Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2533▼ 411 respecto a la semana anterior
Críticas / altas1305▲ 22 respecto a la semana anterior
Nueva explotación activa (KEV)6▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)59▼ 467 respecto a la semana anterior
49 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Baja (2) | 0.25% | — | Sambitraj Student Management SystemAI | 31/8/2026 | 31/8/2026 | A flaw has been found in sambitraj Student Management System up to 56ba287f2e9031523ccb4244cb6e3fe530e4e5d5. This impacts an unknown function of the file aca.sql of the component Password Handler. Executing a manipulation of the argument Password can lead to cleartext storage of sensitive information. The attack can… | |
| Aplazada | Media (5.5) | 0.53% | — | Sambitraj Student-management-systemAI | 31/8/2026 | 31/8/2026 | A vulnerability was detected in sambitraj Student-Management-System up to 56ba287f2e9031523ccb4244cb6e3fe530e4e5d5. This affects an unknown function of the file aca.sql. Performing a manipulation results in use of default password. Remote exploitation of the attack is possible. The exploit is now public and may be… | |
| Aplazada | Baja (2.9) | 0.46% | — | Sambitraj Student-management-systemAI | 31/8/2026 | 31/8/2026 | A security vulnerability has been detected in sambitraj Student-Management-System up to 56ba287f2e9031523ccb4244cb6e3fe530e4e5d5. The impacted element is the function session_start. Such manipulation leads to cookie without 'httponly' flag. The attack may be launched remotely. A high complexity level is associated… | |
| Aplazada | Baja (2.1) | 0.35% | — | Sambitraj Student Management SystemAI | 30/8/2026 | 1/9/2026 | A vulnerability was detected in sambitraj Student Management System up to 56ba287f2e9031523ccb4244cb6e3fe530e4e5d5. Affected by this issue is the function mysqli_query of the file student_dashboard.php of the component Student Dashboard. The manipulation of the argument roll_no results in improper authorization. The… | |
| Aplazada | Baja (2.1) | 0.33% | — | Sambitraj Student-management-systemAI | 23/8/2026 | 24/8/2026 | A flaw has been found in sambitraj Student-Management-System up to 56ba287f2e9031523ccb4244cb6e3fe530e4e5d5. This affects an unknown part of the component Management Mutation Handler. This manipulation of the argument roll_no/name/father_name/class/mobile/email/password/remark causes sql injection. The attack is… | |
| Aplazada | Baja (2.1) | 0.33% | — | Sambitraj Student-management-systemAI | 23/8/2026 | 27/8/2026 | A vulnerability was detected in sambitraj Student-Management-System up to 56ba287f2e9031523ccb4244cb6e3fe530e4e5d5. Affected by this issue is some unknown functionality of the component Dashboard. The manipulation of the argument roll_no/teacher_name results in sql injection. The attack can be executed remotely. The… | |
| Aplazada | Baja (1.9) | 0.21% | — | Sambitraj Student-management-systemAI | 30/5/2026 | 22/7/2026 | A vulnerability has been found in sambitraj STUDENT-MANAGEMENT-SYSTEM 1.0. Affected is an unknown function of the component Dashboard Page. The manipulation of the argument Name leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.… | |
| Aplazada | Media (5.5) | 0.26% | — | Sambitraj Student-management-systemAI | 30/5/2026 | 22/7/2026 | A flaw has been found in sambitraj STUDENT-MANAGEMENT-SYSTEM 1.0. This impacts an unknown function of the component Login Page. Executing a manipulation of the argument email can lead to sql injection. The attack may be performed from remote. The exploit has been published and may be used. The project was informed of… | |
| Aplazada | Media (5.5) | 0.50% | — | Sambitraj Student-management-systemAI | 26/5/2026 | 23/7/2026 | A vulnerability has been found in sambitraj STUDENT-MANAGEMENT-SYSTEM up to 56ba287f2e9031523ccb4244cb6e3fe530e4e5d5. The affected element is an unknown function of the component Dashboard. Such manipulation leads to improper access controls. The attack may be launched remotely. The exploit has been disclosed to the… | |
| Modificada | Alta (7.5) | 0.53% | — | Qualcomm Agatti FirmwareQualcomm Apq8009 FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8053 Firmware+42 | 2/11/2020 | 17/6/2026 | u'While processing invalid connection request PDU which is nonstandard (interval or timeout is 0) from central device may lead peripheral system enter into dead lock state.(This CVE is equivalent to InvalidConnectionRequest(CVE-2019-19193) mentioned in sweyntooth paper)' in Snapdragon Auto, Snapdragon Compute,… | |
| Modificada | Crítica (9.8) | 0.71% | — | Qualcomm Apq8053 FirmwareQualcomm Apq8076 FirmwareQualcomm Ar9344 FirmwareQualcomm Bitra Firmware+37 | 2/11/2020 | 17/6/2026 | u'Buffer over-read issue in Bluetooth peripheral firmware due to lack of check for invalid opcode and length of opcode received from central device(This CVE is equivalent to Link Layer Length Overfow issue (CVE-2019-16336,CVE-2019-17519) and Silent Length Overflow issue(CVE-2019-17518) mentioned in sweyntooth paper)'… | |
