Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2983▼ 79 respecto a la semana anterior
Críticas / altas1412▲ 62 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)382▼ 128 respecto a la semana anterior
10 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Aplazada | Media (5.5) | 0.33% | — | Onetwothreeneth HospitalmanagementsystemAI | 5/10/2026 | 6/10/2026 | A vulnerability was identified in onetwothreeneth HospitalManagementSystem up to 9ef91ed6007314b6473110ed699dff76d158f61d. Affected by this issue is the function get of the file print.php. The manipulation of the argument transaction_id leads to sql injection. It is possible to initiate the attack remotely. The… | |
| Aplazada | Media (5.5) | 0.26% | — | Onetwothreeneth Hospitalmanagement SystemAI | 5/10/2026 | 6/10/2026 | A vulnerability was determined in onetwothreeneth HospitalManagementSystem up to 9ef91ed6007314b6473110ed699dff76d158f61d. Affected by this vulnerability is an unknown functionality of the file transaction_details.php. Executing a manipulation of the argument transaction_id can lead to sql injection. The attack may be… | |
| Aplazada | Baja (2.1) | 0.27% | — | Gedelumbung HospitalmanagementAI | 30/9/2026 | 30/9/2026 | A flaw has been found in gedelumbung HospitalManagement up to c2d45543789a3887067d3915f69d44cfc2cf76a8. The affected element is the function kirim of the file application/modules/web/controllers/buku_tamu.php of the component Guest Book. This manipulation of the argument nama/email/pesan causes cross site scripting.… | |
| Aplazada | Baja (2) | 0.23% | — | Gedelumbung HospitalmanagementAI | 30/9/2026 | 2/10/2026 | A vulnerability was detected in gedelumbung HospitalManagement up to c2d45543789a3887067d3915f69d44cfc2cf76a8. Impacted is the function sistem.php::simpan of the file application/modules/admin/controllers/sistem.php of the component Configuration Handler. The manipulation of the argument tipe/title/content_setting… | |
| Aplazada | Media (5.5) | 0.31% | — | Gedelumbung HospitalmanagementAI | 30/9/2026 | 30/9/2026 | A security vulnerability has been detected in gedelumbung HospitalManagement up to c2d45543789a3887067d3915f69d44cfc2cf76a8. This issue affects the function error_reporting of the file index.php of the component HTTP Response. The manipulation leads to information disclosure. The attack may be initiated remotely. The… | |
| Aplazada | Baja (2) | 0.33% | — | Gedelumbung HospitalmanagementAI | 30/9/2026 | 2/10/2026 | A security flaw has been discovered in gedelumbung HospitalManagement up to c2d45543789a3887067d3915f69d44cfc2cf76a8. This affects the function hapus of the file application/modules/admin/controllers/data_galeri.php of the component Endpoint. Performing a manipulation of the argument gbr results in path traversal. The… | |
| Aplazada | Baja (2.1) | 0.28% | — | Gedelumbung HospitalmanagementAISunhater KcfinderAI | 29/9/2026 | 30/9/2026 | A vulnerability was identified in gedelumbung HospitalManagement up to c2d45543789a3887067d3915f69d44cfc2cf76a8. Affected by this issue is the function app_user_login_model.php::cekUserLogin of the file application/models/app_user_login_model.php of the component KCFinder File Manager. Such manipulation of the… | |
| Aplazada | Baja (2.1) | 0.51% | — | Gedelumbung HospitalmanagementAI | 18/9/2026 | 22/9/2026 | A security vulnerability has been detected in gedelumbung HospitalManagement up to c2d45543789a3887067d3915f69d44cfc2cf76a8. This issue affects the function application/modules/global/controllers/password.php::simpan/application/modules/global/controllers/profil.php::simpan of the file… | |
| Aplazada | Baja (2.1) | 0.23% | — | Gedelumbung HospitalmanagementAI | 18/9/2026 | 18/9/2026 | A weakness has been identified in gedelumbung HospitalManagement up to c2d45543789a3887067d3915f69d44cfc2cf76a8. This vulnerability affects unknown code. This manipulation causes cross-site request forgery. The attack may be initiated remotely. The exploit has been made available to the public and could be used for… | |
| Aplazada | Baja (2) | 0.35% | — | Gedelumbung HospitalmanagementAI | 16/9/2026 | 22/9/2026 | A vulnerability was determined in gedelumbung HospitalManagement up to c2d45543789a3887067d3915f69d44cfc2cf76a8. Affected by this vulnerability is the function generate_index_pasien of the file application/models/app_global_admin_model.php. Executing a manipulation of the argument cari can lead to sql injection. It is… |