Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2839▼ 348 respecto a la semana anterior
Críticas / altas1378▼ 43 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)293▼ 216 respecto a la semana anterior
390 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Baja (2.1) | 0.49% | — | Campcodes Online Hotel Reservation System | 31/7/2025 | 17/6/2026 | A vulnerability, which was classified as critical, was found in Campcodes Online Hotel Reservation System 1.0. Affected is an unknown function of the file /admin/edit_room.php. The manipulation of the argument room_id leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed… | |
| Analizada | Baja (2.1) | 0.49% | — | Campcodes Online Hotel Reservation System | 31/7/2025 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in Campcodes Online Hotel Reservation System 1.0. This issue affects some unknown processing of the file /add_reserve.php. The manipulation of the argument room_id leads to sql injection. The attack may be initiated remotely. The exploit has been… | |
| Analizada | Baja (2) | 0.33% | — | Campcodes Online Hotel Reservation System | 31/7/2025 | 17/6/2026 | A vulnerability classified as problematic was found in Campcodes Online Hotel Reservation System 1.0. This vulnerability affects unknown code of the file /admin/add_query_account.php. The manipulation of the argument Name leads to cross site scripting. The attack can be initiated remotely. The exploit has been… | |
| Analizada | Baja (2) | 0.49% | — | Campcodes Online Hotel Reservation System | 31/7/2025 | 17/6/2026 | A vulnerability classified as critical has been found in Campcodes Online Hotel Reservation System 1.0. This affects an unknown part of the file /admin/edit_room.php. The manipulation of the argument photo leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit has been disclosed to… | |
| Analizada | Media (5.5) | 0.59% | — | Campcodes Online Hotel Reservation System | 31/7/2025 | 17/6/2026 | A vulnerability was found in Campcodes Online Hotel Reservation System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /admin/index.php of the component Login. The manipulation of the argument username/password leads to sql injection. The attack may be launched… | |
| Aplazada | Media (6.1) | 0.26% | — | MY Reservation SystemAI | 25/7/2025 | 17/6/2026 | The My Reservation System WordPress plugin through 2.3 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against high privilege users such as admin. | |
| Analizada | Alta (7.8) | 0.29% | — | Solarwinds Observability Self-hosted | 24/7/2025 | 17/6/2026 | SolarWinds Observability Self-Hosted is susceptible to Deserialization of Untrusted Data Local Privilege Escalation vulnerability. An attacker with low privileges can escalate privileges to run malicious files copied to a permission-protected folder. This vulnerability requires authentication from a low-level account… | |
| Analizada | Baja (2) | 0.36% | 💥 PoC | Campcodes Online Movie Theater Seat Reservation System | 19/7/2025 | 17/6/2026 | A vulnerability was found in Campcodes Online Movie Theater Seat Reservation System 1.0. It has been classified as problematic. This affects an unknown part of the file /index.php?page=reserve of the component Reserve Your Seat Page. The manipulation of the argument Firstname/Lastname leads to cross site scripting. It… | |
| Analizada | Media (5.5) | 0.60% | — | Campcodes Online Movie Theater Seat Reservation System | 19/7/2025 | 17/6/2026 | A vulnerability has been found in Campcodes Online Movie Theater Seat Reservation System 1.0 and classified as critical. This vulnerability affects unknown code of the file /admin/manage_seat.php. The manipulation of the argument ID leads to sql injection. The attack can be initiated remotely. The exploit has been… | |
| Analizada | Media (5.5) | 0.45% | — | Anisha Wedding Reservation | 14/7/2025 | 17/6/2026 | A vulnerability was found in code-projects Wedding Reservation 1.0. It has been classified as critical. This affects an unknown part of the file /global.php. The manipulation of the argument lu leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may… | |
| Analizada | Media (5.5) | 0.48% | — | Campcodes Online Movie Theater Seat Reservation System | 13/7/2025 | 17/6/2026 | A vulnerability, which was classified as critical, was found in Campcodes Online Movie Theater Seat Reservation System 1.0. This affects the function save_movie of the file /admin/admin_class.php. The manipulation of the argument cover leads to unrestricted upload. It is possible to initiate the attack remotely. The… | |
| Analizada | Media (5.5) | 0.45% | — | Campcodes Online Movie Theater Seat Reservation System | 11/7/2025 | 17/6/2026 | A vulnerability, which was classified as critical, was found in Campcodes Online Movie Theater Seat Reservation System 1.0. This affects an unknown part of the file /admin/manage_movie.php. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit has been… | |
