Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas3077▲ 492 respecto a la semana anterior
Críticas / altas1455▲ 50 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 1 respecto a la semana anterior
Sin puntuar (sin CVSS)238▲ 224 respecto a la semana anterior
–

5682 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaMedia (5.5)0.42%—Campcodes Farm Management System2/9/202517/6/2026
A vulnerability was found in Campcodes Farm Management System 1.0. This affects an unknown part of the file /reviewInput.php. Performing manipulation of the argument rating results in sql injection. The attack is possible to be carried out remotely. The exploit has been made public and could be used.
AnalizadaMedia (5.5)0.42%—Campcodes Computer Sales AND Inventory System1/9/202517/6/2026
A flaw has been found in Campcodes Computer Sales and Inventory System 1.0. The affected element is an unknown function of the file /pages/pos_transac.php?action=add. Executing manipulation of the argument cash/firstname can lead to sql injection. The attack may be performed from remote. The exploit has been published…
AnalizadaMedia (5.5)0.42%—Campcodes School LOG Management System1/9/202517/6/2026
A vulnerability was determined in SourceCodester/Campcodes School Log Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/admin_class.php. Executing manipulation of the argument id_no can lead to sql injection. The attack can be launched remotely. The exploit has been…
AnalizadaMedia (5.5)0.42%—Campcodes Online Learning Management System1/9/202517/6/2026
A vulnerability was found in Campcodes Online Learning Management System 1.0. Affected is an unknown function of the file /teacher_signup.php. Performing manipulation of the argument firstname results in sql injection. The attack can be initiated remotely. The exploit has been made public and could be used. Other…
AnalizadaMedia (5.5)0.47%—Campcodes Hospital Management System1/9/202525/9/2026
Se ha identificado una debilidad en Campcodes Hospital Management System 1.0. Afectada por esta vulnerabilidad es una funcionalidad desconocida del archivo /admin/ del componente Login del panel de administración. Esta manipulación del argumento Password causa inyección SQL. Es posible iniciar el ataque de forma…
AnalizadaMedia (5.5)0.42%—Campcodes Online Learning Management System1/9/202517/6/2026
A vulnerability was detected in Campcodes Online Learning Management System 1.0. This issue affects some unknown processing of the file /student_signup.php. The manipulation of the argument Username results in sql injection. The attack can be launched remotely. The exploit is now public and may be used.
AnalizadaMedia (5.5)0.42%—Campcodes Online Feeds Product Inventory System1/9/202517/6/2026
A security vulnerability has been detected in Campcodes Online Feeds Product Inventory System 1.0. This vulnerability affects unknown code of the file /feeds/index.php of the component Login. The manipulation of the argument Username leads to sql injection. The attack can be initiated remotely. The exploit has been…
AnalizadaMedia (5.5)0.41%—Campcodes Courier Management System1/9/202517/6/2026
A security flaw has been discovered in Campcodes/SourceCodester Courier Management System 1.0. Affected by this issue is the function Signup of the file /ajax.php. Performing manipulation of the argument lastname results in sql injection. It is possible to initiate the attack remotely. The exploit has been released to…
AnalizadaMedia (5.5)0.45%—Campcodes Courier Management System1/9/202517/6/2026
A vulnerability was determined in Campcodes/SourceCodester Courier Management System 1.0. Affected is the function Login of the file /ajax.php. This manipulation of the argument email causes sql injection. The attack is possible to be carried out remotely. The exploit has been publicly disclosed and may be utilized.