| Modificada | Alta (7.8) | 0.25% | — | Qualcomm Bitra FirmwareQualcomm Nicobar FirmwareQualcomm Saipan FirmwareQualcomm Sm6150 Firmware+3 | 2/11/2020 | 17/6/2026 | u'Use out of range pointer issue can occur due to incorrect buffer range check during the execution of qseecom' in Snapdragon Auto, Snapdragon Compute, Snapdragon Mobile, Snapdragon Voice & Music in Bitra, Nicobar, Saipan, SM6150, SM8150, SM8250, SXR2130 | |
| Modificada | Alta (7.8) | 0.23% | — | Qualcomm Apq8009 FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8053 FirmwareQualcomm Apq8098 Firmware+13 | 2/11/2020 | 17/6/2026 | u'Use out of range pointer issue can occur due to incorrect buffer range check during the execution of qseecom.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables in APQ8009, APQ8017, APQ8053, APQ8098, Bitra,… | |
| Modificada | Alta (7.8) | 0.23% | — | Qualcomm Agatti FirmwareQualcomm Bitra FirmwareQualcomm Kamorta FirmwareQualcomm Nicobar Firmware+25 | 2/11/2020 | 17/6/2026 | u'Due to an incorrect SMMU configuration, the modem crypto engine can potentially compromise the hypervisor' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired Infrastructure and Networking… | |
| Modificada | Alta (7.8) | 0.22% | — | Qualcomm Agatti FirmwareQualcomm Apq8009 FirmwareQualcomm Apq8098 FirmwareQualcomm Bitra Firmware+41 | 2/11/2020 | 17/6/2026 | u'QSEE reads the access permission policy for the SMEM TOC partition from the SMEM TOC contents populated by XBL Loader and applies them without validation' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music,… | |
| Modificada | Crítica (9.8) | 1.1% | — | Qualcomm Agatti FirmwareQualcomm Apq8053 FirmwareQualcomm Apq8096au FirmwareQualcomm Apq8098 Firmware+36 | 2/11/2020 | 17/6/2026 | u'Buffer overflow can happen as part of SIP message packet processing while storing values in array due to lack of check to validate the index length' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in Agatti,… | |
| Modificada | Crítica (9.8) | 0.90% | — | Qualcomm Agatti FirmwareQualcomm Apq8053 FirmwareQualcomm Apq8096au FirmwareQualcomm Apq8098 Firmware+37 | 2/11/2020 | 17/6/2026 | u'Buffer overflow occurs while processing SIP message packet due to lack of check of index validation before copying into it' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in Agatti, APQ8053, APQ8096AU,… | |
| Modificada | Alta (7.8) | 0.21% | — | Qualcomm Agatti FirmwareQualcomm Bitra FirmwareQualcomm Kamorta FirmwareQualcomm Qca6390 Firmware+12 | 2/11/2020 | 17/6/2026 | u'An Unaligned address or size can propagate to the database due to improper page permissions and can lead to improper access control' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wired Infrastructure and Networking… | |
| Modificada | Alta (7.8) | 0.19% | — | Qualcomm Agatti FirmwareQualcomm Apq8009 FirmwareQualcomm Apq8017 FirmwareQualcomm Apq8053 Firmware+47 | 2/11/2020 | 17/6/2026 | u'Array index underflow issue in adsp driver due to improper check of channel id before used as array index.' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired… | |
| Modificada | Alta (7) | 0.14% | — | Qualcomm Agatti FirmwareQualcomm Apq8053 FirmwareQualcomm Bitra FirmwareQualcomm Ipq4019 Firmware+29 | 2/11/2020 | 17/6/2026 | u'Two threads running simultaneously from user space can lead to race condition in fastRPC driver' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon Wired Infrastructure and… | |
| Modificada | Alta (7.8) | 0.20% | — | Qualcomm Agatti FirmwareQualcomm Apq8096au FirmwareQualcomm Apq8098 FirmwareQualcomm Bitra Firmware+26 | 2/11/2020 | 17/6/2026 | u'Third-party app may also call the broadcasts in Perfdump and cause privilege escalation issue due to improper access control' in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearables in Agatti, APQ8096AU, APQ8098, Bitra, Kamorta,… | |
| Modificada | Alta (7.8) | 0.19% | — | Qualcomm Agatti FirmwareQualcomm Apq8009 FirmwareQualcomm Bitra FirmwareQualcomm Ipq4019 Firmware+36 | 2/11/2020 | 17/6/2026 | u'Possible buffer overflow in MHI driver due to lack of input parameter validation of EOT events received from MHI device side' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables,… | |
| Modificada | Alta (7.8) | 0.19% | — | Qualcomm Agatti FirmwareQualcomm Apq8009 FirmwareQualcomm Bitra FirmwareQualcomm Ipq4019 Firmware+44 | 2/11/2020 | 17/6/2026 | u'Out of bound access can happen in MHI command process due to lack of check of channel id value received from MHI devices' in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wearables, Snapdragon… | |
| Modificada | Media (5.5) | 0.27% | — | Qualcomm Bitra FirmwareQualcomm Kamorta FirmwareQualcomm Nicobar FirmwareQualcomm Qcs404 Firmware+13 | 9/9/2020 | 17/6/2026 | u'During execution after Address Space Layout Randomization is turned on for QTEE, part of code is still mapped at known address including code segments' in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Snapdragon Wired… | |
| Modificada | Alta (7.8) | 0.22% | — | Qualcomm Bitra FirmwareQualcomm Kamorta FirmwareQualcomm Qcs605 FirmwareQualcomm Saipan Firmware+3 | 9/9/2020 | 17/6/2026 | u'During the error occurrence in capture request, the buffer is freed and later accessed causing the camera APP to fail due to memory use-after-free' in Snapdragon Consumer IOT, Snapdragon Mobile in Bitra, Kamorta, QCS605, Saipan, SDM710, SM8250, SXR2130 |