Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2811▼ 173 respecto a la semana anterior
Críticas / altas1356▲ 48 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)267▼ 256 respecto a la semana anterior
104 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Alta (8.1) | 0.44% | — | Campcodes Complete Web-based School Management System | 28/5/2024 | 17/6/2026 | A SQL injection vulnerability in /model/approve_petty_cash.php in campcodes Complete Web-Based School Management System 1.0 allows attacker to execute arbitrary SQL commands via the id parameter. | |
| Analizada | Crítica (9.8) | 0.51% | — | Campcodes Complete Web-based School Management System | 28/5/2024 | 17/6/2026 | A SQL injection vulnerability in /model/get_timetable.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the id parameter. | |
| Analizada | Media (5.4) | 0.29% | — | Campcodes Complete Web-based School Management System | 28/5/2024 | 17/6/2026 | A SQL injection vulnerability in /model/get_teacher_timetable.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the grade parameter. | |
| Analizada | Crítica (9.8) | 0.51% | — | Campcodes Complete Web-based School Management System | 28/5/2024 | 17/6/2026 | A SQL injection vulnerability in /model/get_grade.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the id parameter. | |
| Analizada | Crítica (9.8) | 0.51% | — | Campcodes Complete Web-based School Management System | 28/5/2024 | 17/6/2026 | A SQL injection vulnerability in /model/get_student.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the id parameter. | |
| Analizada | Media (6.3) | 0.30% | — | Campcodes Complete Web-based School Management System | 28/5/2024 | 17/6/2026 | A SQL injection vulnerability in /model/get_subject.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the id parameter. | |
| Analizada | Media (5.4) | 0.29% | — | Campcodes Complete Web-based School Management System | 28/5/2024 | 17/6/2026 | A SQL injection vulnerability in /model/get_exam.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the id parameter. | |
| Analizada | Media (6.5) | 0.43% | — | Campcodes Complete Web-based School Management System | 28/5/2024 | 17/6/2026 | A SQL injection vulnerability in /model/get_student_subject.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the index parameter. | |
| Analizada | Crítica (9.8) | 0.51% | — | Campcodes Complete Web-based School Management System | 28/5/2024 | 17/6/2026 | A SQL injection vulnerability in /model/get_subject_routing.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the id parameter. | |
| Analizada | Crítica (9.8) | 0.51% | — | Campcodes Complete Web-based School Management System | 28/5/2024 | 17/6/2026 | A SQL injection vulnerability in /model/get_student1.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the index parameter. | |
| Analizada | Crítica (9.8) | 0.51% | — | Campcodes Complete Web-based School Management System | 28/5/2024 | 17/6/2026 | A SQL injection vulnerability in /model/get_teacher.php in campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the id parameter. | |
| Analizada | Alta (8.6) | 0.38% | — | Campcodes Complete Web-based School Management System | 23/5/2024 | 17/6/2026 | A SQL injection vulnerability in /view/event1.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the month parameter. | |
| Analizada | Crítica (9.8) | 0.51% | — | Campcodes Complete Web-based School Management System | 23/5/2024 | 17/6/2026 | A SQL injection vulnerability in /view/conversation_history_admin.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the conversation_id parameter. | |
| Analizada | Crítica (9.8) | 0.51% | — | Campcodes Complete Web-based School Management System | 23/5/2024 | 17/6/2026 | A SQL injection vulnerability in /view/emarks_range_grade_update_form.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the conversation_id parameter. | |
| Analizada | Media (6.3) | 0.30% | — | Campcodes Complete Web-based School Management System | 23/5/2024 | 17/6/2026 | A SQL injection vulnerability in /model/update_grade.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the admission_fee parameter. | |
| Analizada | Crítica (9.8) | 0.51% | — | Campcodes Complete Web-based School Management System | 23/5/2024 | 17/6/2026 | A SQL injection vulnerability in /model/update_exam.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the name parameter. | |
| Analizada | Crítica (9.8) | 0.51% | — | Campcodes Complete Web-based School Management System | 23/5/2024 | 17/6/2026 | A SQL injection vulnerability in /model/update_subject.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the name parameter. | |
| Analizada | Media (5.3) | 0.22% | — | Campcodes Complete Web-based School Management System | 23/5/2024 | 17/6/2026 | A SQL injection vulnerability in /model/all_events1.php in Campcodes Complete Web-Based School Management System 1.0 allows attacker to execute arbitrary SQL commands via the month parameter. | |
| Analizada | Crítica (9.8) | 0.51% | — | Campcodes Complete Web-based School Management System | 23/5/2024 | 17/6/2026 | A SQL injection vulnerability in /view/find_friends.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the my_index parameter. | |
| Analizada | Alta (7.3) | 0.32% | — | Campcodes Complete Web-based School Management System | 23/5/2024 | 17/6/2026 | A SQL injection vulnerability in /model/update_subject_routing.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the grade parameter. | |
| Analizada | Crítica (9.8) | 0.51% | — | Campcodes Complete Web-based School Management System | 23/5/2024 | 17/6/2026 | A SQL injection vulnerability in /model/update_classroom.php in Campcodes Complete Web-Based School Management System 1.0 allows an attacker to execute arbitrary SQL commands via the name parameter. | |
| Analizada | Media (5.3) | 0.41% | — | Campcodes Complete Web-based School Management System | 23/5/2024 | 17/6/2026 | A vulnerability was found in Campcodes Complete Web-Based School Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /view/unread_msg.php. The manipulation of the argument my_index leads to sql injection. The attack may be initiated remotely. The exploit has been… | |
| Analizada | Media (5.3) | 0.41% | — | Campcodes Complete Web-based School Management System | 23/5/2024 | 17/6/2026 | A vulnerability has been found in Campcodes Complete Web-Based School Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /view/timetable_update_form.php. The manipulation of the argument grade leads to sql injection. The attack can be initiated remotely. The exploit… | |
| Analizada | Media (5.3) | 0.41% | — | Campcodes Complete Web-based School Management System | 23/5/2024 | 17/6/2026 | A vulnerability, which was classified as critical, was found in Campcodes Complete Web-Based School Management System 1.0. This affects an unknown part of the file /view/timetable_insert_form.php. The manipulation of the argument grade leads to sql injection. It is possible to initiate the attack remotely. The exploit… | |
| Analizada | Media (5.3) | 0.41% | — | Campcodes Complete Web-based School Management System | 23/5/2024 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in Campcodes Complete Web-Based School Management System 1.0. Affected by this issue is some unknown functionality of the file /view/timetable_grade_wise.php. The manipulation of the argument grade leads to sql injection. The attack may be launched… |