Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2741▲ 13 respecto a la semana anterior
Críticas / altas1459▲ 323 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)85▼ 441 respecto a la semana anterior
29 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Baja (2.1) | 0.37% | — | Kimz190 Pre-school Management System | 23/11/2025 | 17/6/2026 | A security flaw has been discovered in SourceCodester Pre-School Management System 1.0. Impacted is the function removefile of the file app/controllers/FilehelperController.php. Performing manipulation of the argument filepath results in denial of service. The attack is possible to be carried out remotely. The exploit… | |
| Aplazada | Alta (8.7) | 0.60% | — | Ventem E-schoolAI | 30/7/2025 | 17/6/2026 | The e-School from Ventem has a Arbitrary File Upload vulnerability, allowing unauthenticated remote attackers to upload and execute web shell backdoors, thereby enabling arbitrary code execution on the server. | |
| Aplazada | Alta (8.7) | 0.38% | — | Ventem E-schoolAI | 30/7/2025 | 17/6/2026 | The e-School from Ventem has a Missing Authorization vulnerability, allowing remote attackers with regular privilege to access administrator functions, including creating, modifying, and deleting accounts. They can even escalate any account to system administrator privilege. | |
| Analizada | Media (6.5) | 0.20% | — | Phpgurukul Pre-school Enrollment System | 29/7/2025 | 17/6/2026 | Phpgurukul Pre-School Enrollment System 1.0 contains a SQL injection vulnerability in the /admin/password-recovery.php file. This vulnerability is attributed to the insufficient validation of user input for the username parameter. | |
| Analizada | Media (5.4) | 0.46% | — | Phpgurukul Pre-school Enrollment System | 26/6/2025 | 17/6/2026 | PHPGurukul Pre-School Enrollment System Project v1.0 is vulnerable to Directory Traversal in manage-classes.php. | |
| Analizada | Alta (7.5) | 0.81% | — | Phpgurukul Pre-school Enrollment System | 23/6/2025 | 17/6/2026 | PHPGurukul Pre-School Enrollment System Project V1.0 is vulnerable to Directory Traversal in update-teacher-pic.php. | |
| Analizada | Alta (7.5) | 0.84% | — | Phpgurukul Pre-school Enrollment System | 23/6/2025 | 17/6/2026 | PHPGurukul Pre-School Enrollment System Project V1.0 is vulnerable to Directory Traversal in update-class-pic.php. | |
| Analizada | Media (5.5) | 0.48% | — | Phpgurukul Pre-school Enrollment System | 20/6/2025 | 17/6/2026 | A vulnerability was found in PHPGurukul Pre-School Enrollment System 1.0. It has been classified as critical. This affects an unknown part of the file /enrollment.php. The manipulation of the argument fathername leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to… | |
| Analizada | Media (5.5) | 0.48% | — | Phpgurukul Pre-school Enrollment System | 20/6/2025 | 17/6/2026 | A vulnerability was found in PHPGurukul Pre-School Enrollment System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /visit.php. The manipulation of the argument gname leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the… | |
| Analizada | Baja (2.1) | 0.40% | — | Phpgurukul Pre-school Enrollment System | 20/6/2025 | 17/6/2026 | A vulnerability has been found in PHPGurukul Pre-School Enrollment System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/add-subadmin.php. The manipulation of the argument sadminusername leads to sql injection. The attack can be launched remotely. The… | |
| Analizada | Baja (2.1) | 0.40% | — | Phpgurukul Pre-school Enrollment System | 20/6/2025 | 17/6/2026 | A vulnerability, which was classified as critical, was found in PHPGurukul Pre-School Enrollment System 1.0. Affected is an unknown function of the file /admin/add-class.php. The manipulation of the argument classname leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed… | |
| Analizada | Baja (2.1) | 0.40% | — | Phpgurukul Pre-school Enrollment System | 20/6/2025 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in PHPGurukul Pre-School Enrollment System 1.0. This issue affects some unknown processing of the file /admin/add-teacher.php. The manipulation of the argument tsubject leads to sql injection. The attack may be initiated remotely. The exploit has been… | |
| Analizada | Media (5.5) | 0.48% | — | Phpgurukul Pre-school Enrollment System | 20/6/2025 | 17/6/2026 | A vulnerability classified as critical was found in PHPGurukul Pre-School Enrollment System 1.0. This vulnerability affects unknown code of the file /admin/check_availability.php. The manipulation of the argument Username leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to… | |
