Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2975▼ 108 respecto a la semana anterior
Críticas / altas1449▲ 87 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)350▼ 160 respecto a la semana anterior
52 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Baja (2.1) | 0.20% | — | Itsourcecode Online Admission SystemAI | 5/10/2026 | 6/10/2026 | A vulnerability was identified in itsourcecode Online Admission System 1.0. Impacted is an unknown function of the file /admin/schoolyear.php. Such manipulation of the argument sy leads to sql injection. The attack can be launched remotely. The exploit is publicly available and might be used. | |
| Aplazada | Media (5.5) | 0.26% | — | Itsourcecode Online Admission SystemAI | 5/10/2026 | 6/10/2026 | A vulnerability was determined in itsourcecode Online Admission System Project 1.0. This issue affects some unknown processing of the file /admin/login1.php. This manipulation of the argument User causes sql injection. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized. | |
| Aplazada | Baja (2.1) | 0.20% | — | Itsourcecode Online Admission SystemAI | 5/10/2026 | 6/10/2026 | A vulnerability has been found in itsourcecode Online Admission System 1.0. Affected is an unknown function of the file /admin/key.php. The manipulation of the argument ID leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. | |
| Aplazada | Baja (2.1) | 0.20% | — | Itsourcecode Online Admission SystemAI | 5/10/2026 | 6/10/2026 | A flaw has been found in itsourcecode Online Admission System 1.0. This impacts an unknown function of the file /new.php. Executing a manipulation of the argument schedid can lead to sql injection. The attack can be launched remotely. The exploit has been published and may be used. | |
| Aplazada | Media (5.5) | 0.26% | — | Itsourcecode Online Admission SystemAI | 5/10/2026 | 6/10/2026 | A vulnerability was detected in itsourcecode Online Admission System 1.0. This affects an unknown function of the file /admin/examinee.php. Performing a manipulation of the argument ID results in sql injection. The attack can be initiated remotely. The exploit is now public and may be used. | |
| Aplazada | Media (5.5) | 0.26% | — | Itsourcecode Online Admission SystemAI | 5/10/2026 | 6/10/2026 | A security vulnerability has been detected in itsourcecode Online Admission System 1.0. The impacted element is an unknown function of the file /admin/creteria.php. Such manipulation of the argument ID leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed publicly and may… | |
| Aplazada | Media (5.5) | 0.26% | — | Itsourcecode Online Admission SystemAI | 5/10/2026 | 6/10/2026 | A weakness has been identified in itsourcecode Online Admission System 1.0. The affected element is an unknown function of the file /admin/confirm.php. This manipulation of the argument schedid causes sql injection. It is possible to initiate the attack remotely. The exploit has been made available to the public and… | |
| Aplazada | Baja (2.1) | 0.20% | — | Itsourcecode Online Admission SystemAI | 5/10/2026 | 6/10/2026 | A vulnerability was identified in itsourcecode Online Admission System 1.0. This issue affects some unknown processing of the file register1.php. The manipulation of the argument fname leads to sql injection. The attack is possible to be carried out remotely. The exploit is publicly available and might be used. | |
| Aplazada | Media (5.5) | 0.26% | — | Itsourcecode Online Admission SystemAI | 4/10/2026 | 6/10/2026 | A vulnerability was detected in itsourcecode Online Admission System 1.0. Affected by this issue is some unknown functionality of the file /login1.php. Performing a manipulation of the argument User results in sql injection. The attack may be initiated remotely. The exploit is now public and may be used. | |
| Aplazada | Baja (2.1) | 0.25% | — | Itsourcecode Online Admission SystemAI | 2/10/2026 | 2/10/2026 | A security flaw has been discovered in itsourcecode Online Admission System Project 1.0. The impacted element is an unknown function of the file confirm.php. The manipulation of the argument ID results in sql injection. The attack may be launched remotely. The exploit has been released to the public and may be used… | |
| Aplazada | Media (5.5) | 0.27% | — | Code-projects Student Admission SystemAI | 2/6/2026 | 22/7/2026 | A flaw has been found in code-projects Student Admission System 1.0. Affected is an unknown function of the file /index.php. This manipulation of the argument eid/did causes sql injection. The attack is possible to be carried out remotely. The exploit has been published and may be used. | |
| Aplazada | Media (5.5) | 0.51% | — | Code-projects Online Application System FOR AdmissionAI | 6/4/2026 | 17/6/2026 | A vulnerability was found in code-projects Online Application System for Admission 1.0. Impacted is an unknown function of the file /enrollment/database/oas.sql. Performing a manipulation results in insecure storage of sensitive information. The attack is possible to be carried out remotely. The exploit has been made… | |
