Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2768▼ 428 respecto a la semana anterior
Críticas / altas1324▼ 116 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 243 respecto a la semana anterior
212 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (5.3) | 0.57% | — | Angeljudesuarez Tailoring Management System | 11/11/2024 | 17/6/2026 | A vulnerability classified as critical was found in itsourcecode Tailoring Management System 1.0. This vulnerability affects unknown code of the file /incadd.php. The manipulation of the argument inccat/desc/date/amount leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the… | |
| Analizada | Media (5.3) | 0.54% | — | Angeljudesuarez Farm Management System | 4/11/2024 | 17/6/2026 | A vulnerability has been found in itsourcecode Farm Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /edit-pig.php. The manipulation of the argument pigno/weight/arrived/breed/remark/status leads to sql injection. The attack can be initiated remotely. The exploit… | |
| Analizada | Media (5.3) | 0.53% | — | Angeljudesuarez Farm Management System | 3/11/2024 | 17/6/2026 | A vulnerability classified as critical was found in itsourcecode Farm Management System 1.0. Affected by this vulnerability is an unknown functionality of the file manage-breed.php. The manipulation of the argument breed leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the… | |
| Analizada | Media (5.3) | 0.57% | — | Angeljudesuarez Tailoring Management System | 1/11/2024 | 17/6/2026 | A vulnerability, which was classified as critical, was found in itsourcecode Tailoring Management System Project 1.0. This affects an unknown part of the file typeadd.php. The manipulation of the argument sex leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the… | |
| Analizada | Media (4.8) | 0.45% | — | Angeljudesuarez Student Management System | 22/10/2024 | 17/6/2026 | Cross Site Scripting vulnerability in student management system in php with source code v.1.0.0 allows a remote attacker to execute arbitrary code. | |
| Analizada | Alta (8.1) | 0.46% | — | Angeljudesuarez Online Clinic Management System | 21/10/2024 | 17/6/2026 | Online Clinic Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /success/editp.php?action=edit. | |
| Analizada | Media (6.1) | 0.38% | — | Angeljudesuarez Placement Management System | 7/10/2024 | 17/6/2026 | itsourcecode Placement Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via the Full Name field in registration.php. | |
| Analizada | Media (5.3) | 0.51% | — | Angeljudesuarez Online Book Store Project | 20/9/2024 | 17/6/2026 | A vulnerability was found in itsourcecode Online Bookstore 1.0. It has been rated as critical. This issue affects some unknown processing of the file admin_add.php. The manipulation of the argument image leads to unrestricted upload. The attack may be initiated remotely. The exploit has been disclosed to the public… | |
| Analizada | Media (5.3) | 0.71% | — | Angeljudesuarez Tailoring Management System | 9/9/2024 | 17/6/2026 | A vulnerability classified as critical was found in itsourcecode Tailoring Management System 1.0. Affected by this vulnerability is an unknown functionality of the file ssms.php. The manipulation of the argument customer leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the… | |
| Analizada | Media (5.3) | 0.58% | — | Angeljudesuarez Tailoring Management System | 8/9/2024 | 17/6/2026 | A vulnerability was found in itsourcecode Tailoring Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /inccatadd.php. The manipulation of the argument title leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to… | |
| Analizada | Media (6.1) | 0.36% | — | Angeljudesuarez Event Management System | 5/9/2024 | 17/6/2026 | Sourcecodehero Event Management System 1.0 allows Stored Cross-Site Scripting via parameters Full Name, Address, Email, and contact# in /clientdetails/admin/regester.php. | |
| Analizada | Crítica (9.8) | 0.53% | — | Angeljudesuarez Event Management System | 5/9/2024 | 17/6/2026 | Sourcecodehero Event Management System1.0 is vulnerable to SQL Injection via the parameter 'username' in /event/admin/login.php. | |
| Analizada | Media (5.3) | 0.59% | — | Angeljudesuarez Tailoring Management System | 27/8/2024 | 17/6/2026 | A vulnerability was found in itsourcecode Tailoring Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file staffedit.php. The manipulation of the argument id/stafftype/address/fullname/phonenumber/salary leads to sql injection. The attack can be… | |
