Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2704▼ 598 respecto a la semana anterior
Críticas / altas1288▼ 199 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)299▼ 211 respecto a la semana anterior
17 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 1.2% | — | Online Sports Complex Booking System Project Online Sports Complex Booking System | 20/5/2022 | 17/6/2026 | Online Sports Complex Booking System v1.0 was discovered to allow attackers to take over user accounts via a crafted POST request. | |
| Modificada | Crítica (9.8) | 1.1% | — | Online Sports Complex Booking System Project Online Sports Complex Booking System | 20/5/2022 | 17/6/2026 | Online Sports Complex Booking System v1.0 was discovered to contain a blind SQL injection vulnerability via the id parameter in /scbs/view_facility.php. | |
| Modificada | Media (6.1) | 0.83% | — | Online Sports Complex Booking System Project Online Sports Complex Booking System | 19/5/2022 | 17/6/2026 | Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via /scbs/classes/Users.php?f=save_client. | |
| Modificada | Alta (8.8) | 0.81% | — | Online Sports Complex Booking System Project Online Sports Complex Booking System | 19/5/2022 | 17/6/2026 | Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via /classes/master.php?f=delete_ Facility. | |
| Modificada | Crítica (9.8) | 1.6% | — | Online Sports Complex Booking System Project Online Sports Complex Booking System | 19/5/2022 | 17/6/2026 | Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via /scbs/classes/Users.php?f=delete_client. | |
| Modificada | Crítica (9.8) | 1.1% | — | Online Sports Complex Booking System Project Online Sports Complex Booking System | 12/5/2022 | 17/6/2026 | Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via /scbs/admin/?page=clients/manage_client&id=. | |
| Modificada | Crítica (9.8) | 1.1% | — | Online Sports Complex Booking System Project Online Sports Complex Booking System | 12/5/2022 | 17/6/2026 | Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via /scbs/admin/?page=facilities/manage_facility&id=. | |
| Modificada | Crítica (9.8) | 1.1% | — | Online Sports Complex Booking System Project Online Sports Complex Booking System | 12/5/2022 | 17/6/2026 | Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via /scbs/admin/bookings/view_booking.php?id=. | |
| Modificada | Crítica (9.8) | 1.1% | — | Online Sports Complex Booking System Project Online Sports Complex Booking System | 12/5/2022 | 17/6/2026 | Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via /scbs/admin/categories/manage_category.php?id=. | |
| Modificada | Crítica (9.8) | 1.1% | — | Online Sports Complex Booking System Project Online Sports Complex Booking System | 12/5/2022 | 17/6/2026 | Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via /scbs/admin/categories/view_category.php?id=. | |
| Modificada | Crítica (9.8) | 1.1% | — | Online Sports Complex Booking System Project Online Sports Complex Booking System | 12/5/2022 | 17/6/2026 | Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via \scbs\classes\Master.php?f=delete_booking. | |
| Modificada | Crítica (9.8) | 1.1% | — | Online Sports Complex Booking System Project Online Sports Complex Booking System | 12/5/2022 | 17/6/2026 | Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via \scbs\classes\Master.php?f=delete. | |
| Modificada | Crítica (9.8) | 1.1% | — | Online Sports Complex Booking System Project Online Sports Complex Booking System | 12/5/2022 | 17/6/2026 | Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via /scbs/admin/?page=user/manage_user&id=. | |
| Modificada | Crítica (9.8) | 1.1% | — | Online Sports Complex Booking System Project Online Sports Complex Booking System | 12/5/2022 | 17/6/2026 | Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via \scbs\classes\Master.php?f=delete_facility. | |
| Modificada | Crítica (9.8) | 1.1% | — | Online Sports Complex Booking System Project Online Sports Complex Booking System | 12/5/2022 | 17/6/2026 | Online Sports Complex Booking System 1.0 is vulnerable to SQL Injection via \scbs\classes\Master.php?f=delete_category. | |
| Modificada | Media (6.1) | 0.69% | — | Online Sports Complex Booking System Project Online Sports Complex Booking System | 25/4/2022 | 9/7/2026 | SCBS Online Sports Venue Reservation System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the fid parameter at booking.php. | |
| Modificada | Crítica (9.8) | 2.0% | — | Online Sports Complex Booking System Project Online Sports Complex Booking System | 25/4/2022 | 9/7/2026 | SCBS Online Sports Venue Reservation System v1.0 was discovered to contain a local file inclusion vulnerability which allow attackers to execute arbitrary code via a crafted PHP file. |