Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2991▼ 71 respecto a la semana anterior
Críticas / altas1367▲ 28 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)458▼ 52 respecto a la semana anterior
16 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (5.3) | 0.44% | — | Mayurik Petrol Pump Management | 27/10/2024 | 17/6/2026 | A vulnerability, which was classified as critical, was found in SourceCodester Petrol Pump Management Software 1.0. This affects an unknown part of the file /admin/edit_customer.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been… | |
| Analizada | Media (5.3) | 0.44% | — | Mayurik Petrol Pump Management | 26/10/2024 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in SourceCodester Petrol Pump Management Software 1.0. Affected by this issue is some unknown functionality of the file /admin/edit_fuel.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit… | |
| Analizada | Media (5.3) | 0.38% | — | Mayurik Petrol Pump Management | 25/10/2024 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in SourceCodester Petrol Pump Management Software 1.0. Affected by this issue is some unknown functionality of the file /admin/ajax_product.php. The manipulation of the argument drop_services leads to sql injection. The attack may be launched remotely.… | |
| Analizada | Media (5.1) | 0.99% | — | Mayurik Petrol Pump Management | 25/10/2024 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in SourceCodester Petrol Pump Management Software 1.0. Affected by this issue is some unknown functionality of the file /admin/invoice.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit has… | |
| Analizada | Media (5.1) | 0.72% | — | Mayurik Petrol Pump Management | 25/10/2024 | 17/6/2026 | A vulnerability classified as critical was found in SourceCodester Petrol Pump Management Software 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/print.php. The manipulation of the argument id leads to sql injection. The attack can be launched remotely. The exploit has been… | |
| Analizada | Alta (8.8) | 1.2% | — | Mayurik Petrol Pump Management | 15/4/2024 | 17/6/2026 | SQL Injection vulnerability in sourcecodester Petrol pump management software v1.0, allows remote attackers to execute arbitrary code, escalate privileges, and obtain sensitive information via crafted payload to admin/app/web_crud.php. | |
| Analizada | Crítica (9.8) | 24% | — | Mayurik Petrol Pump Management | 1/3/2024 | 17/6/2026 | File Upload vulnerability in Petrol Pump Mangement Software v.1.0 allows an attacker to execute arbitrary code via a crafted payload to the email Image parameter in the profile.php component. | |
| Analizada | Crítica (9.8) | 13% | — | Mayurik Petrol Pump Management | 1/3/2024 | 17/6/2026 | SQL Injection vulnerability in Petrol Pump Mangement Software v.1.0 allows an attacker to execute arbitrary code via a crafted payload to the email address parameter in the index.php component. | |
| Analizada | Media (6.1) | 1.3% | — | Mayurik Petrol Pump Management | 1/3/2024 | 17/6/2026 | Cross Site Scripting vulnerability in Petrol Pump Mangement Software v.1.0 allows an attacker to execute arbitrary code via a crafted payload to the image parameter in the profile.php component. | |
| Analizada | Media (6.1) | 1.3% | — | Mayurik Petrol Pump Management | 1/3/2024 | 17/6/2026 | Cross Site Scripting vulnerability in Petrol Pump Mangement Software v.1.0 allows an attacker to execute arbitrary code via a crafted payload to the Address parameter in the add_invoices.php component. | |
| Analizada | Media (4.8) | 0.40% | — | Mayurik Petrol Pump Management | 1/3/2024 | 17/6/2026 | A vulnerability, which was classified as problematic, was found in SourceCodester Petrol Pump Management Software 1.0. Affected is an unknown function of the file /admin/app/profile_crud.php. The manipulation of the argument username leads to cross site scripting. It is possible to launch the attack remotely. The… | |
| Analizada | Alta (7.2) | 0.55% | — | Mayurik Petrol Pump Management | 1/3/2024 | 17/6/2026 | A vulnerability, which was classified as critical, has been found in SourceCodester Petrol Pump Management Software 1.0. This issue affects some unknown processing of the file /admin/edit_categories.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has… | |
| Analizada | Alta (7.2) | 0.55% | — | Mayurik Petrol Pump Management | 1/3/2024 | 17/6/2026 | A vulnerability classified as critical was found in SourceCodester Petrol Pump Management Software 1.0. This vulnerability affects unknown code of the file /admin/edit_supplier.php. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the… | |
| Analizada | Alta (7.2) | 0.53% | — | Mayurik Petrol Pump Management | 1/3/2024 | 17/6/2026 | A vulnerability classified as critical has been found in SourceCodester Petrol Pump Management Software 1.0. This affects an unknown part of the file /admin/app/login_crud.php. The manipulation of the argument email leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed… | |
| Analizada | Alta (7.2) | 0.59% | — | Mayurik Petrol Pump Management | 1/3/2024 | 17/6/2026 | A vulnerability was found in SourceCodester Petrol Pump Management Software 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /admin/app/service_crud.php. The manipulation of the argument photo leads to unrestricted upload. The attack may be launched remotely. The… | |
| Analizada | Alta (7.2) | 0.61% | — | Mayurik Petrol Pump Management | 1/3/2024 | 17/6/2026 | A vulnerability was found in SourceCodester Petrol Pump Management Software 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /admin/app/product.php. The manipulation of the argument photo leads to unrestricted upload. The attack can be launched remotely. The… |