| Analizada | Media (5.5) | 0.45% | — | Campcodes Online Movie Theater Seat Reservation System | 11/7/2025 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in Campcodes Online Movie Theater Seat Reservation System 1.0. Affected by this issue is some unknown functionality of the file /reserve.php. The manipulation of the argument ID leads to sql injection. The attack may be launched remotely. The exploit… | |
| Analizada | Media (5.5) | 0.45% | — | Campcodes Online Movie Theater Seat Reservation System | 11/7/2025 | 17/6/2026 | A vulnerability classified as critical was found in Campcodes Online Movie Theater Seat Reservation System 1.0. Affected by this vulnerability is an unknown functionality of the file /manage_reserve.php. The manipulation of the argument mid leads to sql injection. The attack can be launched remotely. The exploit has… | |
| Analizada | Media (5.5) | 0.45% | — | Campcodes Online Movie Theater Seat Reservation System | 11/7/2025 | 17/6/2026 | A vulnerability classified as critical has been found in Campcodes Online Movie Theater Seat Reservation System 1.0. Affected is an unknown function of the file /admin/manage_theater.php. The manipulation of the argument ID leads to sql injection. It is possible to launch the attack remotely. The exploit has been… | |
| Analizada | Media (5.5) | 0.50% | — | Fabian Simple Online Hotel Reservation System | 24/6/2025 | 17/6/2026 | A vulnerability was found in code-projects Simple Online Hotel Reservation System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /admin/delete_account.php. The manipulation of the argument admin_id leads to sql injection. The attack can be initiated remotely. The exploit has… | |
| Analizada | Media (5.5) | 0.48% | — | Fabian Online Hotel Reservation System | 22/6/2025 | 17/6/2026 | A vulnerability has been found in code-projects Online Hotel Reservation System 1.0 and classified as critical. This vulnerability affects unknown code of the file /admin/execedituser.php. The manipulation of the argument userid leads to sql injection. The attack can be initiated remotely. The exploit has been… | |
| Analizada | Media (5.5) | 0.48% | — | Fabian Online Hotel Reservation System | 22/6/2025 | 17/6/2026 | A vulnerability, which was classified as critical, was found in code-projects Online Hotel Reservation System 1.0. This affects an unknown part of the file /reservation/demo.php. The manipulation of the argument Start leads to sql injection. It is possible to initiate the attack remotely. The exploit has been… | |
| Analizada | Media (5.5) | 0.48% | — | Fabian Online Hotel Reservation System | 22/6/2025 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in code-projects Online Hotel Reservation System 1.0. Affected by this issue is some unknown functionality of the file /reservation/order.php. The manipulation of the argument Start leads to sql injection. The attack may be launched remotely. The… | |
| Analizada | Media (5.5) | 0.48% | — | Fabian Online Hotel Reservation System | 22/6/2025 | 17/6/2026 | A vulnerability classified as critical was found in code-projects Online Hotel Reservation System 1.0. Affected by this vulnerability is an unknown functionality of the file /messageexec.php. The manipulation of the argument Name leads to sql injection. The attack can be launched remotely. The exploit has been… | |
| Analizada | Media (5.5) | 0.48% | — | Fabian Simple Online Hotel Reservation System | 22/6/2025 | 17/6/2026 | A vulnerability was found in code-projects Simple Online Hotel Reservation System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /admin/delete_pending.php. The manipulation of the argument transaction_id leads to sql injection. The attack can be initiated remotely. The… | |
| Analizada | Media (5.5) | 0.48% | — | Fabian Simple Online Hotel Reservation System | 22/6/2025 | 17/6/2026 | A vulnerability was found in code-projects Simple Online Hotel Reservation System 1.0. It has been classified as critical. This affects an unknown part of the file /admin/confirm_reserve.php. The manipulation of the argument transaction_id leads to sql injection. It is possible to initiate the attack remotely. The… | |
| Analizada | Media (5.5) | 0.48% | — | Fabian Simple Online Hotel Reservation System | 22/6/2025 | 17/6/2026 | A vulnerability was found in code-projects Simple Online Hotel Reservation System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/checkout_query.php. The manipulation of the argument transaction_id leads to sql injection. The attack may be launched remotely. The… | |
| Analizada | Media (5.5) | 0.48% | — | Fabian Simple Online Hotel Reservation System | 22/6/2025 | 17/6/2026 | A vulnerability has been found in code-projects Simple Online Hotel Reservation System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/delete_room.php. The manipulation of the argument room_id leads to sql injection. The attack can be launched remotely. The… | |
| Analizada | Media (5.5) | 0.48% | — | Fabian Simple Online Hotel Reservation System | 22/6/2025 | 17/6/2026 | A vulnerability, which was classified as critical, was found in code-projects Simple Online Hotel Reservation System 1.0. Affected is an unknown function of the file /admin/index.php. The manipulation of the argument Username leads to sql injection. It is possible to launch the attack remotely. The exploit has been… |