Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2703▼ 615 respecto a la semana anterior
Críticas / altas1293▼ 208 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)291▼ 219 respecto a la semana anterior
224 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.4) | 0.55% | — | Facebook Clone Script Project Facebook Clone Script | 12/2/2018 | 17/6/2026 | Cross Site Scripting (XSS) exists in PHP Scripts Mall Facebook Clone Script. | |
| Modificada | Media (6.1) | 2.5% | 💥 Exploit | OLX Clone Script Project OLX Clone Script | 12/2/2018 | 17/6/2026 | PHP Scripts Mall Multi Language Olx Clone Script 2.0.6 has XSS via the Leave Comment field. | |
| Modificada | Media (5.4) | 0.56% | — | HOT Scripts Clone Project HOT Scripts Clone | 9/2/2018 | 17/6/2026 | Cross Site Scripting (XSS) exists in the review section in PHP Scripts Mall Hot Scripts Clone Script Classified 3.1 via the title or description field. | |
| Modificada | Media (5.4) | 0.54% | — | Naukri Clone Script Project Naukri Clone Script | 7/2/2018 | 17/6/2026 | PHP Scripts Mall Naukri Clone Script 3.0.3 has Stored XSS via every profile input field. | |
| Modificada | Crítica (9.8) | 3.0% | 💥 Exploit | Vastal I-tech Buddy Zone Facebook Clone | 29/1/2018 | 17/6/2026 | SQL Injection exists in Vastal I-Tech Buddy Zone Facebook Clone 2.9.9 via the /chat_im/chat_window.php request_id parameter or the /search_events.php category parameter. | |
| Modificada | Crítica (9.8) | 3.0% | 💥 Exploit | Taskrabbit Clone Project Taskrabbit Clone | 29/1/2018 | 17/6/2026 | SQL Injection exists in Task Rabbit Clone 1.0 via the single_blog.php id parameter. | |
| Modificada | Crítica (9.8) | 1.1% | — | Resume Clone Script Project Resume Clone Script | 27/12/2017 | 17/6/2026 | PHP Scripts Mall Resume Clone Script has SQL Injection via the forget.php username parameter. | |
| Modificada | Media (5.4) | 0.49% | — | Fortunescripts Lynda Clone | 27/12/2017 | 17/6/2026 | FS Lynda Clone has XSS via the keywords parameter to tutorial/ or the edit_profile_first_name parameter to user/edit_profile. | |
| Modificada | Alta (8.8) | 0.46% | — | Fortunescripts Lynda Clone | 27/12/2017 | 17/6/2026 | FS Lynda Clone has CSRF via user/edit_profile, as demonstrated by adding content to the user panel. | |
| Modificada | Crítica (9.8) | 3.0% | 💥 Exploit | Lynda Clone Project Lynda Clone | 18/12/2017 | 17/6/2026 | FS Lynda Clone 1.0 has SQL Injection via the keywords parameter to tutorial/. | |
| Modificada | Crítica (9.8) | 2.2% | 💥 Exploit | Resume Clone Script Project Resume Clone Script | 13/12/2017 | 17/6/2026 | Resume Clone Script 2.0.5 has SQL Injection via the preview.php id parameter. | |
| Modificada | Crítica (9.8) | 2.2% | 💥 Exploit | Groupon Clone Script Project Groupon Clone Script | 13/12/2017 | 17/6/2026 | Groupon Clone Script 3.01 has SQL Injection via the city_ajax.php state_id parameter. | |
| Modificada | Crítica (9.8) | 3.6% | 💥 Exploit | Multivendor Penny Auction Clone Script Project Multivendor Penny Auction Clone Script | 13/12/2017 | 17/6/2026 | Multivendor Penny Auction Clone Script 1.0 has SQL Injection via the PATH_INFO to the /detail URI. | |
| Modificada | Crítica (9.8) | 3.0% | 💥 Exploit | Kickstarter Clone Script Project Kickstarter Clone Script | 13/12/2017 | 17/6/2026 | Kickstarter Clone Script 2.0 has SQL Injection via the investcalc.php projid parameter. | |
| Modificada | Crítica (9.8) | 3.0% | 💥 Exploit | Foodspotting Clone Script Project Foodspotting Clone Script | 13/12/2017 | 17/6/2026 | Foodspotting Clone Script 1.0 has SQL Injection via the quicksearch.php q parameter. | |
| Modificada | Alta (8.8) | 2.5% | 💥 Exploit | Facebook Clone Script Project Facebook Clone Script | 13/12/2017 | 17/6/2026 | Facebook Clone Script 1.0 has SQL Injection via the friend-profile.php id parameter. | |
| Modificada | Crítica (9.8) | 3.7% | 💥 Exploit | HOT Scripts Clone Project HOT Scripts Clone | 13/12/2017 | 17/6/2026 | Hot Scripts Clone 3.1 has SQL Injection via the /categories subctid or mctid parameter. | |
| Modificada | Crítica (9.8) | 3.0% | 💥 Exploit | Consumer Complaints Clone Script Project Consumer Complaints Clone Script | 13/12/2017 | 17/6/2026 | Consumer Complaints Clone Script 1.0 has SQL Injection via the other-user-profile.php id parameter. | |
| Modificada | Crítica (9.8) | 3.0% | 💥 Exploit | Nearbuy Clone Script Project Nearbuy Clone Script | 13/12/2017 | 17/6/2026 | Nearbuy Clone Script 3.2 has SQL Injection via the category_list.php search parameter. | |
| Modificada | Crítica (9.8) | 3.9% | 💥 Exploit | Stackoverflow-clone Project Stackoverflow-clone | 13/12/2017 | 17/6/2026 | FS Stackoverflow Clone 1.0 has SQL Injection via the /question keywords parameter. | |
| Modificada | Crítica (9.8) | 3.0% | 💥 Exploit | Thumbtack Clone Project Thumbtack Clone | 13/12/2017 | 17/6/2026 | FS Thumbtack Clone 1.0 has SQL Injection via the browse-category.php cat parameter or the browse-scategory.php sc parameter. | |
| Modificada | Crítica (9.8) | 3.0% | 💥 Exploit | Imdb Clone Project Imdb Clone | 13/12/2017 | 17/6/2026 | FS IMDB Clone 1.0 has SQL Injection via the movie.php f parameter, tvshow.php s parameter, or show_misc_video.php id parameter. | |
| Modificada | Crítica (9.8) | 3.0% | 💥 Exploit | Indiamart Clone Project Indiamart Clone | 13/12/2017 | 17/6/2026 | FS Indiamart Clone 1.0 has SQL Injection via the catcompany.php token parameter, buyleads-details.php id parameter, or company/index.php c parameter. | |
| Modificada | Crítica (9.8) | 3.0% | 💥 Exploit | OLX Clone Project OLX Clone | 13/12/2017 | 17/6/2026 | FS Olx Clone 1.0 has SQL Injection via the subpage.php scat parameter or the message.php pid parameter. | |
| Modificada | Crítica (9.8) | 3.0% | 💥 Exploit | Monster Clone Project Monster Clone | 13/12/2017 | 17/6/2026 | FS Monster Clone 1.0 has SQL Injection via the Employer_Details.php id parameter. |