Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2970▼ 106 respecto a la semana anterior
Críticas / altas1447▲ 86 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
23 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Baja (2.1) | 0.32% | — | Janobe Baby Care System | 10/11/2025 | 17/6/2026 | A vulnerability was identified in SourceCodester Baby Care System 1.0. This affects an unknown part of the file /updatewelcome.php?id=siteoptions&action=welcome. Such manipulation of the argument roleid leads to sql injection. The attack can be launched remotely. The exploit is publicly available and might be used. | |
| Analizada | Baja (2) | 0.34% | — | Janobe Baby Care System | 10/11/2025 | 17/6/2026 | A vulnerability was determined in SourceCodester Baby Care System 1.0. Affected by this issue is some unknown functionality of the file /admin.php?id=inbox. This manipulation of the argument msgid causes sql injection. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized. | |
| Modificada | Crítica (9.8) | 1.3% | — | Janobe Baby Care System | 21/4/2022 | 17/6/2026 | Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/uesrs.php&&action=delete&userid=4. | |
| Modificada | Crítica (9.8) | 1.2% | — | Janobe Baby Care System | 21/4/2022 | 17/6/2026 | Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/uesrs.php&action=type&userrole=User&userid=. | |
| Modificada | Crítica (9.8) | 1.2% | — | Janobe Baby Care System | 21/4/2022 | 17/6/2026 | Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/uesrs.php&action=type&userrole=Admin&userid=3. | |
| Modificada | Crítica (9.8) | 1.2% | — | Janobe Baby Care System | 21/4/2022 | 17/6/2026 | Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/uesrs.php&action=display&value=Hide&userid=. | |
| Modificada | Crítica (9.8) | 1.2% | — | Janobe Baby Care System | 21/4/2022 | 17/6/2026 | Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/siteoptions.php&action=displaygoal&value=1&roleid=1. | |
| Modificada | Crítica (9.8) | 0.94% | — | Janobe Baby Care System | 21/4/2022 | 17/6/2026 | Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin.php?id=siteoptions&social=edit&sid=2. | |
| Modificada | Crítica (9.8) | 1.2% | — | Janobe Baby Care System | 21/4/2022 | 17/6/2026 | Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/uesrs.php&action=display&value=Show&userid=. | |
| Modificada | Crítica (9.8) | 1.2% | — | Janobe Baby Care System | 21/4/2022 | 17/6/2026 | Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin.php?id=siteoptions&social=display&value=0&sid=2. | |
| Modificada | Crítica (9.8) | 1.2% | — | Janobe Baby Care System | 21/4/2022 | 17/6/2026 | Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/siteoptions.php&social=remove&sid=2. | |
| Modificada | Crítica (9.8) | 1.2% | — | Janobe Baby Care System | 21/4/2022 | 17/6/2026 | Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/inbox.php&action=delete&msgid=. | |
| Modificada | Crítica (9.8) | 1.2% | — | Janobe Baby Care System | 21/4/2022 | 17/6/2026 | Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/inbox.php&action=read&msgid=. | |
| Modificada | Crítica (9.8) | 1.2% | — | Janobe Baby Care System | 21/4/2022 | 17/6/2026 | Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/pagerole.php&action=edit&roleid=. | |
| Modificada | Crítica (9.8) | 1.2% | — | Janobe Baby Care System | 21/4/2022 | 17/6/2026 | Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/pagerole.php&action=display&value=1&roleid=. | |
| Modificada | Crítica (9.8) | 1.3% | — | Janobe Baby Care System | 21/4/2022 | 17/6/2026 | Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/posts.php&find=. | |
| Modificada | Crítica (9.8) | 1.3% | — | Janobe Baby Care System | 21/4/2022 | 17/6/2026 | Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/posts.php&action=delete. | |
| Modificada | Crítica (9.8) | 1.3% | — | Janobe Baby Care System | 21/4/2022 | 17/6/2026 | Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin/posts.php&action=edit. | |
| Modificada | Crítica (9.8) | 1.2% | — | Janobe Baby Care System | 21/4/2022 | 17/6/2026 | Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via /admin.php?id=posts&action=display&value=1&postid=. | |
| Modificada | Crítica (9.8) | 1.3% | — | Janobe Baby Care System | 21/4/2022 | 17/6/2026 | Baby Care System v1.0 was discovered to contain a SQL injection vulnerability via BabyCare/admin.php?id=theme&setid=. | |
| Modificada | Media (5.4) | 0.89% | — | Janobe Baby Care System | 10/3/2021 | 17/6/2026 | Baby Care System 1.0 is affected by a cross-site scripting (XSS) vulnerability in the Edit Page tab through the Post title parameter. | |
| Modificada | Alta (7.2) | 2.6% | — | Janobe Baby Care System | 17/2/2021 | 17/6/2026 | An arbitrary file upload vulnerability has been identified in posts.php in Baby Care System 1.0. The vulnerability could be exploited by an remote attacker to upload content to the server, including PHP files, which could result in command execution and obtaining a shell. | |
| Modificada | Crítica (9.8) | 1.2% | — | Janobe Baby Care System | 17/2/2021 | 17/6/2026 | Baby Care System v1.0 is vulnerable to SQL injection via the 'id' parameter on the contentsectionpage.php page. |