| Analizada | Media (5.3) | 0.46% | — | Phpgurukul Pre-school Enrollment System | 1/5/2025 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in PHPGurukul Pre-School Enrollment System 1.0. Affected by this issue is some unknown functionality of the file /admin/enrollment-details.php. The manipulation of the argument Status leads to sql injection. The attack may be launched remotely. The… | |
| Analizada | Media (5.3) | 0.46% | — | Phpgurukul Pre-school Enrollment System | 30/4/2025 | 17/6/2026 | A vulnerability was found in PHPGurukul Pre-School Enrollment System 1.0. It has been classified as critical. This affects an unknown part of the file /admin/visitor-details.php. The manipulation of the argument Status leads to sql injection. It is possible to initiate the attack remotely. The exploit has been… | |
| Analizada | Media (5.3) | 0.46% | — | Phpgurukul Pre-school Enrollment System | 30/4/2025 | 17/6/2026 | A vulnerability was found in PHPGurukul Pre-School Enrollment System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/edit-teacher.php. The manipulation of the argument mobilenumber leads to sql injection. The attack may be launched remotely. The exploit has been… | |
| Analizada | Media (5.3) | 0.46% | — | Phpgurukul Pre-school Enrollment System | 30/4/2025 | 17/6/2026 | A vulnerability has been found in PHPGurukul Pre-School Enrollment System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/edit-subadmin.php. The manipulation of the argument mobilenumber leads to sql injection. The attack can be launched remotely. The… | |
| Analizada | Media (6.9) | 0.52% | — | Phpgurukul Pre-school Enrollment System | 28/4/2025 | 17/6/2026 | A vulnerability was found in PHPGurukul Pre-School Enrollment System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /admin/aboutus.php. The manipulation of the argument pagetitle leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to… | |
| Analizada | Alta (7.5) | 0.87% | — | Phpgurukul Pre-school Enrollment System | 16/4/2025 | 17/6/2026 | PHPGurukul Pre-School Enrollment System is vulnerable to Directory Traversal in manage-teachers.php. | |
| Analizada | Media (6.9) | 0.53% | — | Phpgurukul Pre-school Enrollment System | 17/3/2025 | 17/6/2026 | A vulnerability was found in PHPGurukul Pre-School Enrollment System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /admin/contact-us.php. The manipulation of the argument mobnum leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to… | |
| Analizada | Media (5.1) | 0.42% | — | Phpgurukul Pre-school Enrollment System | 7/3/2025 | 17/6/2026 | A vulnerability was found in PHPGurukul Pre-School Enrollment System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/add-subadmin.php of the component Sub Admin Handler. The manipulation leads to improper access controls. The attack may be launched remotely. The… | |
| Analizada | Media (6.9) | 0.54% | — | Phpgurukul Pre-school Enrollment System | 7/3/2025 | 17/6/2026 | A vulnerability, which was classified as critical, was found in PHPGurukul Pre-School Enrollment System up to 1.0. Affected is an unknown function of the file /admin/profile.php. The manipulation of the argument fullname/emailid/mobileNumber leads to sql injection. It is possible to launch the attack remotely. The… | |
| Analizada | Media (6.9) | 0.54% | — | Phpgurukul Pre-school Enrollment System | 6/3/2025 | 17/6/2026 | A vulnerability has been found in PHPGurukul Pre-School Enrollment System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/edit-class.php?cid=1. The manipulation of the argument classname/capacity/classtiming leads to sql injection. The attack can be… | |
| Analizada | Media (6.9) | 0.65% | — | Phpgurukul Pre-school Enrollment System | 5/3/2025 | 17/6/2026 | A vulnerability classified as critical was found in PHPGurukul Pre-School Enrollment System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/index.php. The manipulation of the argument username leads to sql injection. The attack can be launched remotely. The exploit has been disclosed… | |
| Analizada | Alta (7.5) | 0.66% | — | Phpgurukul Pre-school Enrollment System | 19/12/2024 | 17/6/2026 | A SQL Injection vulnerability was found in /index.php in PHPGurukul Pre-School Enrollment System v1.0, which allows remote attackers to execute arbitrary code via the visittime parameter. |