Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2622▼ 226 respecto a la semana anterior
Críticas / altas1383▲ 155 respecto a la semana anterior
Nueva explotación activa (KEV)7▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)56▼ 472 respecto a la semana anterior
8 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Crítica (9.8) | 21% | — | Simple Task Managing System Project Simple Task Managing System | 17/2/2023 | 17/6/2026 | SQL Injection vulnerability in Simple Task Managing System version 1.0 in login.php in 'username' and 'password' parameters, allows attackers to execute arbitrary code and gain sensitive information. | |
| Modificada | Crítica (9.8) | 1.4% | — | Simple Task Managing System Project Simple Task Managing System | 21/9/2022 | 9/7/2026 | SourceCodester Simple Task Managing System v1.0 was discovered to contain a SQL injection vulnerability via the bookId parameter at changeStatus.php. | |
| Modificada | Media (4.8) | 0.56% | — | Simple Task Managing System Project Simple Task Managing System | 21/9/2022 | 9/7/2026 | SourceCodester Simple Task Managing System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the component newProjectValidation.php. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the shortName parameter. | |
| Modificada | Media (4.8) | 0.56% | — | Simple Task Managing System Project Simple Task Managing System | 21/9/2022 | 9/7/2026 | SourceCodester Simple Task Managing System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the component newProjectValidation.php. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the fullName parameter. | |
| Modificada | Media (6.1) | 0.69% | — | Simple Task Managing System Project Simple Task Managing System | 21/9/2022 | 9/7/2026 | SourceCodester Simple Task Managing System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the component newTask.php. This vulnerability allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the shortName parameter. | |
| Modificada | Alta (7.2) | 0.86% | — | Simple Task Managing System Project Simple Task Managing System | 21/9/2022 | 17/6/2026 | SourceCodester Simple Task Managing System v1.0 was discovered to contain a SQL injection vulnerability via the bookId parameter at board.php. | |
| Modificada | Media (6.1) | 0.59% | — | Simple Task Managing System Project Simple Task Managing System | 27/8/2022 | 17/6/2026 | A vulnerability classified as problematic was found in SourceCodester Simple Task Managing System. This vulnerability affects unknown code. The manipulation of the argument student_add leads to cross site scripting. The attack can be initiated remotely. The identifier of this vulnerability is VDB-207424. | |
| Modificada | Crítica (9.8) | 0.54% | — | Simple Task Managing System Project Simple Task Managing System | 27/8/2022 | 17/6/2026 | A vulnerability classified as critical has been found in SourceCodester Simple Task Managing System. This affects an unknown part of the file /loginVaLidation.php. The manipulation of the argument login leads to sql injection. It is possible to initiate the attack remotely. The associated identifier of this… |