Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas3007▼ 67 respecto a la semana anterior
Críticas / altas1403▲ 50 respecto a la semana anterior
Nueva explotación activa (KEV)5▼ 3 respecto a la semana anterior
Sin puntuar (sin CVSS)390▼ 120 respecto a la semana anterior
13 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Analizada | Media (5.5) | 0.41% | — | Campcodes Online Water Billing System | 31/8/2025 | 17/6/2026 | A vulnerability has been found in Campcodes Online Water Billing System 1.0. Affected by this issue is some unknown functionality of the file /process.php. The manipulation of the argument Username leads to sql injection. The attack is possible to be carried out remotely. The exploit has been disclosed to the public… | |
| Analizada | Media (5.5) | 0.41% | — | Janobe Water Billing System | 30/8/2025 | 17/6/2026 | A security vulnerability has been detected in SourceCodester Water Billing System 1.0. Affected by this vulnerability is an unknown functionality of the file /edit.php. Such manipulation of the argument ID leads to sql injection. The attack can be executed remotely. The exploit has been disclosed publicly and may be… | |
| Analizada | Media (5.5) | 0.41% | — | Janobe Water Billing System | 30/8/2025 | 17/6/2026 | A weakness has been identified in SourceCodester Water Billing System 1.0. Affected is an unknown function of the file /paybill.php. This manipulation of the argument ID causes sql injection. Remote exploitation of the attack is possible. The exploit has been made available to the public and could be exploited. | |
| Analizada | Media (5.5) | 0.41% | — | Janobe Water Billing System | 30/8/2025 | 17/6/2026 | A security flaw has been discovered in SourceCodester Water Billing System 1.0. This impacts an unknown function of the file /viewbill.php. The manipulation of the argument ID results in sql injection. The attack may be launched remotely. The exploit has been released to the public and may be exploited. | |
| Analizada | Media (5.5) | 0.55% | — | Campcodes Online Water Billing System | 26/8/2025 | 17/6/2026 | A vulnerability was determined in Campcodes Online Water Billing System 1.0. This affects an unknown function of the file /addclient1.php. Executing manipulation of the argument lname can lead to sql injection. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized. Other… | |
| Analizada | Media (5.5) | 0.42% | — | Campcodes Online Water Billing System | 25/8/2025 | 17/6/2026 | A vulnerability was determined in Campcodes Online Water Billing System 1.0. Affected is an unknown function of the file /editecex.php. This manipulation of the argument ID causes sql injection. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized. | |
| Analizada | Media (5.5) | 0.42% | — | Campcodes Online Water Billing System | 13/8/2025 | 17/6/2026 | A vulnerability was identified in Campcodes Online Water Billing System 1.0. This issue affects some unknown processing of the file /viewbill.php. The manipulation of the argument ID leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. | |
| Modificada | Crítica (9.8) | 0.65% | — | Fabian Water Billing System | 25/12/2023 | 17/6/2026 | A vulnerability classified as critical has been found in code-projects Water Billing System 1.0. This affects an unknown part of the file /addbill.php. The manipulation of the argument owners_id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may… | |
| Modificada | Media (6.1) | 0.44% | — | Water Billing System Project Water Billing System | 27/3/2023 | 17/6/2026 | SourceCodester Water Billing System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the lastname text box under the Add Client module. | |
| Modificada | Media (5.4) | 0.50% | — | Water Billing System Project Water Billing System | 24/5/2022 | 17/6/2026 | Water-billing-management-system v1.0 is affected by: Cross Site Scripting (XSS) via /wbms/classes/Users.php?f=save, firstname. | |
| Modificada | Crítica (9.8) | 1.1% | — | Water Billing System Project Water Billing System | 24/5/2022 | 17/6/2026 | Water-billing-management-system v1.0 is vulnerable to SQL Injection via /wbms/classes/Master.php?f=delete_client, id | |
| Modificada | Crítica (9.8) | 1.1% | — | Water Billing System Project Water Billing System | 22/7/2021 | 17/6/2026 | SQL injection vulnerability in SourceCodester Water Billing System 1.0 via the id parameter to edituser.php. | |
| Modificada | Crítica (9.8) | 2.6% | — | Water Billing System Project Water Billing System | 17/11/2020 | 17/6/2026 | SQL injection vulnerability in SourceCodester Water Billing System 1.0 via the username and password parameters to process.php. |