Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2703▼ 615 respecto a la semana anterior
Críticas / altas1293▼ 208 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)291▼ 219 respecto a la semana anterior
9 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (5.4) | 0.51% | — | NIA RRJ Nueva Ecija Engineer Online Portal | 2/1/2024 | 17/6/2026 | A vulnerability was found in RRJ Nueva Ecija Engineer Online Portal 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file downloadable.php of the component Add Downloadable. The manipulation leads to unrestricted upload. The attack can be launched remotely. The… | |
| Modificada | Media (5.3) | 0.78% | — | NIA RRJ Nueva Ecija Engineer Online Portal | 2/1/2024 | 17/6/2026 | A vulnerability was found in RRJ Nueva Ecija Engineer Online Portal 1.0. It has been classified as problematic. Affected is an unknown function of the file /admin/uploads/. The manipulation leads to file and directory information exposure. It is possible to launch the attack remotely. The exploit has been disclosed to… | |
| Modificada | Media (5.4) | 0.58% | — | NIA RRJ Nueva Ecija Engineer Online Portal | 2/1/2024 | 17/6/2026 | A vulnerability was found in RRJ Nueva Ecija Engineer Online Portal 1.0 and classified as problematic. This issue affects some unknown processing of the file add_quiz.php of the component Quiz Handler. The manipulation of the argument Quiz Title/Quiz Description with the input </title><scRipt>alert(x)</scRipt> leads… | |
| Modificada | Media (5.4) | 0.54% | — | NIA RRJ Nueva Ecija Engineer Online Portal | 2/1/2024 | 17/6/2026 | A vulnerability has been found in RRJ Nueva Ecija Engineer Online Portal 1.0 and classified as problematic. This vulnerability affects unknown code of the file teacher_message.php of the component Create Message Handler. The manipulation of the argument Content with the input </title><scRipt>alert(x)</scRipt> leads to… | |
| Modificada | Alta (8.1) | 0.70% | — | NIA RRJ Nueva Ecija Engineer Online Portal | 2/1/2024 | 17/6/2026 | A vulnerability, which was classified as problematic, was found in RRJ Nueva Ecija Engineer Online Portal 1.0. This affects an unknown part of the file change_password_teacher.php. The manipulation leads to weak password requirements. It is possible to initiate the attack remotely. The complexity of an attack is… | |
| Modificada | Alta (8.8) | 0.80% | — | NIA RRJ Nueva Ecija Engineer Online Portal | 2/1/2024 | 17/6/2026 | A vulnerability was found in RRJ Nueva Ecija Engineer Online Portal 1.0. It has been rated as critical. This issue affects some unknown processing of the file dasboard_teacher.php of the component Avatar Handler. The manipulation leads to unrestricted upload. The attack may be initiated remotely. The exploit has been… | |
| Modificada | Media (4.8) | 0.54% | — | NIA RRJ Nueva Ecija Engineer Online Portal | 2/1/2024 | 17/6/2026 | A vulnerability was found in RRJ Nueva Ecija Engineer Online Portal 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file /admin/edit_teacher.php of the component Add Enginer. The manipulation of the argument Firstname/Lastname leads to cross site scripting. The attack can be… | |
| Modificada | Media (4.8) | 0.55% | — | NIA RRJ Nueva Ecija Engineer Online Portal | 1/1/2024 | 17/6/2026 | A vulnerability was found in RRJ Nueva Ecija Engineer Online Portal 1.0. It has been classified as problematic. This affects an unknown part of the file /admin/students.php of the component NIA Office. The manipulation leads to basic cross site scripting. It is possible to initiate the attack remotely. The exploit has… | |
| Modificada | Media (4.8) | 0.56% | — | NIA RRJ Nueva Ecija Engineer Online Portal | 1/1/2024 | 17/6/2026 | A vulnerability was found in RRJ Nueva Ecija Engineer Online Portal 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /admin/admin_user.php of the component Admin Panel. The manipulation of the argument Firstname/Lastname/Username leads to cross site… |