Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2614▼ 473 respecto a la semana anterior
Críticas / altas1270▼ 74 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)243▼ 274 respecto a la semana anterior
–

21 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
AnalizadaAlta (7.1)0.34%—Oracle Warehouse Management18/8/202624/8/2026
Vulnerability in the Oracle Warehouse Management product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Warehouse Management.…
AnalizadaAlta (7.5)0.41%—Oracle Warehouse Management18/8/202628/8/2026
Vulnerability in the Oracle Warehouse Management product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Warehouse Management.…
AnalizadaAlta (7.7)0.35%—Oracle Warehouse Management18/8/202628/8/2026
Vulnerability in the Oracle Warehouse Management product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTPS to compromise Oracle Warehouse Management. While…
AnalizadaAlta (8.3)0.39%—Oracle Warehouse Management18/8/202624/8/2026
Vulnerability in the Oracle Warehouse Management product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Warehouse Management.…
AnalizadaAlta (8.8)0.43%—Oracle Warehouse Management21/7/20266/8/2026
Vulnerability in the Oracle Warehouse Management product of Oracle E-Business Suite (component: Internal Operations). Supported versions that are affected are 12.2.3-12.2.15. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Warehouse Management.…
AnalizadaMedia (5.5)0.45%—Feminer Warehouse Management System17/1/202617/6/2026
A security vulnerability has been detected in FeMiner wms up to 9cad1f1b179a98b9547fd003c23b07c7594775fa. Affected by this vulnerability is an unknown functionality of the file /src/chkuser.php. The manipulation of the argument Username leads to sql injection. The attack is possible to be carried out remotely. The…
AnalizadaAlta (8.1)0.79%—Yeqifu Warehouse Management System5/12/202525/9/2026
Warehouse Management System 1.2 contains an authenticated arbitrary file deletion vulnerability. The /goods/deleteGoods endpoint accepts a user-controlled goodsimg parameter, which is directly concatenated with the server's UPLOAD_PATH and passed to File.delete() without validation. A remote authenticated attacker can…
AnalizadaAlta (7.5)0.70%—Yeqifu Warehouse Management System5/12/202525/9/2026
The warehouse management system version 1.2 contains an arbitrary file read vulnerability. The endpoint `/file/showImageByPath` does not sanitize user-controlled path parameters. An attacker could exploit directory traversal to read arbitrary files on the server's file system. This could lead to the leakage of…
AnalizadaMedia (6.9)0.54%—Yangshare Warehouse Management System26/5/202517/6/2026
A vulnerability, which was classified as problematic, was found in yangshare 技术杨工 warehouseManager 仓库管理系统 1.0. This affects an unknown part. The manipulation leads to improper access controls. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was…
AplazadaCrítica (9.1)0.42%—Zeqp Wms-warehouse Management SystemAI2/12/202417/6/2026
Incorrect access control in wms-Warehouse management system-zeqp v2.20.9.1 due to the token value of the zeqp system being reused.
AnalizadaMedia (5.3)0.87%—Logint Lomag Warehouse Management1/5/202417/6/2026
The LoMag WareHouse Management application version 1.0.20.120 and older were found to allow weak passwords. By default, hard-coded passwords of 10 characters with little or no complexity are allowed.
AnalizadaAlta (8.1)0.67%—Logint Lomag Warehouse Management1/5/202417/6/2026
SQL Injection vulnerability in LOGINT LoMag Inventory Management v1.0.20.120 and before allows an attacker to execute arbitrary code via the ArticleGetGroups, DocAddDocument, ClassClickShop and frmSettings components.
AnalizadaMedia (5.5)0.23%—Logint Lomag Warehouse Management1/5/202417/6/2026
An issue in LOGINT LoMag Inventory Management v1.0.20.120 and before allows a local attacker to obtain sensitive information via the UserClass.cs and Settings.cs components.
AnalizadaMedia (5.3)0.44%—Logint Lomag Warehouse Management1/5/202417/6/2026
The LoMag WareHouse Management application version 1.0.20.120 and older were to utilize hard-coded passwords by default for forms and SQL connections.
AnalizadaMedia (5.4)0.59%—Oretnom23 Warehouse Management System11/4/202417/6/2026
A vulnerability classified as problematic was found in SourceCodester Warehouse Management System 1.0. This vulnerability affects unknown code of the file pengguna.php. The manipulation of the argument admin_user/admin_nama/admin_alamat/admin_telepon leads to cross site scripting. The attack can be initiated remotely.…
AnalizadaMedia (5.4)0.59%—Oretnom23 Warehouse Management System11/4/202417/6/2026
A vulnerability classified as problematic has been found in SourceCodester Warehouse Management System 1.0. This affects an unknown part of the file customer.php. The manipulation of the argument nama_customer/alamat_customer/notelp_customer leads to cross site scripting. It is possible to initiate the attack…
AnalizadaMedia (5.4)0.55%—Oretnom23 Warehouse Management System11/4/202417/6/2026
A vulnerability was found in SourceCodester Warehouse Management System 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file supplier.php. The manipulation of the argument nama_supplier/alamat_supplier/notelp_supplier leads to cross site scripting. The attack may be…
AnalizadaMedia (5.4)0.55%—Oretnom23 Warehouse Management System11/4/202417/6/2026
A vulnerability was found in SourceCodester Warehouse Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file barang.php. The manipulation of the argument nama_barang/merek leads to cross site scripting. The attack can be launched remotely. The…
ModificadaCrítica (9.8)0.84%—Warehouse Management System Project Warehouse Management System3/12/202217/6/2026
A vulnerability, which was classified as critical, has been found in FeMiner wms. Affected by this issue is some unknown functionality of the file /product/savenewproduct.php?flag=1. The manipulation of the argument upfile leads to unrestricted upload. The attack may be launched remotely. The exploit has been…
ModificadaAlta (7.5)0.95%—Oretnom23 Warehouse Management System26/7/202217/6/2026
Warehouse Management System v1.0 was discovered to contain a SQL injection vulnerability via the cari parameter.
ModificadaMedia (6.1)1.0%—Oracle Retail Warehouse Management System24/4/201717/6/2026
Vulnerability in the Oracle Retail Warehouse Management System component of Oracle Retail Applications (subcomponent: Security). Supported versions that are affected are 13.2, 14.0 and 15.0. Easily "exploitable" vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Retail…