arbitrary code via the editid parameter of the edit-cateogry-detail.php file. | |
| Modificada | Alta (7.2) | 1.3% | — | Phpgurukul Rail Pass Management System | 28/7/2023 | 17/6/2026 | Sql injection vulnerability found in Rail Pass Management System v.1.0 allows a remote attacker to execute arbitrary code via the viewid parameter of the view-pass-detail.php file. | |
| Modificada | Media (4.8) | 0.59% | — | Phpgurukul Rail Pass Management System | 28/7/2023 | 17/6/2026 | Cross Site Scripting vulnerability found in Rail Pass Management System v.1.0 allows a remote attacker to obtain sensitive information via the emial parameter of admin-profile.php. | |
| Modificada | Media (4.8) | 0.58% | — | Phpgurukul Rail Pass Management System | 28/7/2023 | 17/6/2026 | Cross Site Scripting vulnerability found in Rail Pass Management System v.1.0 allows a remote attacker to obtain sensitive information via the adminname parameter of admin-profile.php. | |
| Modificada | Alta (7.2) | 1.3% | — | Phpgurukul Rail Pass Management System | 28/7/2023 | 17/6/2026 | Sql injection vulnerability found in Rail Pass Management System v.1.0 allows a remote attacker to execute arbitrary code via the editid parameter of the edit-pass-detail.php file. | |
| Modificada | Alta (7.2) | 1.3% | — | Phpgurukul Rail Pass Management System | 28/7/2023 | 17/6/2026 | Sql injection vulnerability found in Rail Pass Management System v.1.0 allows a remote attacker to execute arbitrary code via the viewid parameter of the view-enquiry.php file. | |
| Modificada | Media (6.1) | 0.56% | — | Phpgurukul Online Fire Reporting System | 27/7/2023 | 17/6/2026 | A cross-site scripting (XSS) vulnerability in PHPGurukul Online Fire Reporting System Using PHP and MySQL 1.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the website title field. | |
| Modificada | Media (6.1) | 0.58% | — | Phpgurukul Online Fire Reporting System | 27/7/2023 | 17/6/2026 | A cross-site scripting (XSS) vulnerability in PHPGurukul Online Fire Reporting System Using PHP and MySQL 1.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the team name, leader, and member fields. | |
| Modificada | Media (6.1) | 0.36% | — | Phpgurukul Maid Hiring Management System | 13/7/2023 | 17/6/2026 | Una vulnerabilidad de tipo Cross-Site Scripting (XSS) en Maid Hiring Management System v1.0 permite a los atacantes ejecutar scripts web o HTML arbitrarios a través de un payload manipulado inyectado en el parámetro "Title" del componente "/admin/contactus.php". | |
| Modificada | Media (6.1) | 0.36% | — | Phpgurukul Maid Hiring Management System | 13/7/2023 | 17/6/2026 | A cross-site scripting (XSS) vulnerability in Maid Hiring Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Page Description of the /admin/aboutus.php component. | |
| Modificada | Media (6.1) | 0.36% | — | Phpgurukul Maid Hiring Management System | 13/7/2023 | 17/6/2026 | Maid Hiring Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the component /admin/search-booking-request.php. | |
| Modificada | Media (6.1) | 0.35% | — | Phpgurukul Teacher Subject Allocation System | 13/7/2023 | 17/6/2026 | A cross-site scripting (XSS) vulnerability in Teacher Subject Allocation System v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Search text box. | |
| Modificada | Crítica (9.1) | 0.68% | — | Phpgurukul Online Shopping Portal | 10/7/2023 | 17/6/2026 | A vulnerability was found in PHPGurukul Online Shopping Portal 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component Registration Page. The manipulation leads to improper restriction of excessive authentication attempts. The attack can be launched remotely.… | |
| Modificada | Media (4.8) | 0.54% | — | Phpgurukul Online Fire Reporting System | 10/7/2023 | 17/6/2026 | Cross Site Scripting (XSS) vulnerability in PHPGurukul Online Fire Reporting System Using PHP and MySQL v.1.2 allows attackers to execute arbitrary code via a crafted payload injected into the search field. |