| Aplazada | Baja (2.1) | 0.32% | — | Code-projects Online Application System FOR AdmissionAI | 6/4/2026 | 17/6/2026 | A vulnerability has been found in code-projects Online Application System for Admission 1.0. This issue affects some unknown processing of the file /enrollment/admsnform.php of the component Endpoint. Such manipulation leads to sql injection. The attack can be executed remotely. The exploit has been disclosed to the… | |
| Aplazada | Media (5.5) | 0.41% | — | Sourcecodester Online Admission SystemAI | 24/3/2026 | 17/6/2026 | A flaw has been found in SourceCodester Online Admission System 1.0. This affects an unknown function of the file /programmes.php. Executing a manipulation of the argument program can lead to sql injection. The attack can be launched remotely. The exploit has been published and may be used. | |
| Analizada | Media (5.5) | 0.44% | — | Fabian Online Application System FOR Admission | 8/2/2026 | 17/6/2026 | A vulnerability was determined in code-projects Online Application System for Admission 1.0. Affected by this vulnerability is an unknown functionality of the file enrollment/index.php of the component Login Endpoint. Executing a manipulation can lead to sql injection. The attack can be launched remotely. The exploit… | |
| Analizada | Media (5.5) | 0.43% | — | Projectworlds Online Admission System | 10/11/2025 | 17/6/2026 | A vulnerability was identified in projectworlds Online Admission System 1.0. Affected by this vulnerability is an unknown functionality of the file /process_login.php. The manipulation of the argument keywords leads to sql injection. The attack can be initiated remotely. The exploit is publicly available and might be… | |
| Analizada | Media (5.5) | 0.49% | — | Projectworlds Online Admission System | 3/8/2025 | 17/6/2026 | A vulnerability has been found in projectworlds Online Admission System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /viewform.php. The manipulation of the argument ID leads to sql injection. The attack can be launched remotely. The exploit has been disclosed… | |
| Analizada | Media (5.5) | 0.67% | 💥 Exploit | Projectworlds Online Admission System | 2/8/2025 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in projectworlds Online Admission System 1.0. This issue affects some unknown processing of the file /adminlogin.php. The manipulation of the argument a_id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to… | |
| Analizada | Media (5.5) | 0.41% | — | Projectworlds Online Admission System | 1/8/2025 | 17/6/2026 | A vulnerability was found in projectworlds Online Admission System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /viewdoc.php. The manipulation of the argument ID leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the… | |
| Analizada | Media (5.5) | 0.41% | — | Projectworlds Online Admission System | 31/7/2025 | 17/6/2026 | A vulnerability was found in projectworlds Online Admission System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /adminac.php. The manipulation of the argument ID leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public… | |
| Analizada | Baja (2.1) | 0.35% | — | Projectworlds Online Admission System | 28/7/2025 | 17/6/2026 | A vulnerability classified as critical has been found in Projectworlds Online Admission System 1.0. This affects an unknown part of the file /admin.php. The manipulation of the argument markof leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may… | |
| Aplazada | Alta (8.1) | 0.26% | — | Crowdstrike Falcon Sensor FOR LinuxAICrowdstrike Falcon Kubernetes Admission ControllerAICrowdstrike Falcon Container SensorAI | 12/2/2025 | 17/6/2026 | CrowdStrike uses industry-standard TLS (transport layer security) to secure communications from the Falcon sensor to the CrowdStrike cloud. CrowdStrike has identified a validation logic error in the Falcon sensor for Linux, Falcon Kubernetes Admission Controller, and Falcon Container Sensor where our TLS connection… | |
| Analizada | Media (6.9) | 0.71% | — | Anisha Admission Management System | 17/1/2025 | 17/6/2026 | A vulnerability classified as critical was found in code-projects Admission Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /signupconfirm.php. The manipulation of the argument in_eml leads to sql injection. The attack can be launched remotely. The exploit has been… | |
| Analizada | Media (6.9) | 0.70% | — | Anisha Admission Management System | 9/1/2025 | 17/6/2026 | A vulnerability was found in code-projects Admission Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file index.php of the component Login. The manipulation of the argument u_id leads to sql injection. The attack can be initiated remotely. The exploit has been… | |
| Modificada | Crítica (9.1) | 0.46% | — | Projectworlds Online Admission System | 31/10/2024 | 5/7/2026 | Projectworlds Online Admission System v1 is vulnerable to SQL Injection in index.php via the 'a_id' parameter. |