| Analizada | Media (5.3) | 0.52% | — | Angeljudesuarez Tailoring Management System | 26/8/2024 | 17/6/2026 | A vulnerability classified as critical was found in itsourcecode Tailoring Management System 1.0. This vulnerability affects unknown code of the file staffcatedit.php. The manipulation of the argument title leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and… | |
| Analizada | Media (5.3) | 0.58% | — | Angeljudesuarez E-commerce Website | 25/8/2024 | 17/6/2026 | A vulnerability has been found in itsourcecode E-Commerce Website 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file search_list.php. The manipulation of the argument user leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to… | |
| Analizada | Media (6.9) | 0.58% | — | Angeljudesuarez Billing System | 18/8/2024 | 17/6/2026 | A vulnerability was found in itsourcecode Billing System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /addclient1.php. The manipulation of the argument lname/fname/mi/address/contact/meterReader leads to sql injection. The attack may be initiated remotely. The exploit has… | |
| Analizada | Media (6.9) | 0.62% | — | Angeljudesuarez Billing System | 15/8/2024 | 17/6/2026 | A vulnerability classified as critical has been found in itsourcecode Billing System 1.0. This affects an unknown part of the file addbill.php. The manipulation of the argument owners_id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. | |
| Analizada | Media (5.3) | 0.54% | — | Angeljudesuarez Tailoring Management System | 12/8/2024 | 17/6/2026 | A vulnerability was found in itsourcecode Tailoring Management System 1.0. It has been classified as critical. This affects an unknown part of the file /incedit.php?id=4. The manipulation of the argument id/inccat/desc/date/amount leads to sql injection. It is possible to initiate the attack remotely. The exploit has… | |
| Analizada | Media (5.3) | 0.69% | — | Angeljudesuarez Tailoring Management System | 6/8/2024 | 17/6/2026 | A vulnerability has been found in itsourcecode Tailoring Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /setlogo.php. The manipulation of the argument bgimg leads to unrestricted upload. The attack can be launched remotely. The exploit has been… | |
| Analizada | Media (5.3) | 0.67% | — | Angeljudesuarez Airline Reservation System | 6/8/2024 | 17/6/2026 | A vulnerability was found in itsourcecode Airline Reservation System 1.0. It has been rated as critical. Affected by this issue is the function save_settings of the file admin/admin_class.php. The manipulation of the argument img leads to unrestricted upload. The attack may be launched remotely. The exploit has been… | |
| Analizada | Media (5.3) | 0.55% | — | Angeljudesuarez Airline Reservation System | 6/8/2024 | 17/6/2026 | A vulnerability was found in itsourcecode Airline Reservation System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file flights.php. The manipulation of the argument departure_airport_id leads to sql injection. The attack can be launched remotely. The exploit… | |
| Analizada | Media (6.9) | 0.66% | — | Angeljudesuarez Airline Reservation System | 6/8/2024 | 17/6/2026 | A vulnerability was found in itsourcecode Airline Reservation System 1.0. It has been classified as critical. Affected is the function login/login2 of the file /admin/login.php of the component Admin Login Page. The manipulation of the argument username leads to sql injection. It is possible to launch the attack… | |
| Analizada | Media (5.3) | 0.65% | — | Angeljudesuarez Airline Reservation System | 6/8/2024 | 17/6/2026 | A vulnerability was found in itsourcecode Airline Reservation System 1.0 and classified as critical. This issue affects some unknown processing of the file /admin/index.php. The manipulation of the argument page leads to file inclusion. The attack may be initiated remotely. The exploit has been disclosed to the public… | |
| Analizada | Media (5.3) | 0.65% | — | Angeljudesuarez Airline Reservation System | 6/8/2024 | 17/6/2026 | A vulnerability has been found in itsourcecode Airline Reservation System 1.0 and classified as critical. This vulnerability affects unknown code of the file /index.php. The manipulation of the argument page leads to file inclusion. The attack can be initiated remotely. The exploit has been disclosed to the public and… | |
| Analizada | Media (5.3) | 0.51% | — | Angeljudesuarez Tailoring Management System Project IN PHP | 4/8/2024 | 17/6/2026 | A vulnerability, which was classified as critical, was found in itsourcecode Tailoring Management System 1.0. This affects an unknown part of the file partedit.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public… |