Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2733▼ 589 respecto a la semana anterior
Críticas / altas1313▼ 190 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)294▼ 216 respecto a la semana anterior
95 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (6.9) | 0.56% | — | Adonesevangelista Online Blood Bank Management System | 31/7/2024 | 17/6/2026 | A vulnerability classified as problematic was found in itsourcecode Online Blood Bank Management System 1.0. This vulnerability affects unknown code of the file signup.php of the component User Registration Handler. The manipulation of the argument user leads to cross site scripting. The attack can be initiated… | |
| Analizada | Media (6.9) | 0.74% | — | Adonesevangelista Online Blood Bank Management System | 31/7/2024 | 17/6/2026 | A vulnerability classified as critical has been found in itsourcecode Online Blood Bank Management System 1.0. This affects an unknown part of the file /admin/index.php of the component Admin Login. The manipulation of the argument user leads to sql injection. It is possible to initiate the attack remotely. The… | |
| Analizada | Media (5.3) | 0.48% | — | Adonesevangelista Online Blood Bank Management System | 31/7/2024 | 17/6/2026 | A vulnerability was found in itsourcecode Online Blood Bank Management System 1.0. It has been rated as problematic. This issue affects some unknown processing of the file /request.php of the component Send Blood Request Page. The manipulation of the argument Address/bloodgroup leads to cross site scripting. The… | |
| Modificada | Media (6.9) | 0.73% | — | Adonesevangelista Online Blood Bank Management System | 22/7/2024 | 17/6/2026 | A vulnerability was found in itsourcecode Online Blood Bank Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file login.php of the component Login. The manipulation of the argument user/pass leads to sql injection. The attack may be launched remotely. The… | |
| Analizada | Media (6.9) | 0.85% | — | Adonesevangelista Online Blood Bank Management System | 30/5/2024 | 17/6/2026 | A vulnerability was found in itsourcecode Online Blood Bank Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file changepwd.php. The manipulation of the argument useremail leads to sql injection. The attack may be launched remotely. The exploit has been… | |
| Analizada | Media (5.3) | 0.69% | — | Adonesevangelista Online Blood Bank Management System | 30/5/2024 | 17/6/2026 | A vulnerability was found in itsourcecode Online Blood Bank Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file massage.php. The manipulation of the argument bid leads to sql injection. The attack can be launched remotely. The exploit has been… | |
| Modificada | Media (4.8) | 0.50% | — | Phpgurukul Blood Bank & Donor Management System | 13/1/2024 | 17/6/2026 | A vulnerability, which was classified as problematic, was found in Blood Bank & Donor Management 1.0. This affects an unknown part of the file request-received-bydonar.php. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and… | |
| Modificada | Alta (7.2) | 0.67% | — | Phpgurukul Blood Bank & Donor Management System | 12/1/2024 | 17/6/2026 | A vulnerability has been found in Blood Bank & Donor Management 5.6 and classified as critical. This vulnerability affects unknown code of the file /admin/request-received-bydonar.php. The manipulation leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be… | |
| Modificada | Alta (7.8) | 0.80% | 💥 Exploit | Code-projects Blood Bank | 14/11/2023 | 17/6/2026 | SQL Injection vulnerability in delete.php in Code-Projects Blood Bank 1.0 allows attackers to run arbitrary SQL commands via the 'bid' parameter. | |
| Modificada | Media (5.5) | 0.35% | 💥 PoC | Code-projects Blood Bank | 13/11/2023 | 17/6/2026 | SQL Injection vulnerability in cancel.php in Code-Projects Blood Bank 1.0 allows attackers to run arbitrary commands via the 'reqid' parameter. | |
| Modificada | Media (6.1) | 0.48% | 💥 PoC | Code-projects Blood Bank | 13/11/2023 | 17/6/2026 | Cross Site Scripting (XSS) in updateprofile.php in Code-Projects Blood Bank 1.0 allows attackers to run arbitrary code via the 'rename', 'remail', 'rphone' and 'rcity' parameters. | |
| Modificada | Media (6.1) | 0.47% | 💥 PoC | Code-projects Blood Bank | 13/11/2023 | 17/6/2026 | Cross Site Scripting (XSS) vulnerability in abs.php in Code-Projects Blood Bank 1.0 allows attackers to run arbitrary code via the 'error' parameter. | |
| Modificada | Media (5.5) | 0.36% | 💥 PoC | Code-projects Blood Bank | 13/11/2023 | 17/6/2026 | SQL injection vulnerability in receiverReg.php in Code-Projects Blood Bank 1.0 \allows attackers to run arbitrary SQL commands via 'remail' parameter. | |
| Modificada | Media (5.5) | 0.36% | 💥 PoC | Code-projects Blood Bank | 13/11/2023 | 17/6/2026 | SQL Injection vulnerability in receiverLogin.php in Code-Projects Blood Bank 1.0 allows attackers to run arbitrary SQL commands via 'remail' and 'rpassword' parameters. | |
| Modificada | Media (6.1) | 0.47% | 💥 PoC | Code-projects Blood Bank | 13/11/2023 | 17/6/2026 | Cross Site Scripting (XSS) in abs.php in Code-Projects Blood Bank 1.0 allows attackers to run arbitrary code via the 'search' parameter in the application URL. | |
| Modificada | Media (6.1) | 0.47% | 💥 PoC | Code-projects Blood Bank | 13/11/2023 | 17/6/2026 | Cross Site Scripting (XSS) vulnerability in index.php in Code-Projects Blood Bank 1.0 allows attackers to run arbitrary code via 'msg' parameter in application URL. | |
| Modificada | Media (5.5) | 0.39% | 💥 PoC | Code-projects Blood Bank | 13/11/2023 | 17/6/2026 | SQL Injection vulnerability in hospitalLogin.php in Code-Projects Blood Bank 1.0 allows attackers to run arbitrary SQL commands via 'hemail' and 'hpassword' parameters. | |
| Modificada | Media (5.4) | 0.50% | 💥 PoC | Phpgurukul Blood Bank & Donor Management System | 8/9/2023 | 17/6/2026 | Multiple stored cross-site scripting (XSS) vulnerabilities in /bbdms/sign-up.php of Blood Bank & Donor Management v2.2 allow attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Full Name, Message, or Address parameters. | |
| Modificada | Media (6.1) | 0.43% | — | Blood Bank Management System Project Blood Bank Management System | 25/12/2022 | 17/6/2026 | A vulnerability classified as problematic has been found in SourceCodester Blood Bank Management System 1.0. Affected is an unknown function of the file index.php?page=users of the component User Registration Handler. The manipulation of the argument Name leads to cross site scripting. It is possible to launch the… | |
| Modificada | Crítica (9.8) | 0.63% | — | Blood Bank Management System Project Blood Bank Management System | 25/12/2022 | 17/6/2026 | A vulnerability was found in SourceCodester Blood Bank Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file login.php. The manipulation of the argument username/password leads to sql injection. The attack may be initiated remotely. The identifier VDB-216773 was… |