AnalizadaBaja (2)0.29%—Campcodes Online Hospital Management System1/9/202517/6/2026
A flaw has been found in Campcodes Online Hospital Management System 1.0. The impacted element is an unknown function of the file /edit-profile.php of the component Edit Profile Page. Executing manipulation of the argument Username can lead to cross site scripting. The attack may be launched remotely. The exploit has…
AnalizadaBaja (1.9)0.29%—Campcodes Online Hospital Management System1/9/202517/6/2026
A vulnerability was detected in Campcodes Online Hospital Management System 1.0. The affected element is an unknown function of the file /admin/patient-search.php of the component Patient Search Module. Performing manipulation of the argument Search by Name Mobile No results in cross site scripting. The attack may be…
AnalizadaMedia (5.5)0.41%—Campcodes Online Learning Management System1/9/202517/6/2026
A weakness has been identified in Campcodes Online Learning Management System 1.0. This issue affects some unknown processing of the file /login.php. This manipulation of the argument Username causes sql injection. The attack can be initiated remotely. The exploit has been made available to the public and could be…
AnalizadaMedia (5.5)0.41%—Campcodes Online Learning Management System31/8/202517/6/2026
A security flaw has been discovered in Campcodes Online Learning Management System 1.0. This vulnerability affects unknown code of the file /admin/login.php. The manipulation of the argument Username results in sql injection. It is possible to launch the attack remotely. The exploit has been released to the public and…
AnalizadaBaja (1.9)0.25%—Campcodes Hospital Management System31/8/202517/6/2026
A vulnerability was detected in Campcodes Hospital Management System 1.0. This affects an unknown function of the file /admin/edit-doctor-specialization.php of the component Edit Doctor Specialization Page. The manipulation results in cross site scripting. The attack may be launched remotely. The exploit is now public…
AnalizadaMedia (5.5)1.8%💥 ExploitCampcodes Online Loan Management System31/8/202517/6/2026
A weakness has been identified in Campcodes Online Loan Management System 1.0. The affected element is an unknown function of the file /ajax.php?action=login. Executing manipulation of the argument Username can lead to sql injection. The attack can be launched remotely. The exploit has been made available to the…
AnalizadaMedia (5.5)0.47%—Code-projects Human Resource Integrated System31/8/202517/6/2026
A security flaw has been discovered in code-projects Human Resource Integrated System 1.0. Impacted is an unknown function of the file login_attendance2.php. Performing manipulation of the argument employee_id/date results in sql injection. The attack can be initiated remotely. The exploit has been released to the…
AnalizadaMedia (5.5)0.45%—Code-projects Human Resource Integrated System31/8/202517/6/2026
A vulnerability was identified in code-projects Human Resource Integrated System 1.0. This issue affects some unknown processing of the file /login.php. Such manipulation of the argument user/pass leads to sql injection. It is possible to launch the attack remotely. The exploit is publicly available and might be used.
AnalizadaMedia (5.5)0.41%—Code-projects Human Resource Integrated System31/8/202517/6/2026
A vulnerability was determined in code-projects Human Resource Integrated System 1.0. This vulnerability affects unknown code of the file /login_query12.php. This manipulation of the argument ID causes sql injection. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be…
AnalizadaMedia (5.5)0.47%—Code-projects Human Resource Integrated System31/8/202517/6/2026
A vulnerability was found in code-projects Human Resource Integrated System 1.0. This affects an unknown part of the file /log_query.php. The manipulation of the argument ID results in sql injection. The attack may be performed from remote. The exploit has been made public and could be used.
AnalizadaMedia (5.5)0.41%—Campcodes Online Water Billing System31/8/202517/6/2026
A vulnerability has been found in Campcodes Online Water Billing System 1.0. Affected by this issue is some unknown functionality of the file /process.php. The manipulation of the argument Username leads to sql injection. The attack is possible to be carried out remotely. The exploit has been disclosed to the public…
AnalizadaMedia (5.5)0.41%—Campcodes Farm Management System31/8/202517/6/2026
A security flaw has been discovered in Campcodes Farm Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /review.php. The manipulation of the argument pid results in sql injection. The attack may be launched remotely. The exploit has been released to the public and may be…
AplazadaAlta (7.1)0.17%—Dmitry V Barcode Scanner With Inventory AND Order ManagerAI31/8/202526/9/2026
Vulnerabilidad de falta de autorización en UkrSolution Barcode Scanner with Inventory & Order Manager. Este problema afecta a Barcode Scanner with Inventory & Order Manager: desde n/a hasta 1.5.3.
AnalizadaMedia (5.5)0.54%—Campcodes Advanced Online Voting System30/8/202517/6/2026
A vulnerability was determined in Campcodes Advanced Online Voting System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/login.php. Executing manipulation of the argument Username can lead to sql injection. The attack may be launched remotely. The exploit has been publicly disclosed…
AnalizadaMedia (5.5)0.56%—Campcodes Online Shopping System30/8/202517/6/2026
A vulnerability was found in Campcodes Online Shopping System 1.0. Affected is an unknown function of the file /product.php. Performing manipulation of the argument p results in sql injection. The attack may be initiated remotely. The exploit has been made public and could be used.
AnalizadaMedia (5.5)0.41%—Campcodes Online Shopping System30/8/202517/6/2026
A vulnerability has been found in Campcodes Online Shopping System 1.0. This impacts an unknown function of the file /login.php. Such manipulation of the argument Password leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.