Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2698▼ 542 respecto a la semana anterior
Críticas / altas1273▼ 220 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)254▼ 248 respecto a la semana anterior
132 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Alta (7.2) | 0.96% | — | Fast Food Ordering System Project Fast Food Ordering System | 14/6/2022 | 17/6/2026 | Fast Food Ordering System v1.0 is vulnerable to SQL Injection via /ffos/classes/Master.php?f=delete_menu. | |
| Modificada | Crítica (9.1) | 1.2% | — | Fast Food Ordering System Project Fast Food Ordering System | 14/6/2022 | 17/6/2026 | Fast Food Ordering System v1.0 is vulnerable to Delete any file. via /ffos/classes/Master.php?f=delete_img. | |
| Modificada | Crítica (9.8) | 1.1% | — | Fast Food Ordering System Project Fast Food Ordering System | 14/6/2022 | 17/6/2026 | Fast Food Ordering System v1.0 is vulnerable to SQL Injection via /ffos/admin/menus/view_menu.php?id=. | |
| Modificada | Media (4.8) | 0.60% | — | Fast Food Ordering System Project Fast Food Ordering System | 7/6/2022 | 17/6/2026 | A vulnerability classified as problematic has been found in Fast Food Ordering System 1.0. Affected is the file Master.php of the Master List. The manipulation of the argument Description with the input foo "><img src="" onerror="alert(document.cookie)"> leads to cross site scripting. It is possible to launch the… | |
| Modificada | Alta (7.2) | 1.5% | — | Oretnom23 Online Food Ordering System | 25/5/2022 | 17/6/2026 | An arbitrary file upload vulnerability in the Select Image function of Online Food Ordering System v1.0 allows attackers to execute arbitrary code via a crafted PHP file. | |
| Modificada | Crítica (9.8) | 1.3% | — | Oretnom23 Online Food Ordering System | 25/5/2022 | 17/6/2026 | Online Food Ordering System v1.0 was discovered to contain a SQL injection vulnerability via the Search parameter at /online-food-order/food-search.php. | |
| Modificada | Crítica (9.8) | 2.5% | 💥 PoC | Oretnom23 Online Food Ordering System | 29/10/2021 | 17/6/2026 | Remote Code Exection (RCE) vulnerability exists in Sourcecodester Online Food Ordering System 2.0 via a maliciously crafted PHP file that bypasses the image upload filters. |