Vulnerabilities
Summary — last 7 days
New vulnerabilities2,774▲ 9 vs. last week
Critical / high1,289▼ 242 vs. last week
New active exploitation (KEV)6▼ 1 vs. last week
Unscored (no CVSS)230▲ 212 vs. last week
119 results, sorted by published date (most recent first)
| CVE | Status | Severity | EPSS | Active exploitation | Affected technologies | Published ▼ | Modified | Description |
|---|---|---|---|---|---|---|---|---|
| Analyzed | Medium (6.1) | 0.38% | — | Oracle Complex Maintenance Repair AND Overhaul | 4/16/2024 | 6/17/2026 | Vulnerability in the Oracle Complex Maintenance, Repair, and Overhaul product of Oracle E-Business Suite (component: LOV). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Complex Maintenance,… | |
| Modified | High (7.1) | 0.16% | — | Dell Pair | 1/24/2024 | 6/17/2026 | Dell Pair Installer version prior to 1.2.1 contains an elevation of privilege vulnerability. A low privilege user with local access to the system could potentially exploit this vulnerability to delete arbitrary files and result in Denial of Service. | |
| Modified | Medium (6.1) | 0.17% | — | Oracle Complex Maintenance, Repair, AND Overhaul | 1/16/2024 | 6/17/2026 | Vulnerability in the Oracle Complex Maintenance, Repair, and Overhaul product of Oracle Supply Chain (component: LOV). Supported versions that are affected are 11.5, 12.1 and 12.2. Easily exploitable vulnerability allows unauthenticated attacker with network access via HTTP to compromise Oracle Complex Maintenance,… | |
| Modified | High (8.8) | 0.26% | — | Whereyoursolutionis FIX MY Feed RSS Repair | 12/17/2023 | 6/17/2026 | Cross-Site Request Forgery (CSRF) vulnerability in Innovative Solutions Fix My Feed RSS Repair.This issue affects Fix My Feed RSS Repair: from n/a through 1.4. | |
| Modified | Medium (6.1) | 0.36% | — | Oretnom23 AC Repair AND Services System | 9/17/2023 | 6/17/2026 | A vulnerability, which was classified as problematic, was found in SourceCodester AC Repair and Services System 1.0. Affected is an unknown function of the file admin/?page=system_info/contact_information. The manipulation of the argument telephone/mobile/address leads to cross site scripting. It is possible to launch… | |
| Modified | Critical (9.8) | 0.50% | — | Oretnom23 AC Repair AND Services System | 7/15/2023 | 6/17/2026 | A vulnerability was found in SourceCodester AC Repair and Services System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /classes/Master.php?f=delete_inquiry of the component HTTP POST Request Handler. The manipulation of the argument id leads to sql… | |
| Modified | Critical (9.8) | 0.54% | — | Oretnom23 AC Repair AND Services System | 7/13/2023 | 6/17/2026 | A vulnerability was found in SourceCodester AC Repair and Services System 1.0. It has been classified as critical. This affects an unknown part of the file /classes/Master.php?f=save_inquiry. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The associated… | |
| Modified | Medium (6.1) | 0.39% | — | Oretnom23 AC Repair AND Services System | 7/13/2023 | 6/17/2026 | A vulnerability has been found in SourceCodester AC Repair and Services System 1.0 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file admin/?page=user/manage_user. The manipulation of the argument firstname/middlename leads to cross site scripting. The attack can be… | |
| Modified | Critical (9.8) | 0.54% | — | Oretnom23 AC Repair AND Services System | 7/13/2023 | 6/17/2026 | A vulnerability, which was classified as critical, was found in SourceCodester AC Repair and Services System 1.0. Affected is an unknown function of the file Master.php?f=delete_book of the component HTTP POST Request Handler. The manipulation of the argument id leads to sql injection. It is possible to launch the… | |
| Modified | Critical (9.8) | 0.54% | — | Oretnom23 AC Repair AND Services System | 7/13/2023 | 6/17/2026 | A vulnerability, which was classified as critical, has been found in SourceCodester AC Repair and Services System 1.0. This issue affects some unknown processing of the file Master.php?f=save_book of the component HTTP POST Request Handler. The manipulation of the argument id leads to sql injection. The attack may be… | |
| Modified | Critical (9.8) | 0.49% | — | Oretnom23 AC Repair AND Services System | 7/11/2023 | 6/17/2026 | A vulnerability was found in SourceCodester AC Repair and Services System 1.0 and classified as critical. This issue affects some unknown processing of the file Master.php?f=save_service of the component HTTP POST Request Handler. The manipulation of the argument id leads to sql injection. The attack may be initiated… | |
| Modified | High (8.8) | 0.26% | — | 984.ru FOR THE Visually Impaired | 5/26/2023 | 6/17/2026 | Cross-Site Request Forgery (CSRF) vulnerability in 984.Ru For the visually impaired plugin <= 0.58 versions. | |
| Modified | Critical (9.8) | 0.94% | — | Oretnom23 AC Repair AND Services System | 5/11/2023 | 6/17/2026 | A vulnerability classified as critical has been found in SourceCodester AC Repair and Services System 1.0. Affected is an unknown function of the file /classes/Master.php?f=delete_service. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been… | |
| Modified | Medium (6.5) | 0.63% | — | Oretnom23 AC Repair AND Services System | 4/29/2023 | 6/17/2026 | A vulnerability was found in SourceCodester AC Repair and Services System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /admin/bookings/manage_booking.php. The manipulation of the argument id leads to sql injection. The attack can be launched remotely.… | |
| Modified | Medium (6.5) | 0.53% | — | Oretnom23 AC Repair AND Services System | 4/29/2023 | 6/17/2026 | A vulnerability was found in SourceCodester AC Repair and Services System 1.0. It has been classified as critical. Affected is an unknown function of the file /admin/user/manage_user.php. The manipulation of the argument id leads to sql injection. It is possible to launch the attack remotely. The exploit has been… | |
| Modified | Medium (6.5) | 0.63% | — | Oretnom23 AC Repair AND Services System | 4/28/2023 | 6/17/2026 | A vulnerability was found in SourceCodester AC Repair and Services System 1.0 and classified as critical. This issue affects some unknown processing of the file /admin/inquiries/view_inquiry.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been… | |
| Modified | Medium (6.5) | 0.63% | — | Oretnom23 AC Repair AND Services System | 4/28/2023 | 6/17/2026 | A vulnerability has been found in SourceCodester AC Repair and Services System 1.0 and classified as critical. This vulnerability affects unknown code of the file /admin/bookings/view_booking.php. The manipulation of the argument id leads to sql injection. The attack can be initiated remotely. The exploit has been… | |
| Modified | Medium (6.5) | 0.63% | — | Oretnom23 AC Repair AND Services System | 4/28/2023 | 6/17/2026 | A vulnerability, which was classified as critical, was found in SourceCodester AC Repair and Services System 1.0. This affects an unknown part of the file /admin/services/view_service.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been… | |
| Modified | Medium (6.5) | 0.63% | — | Oretnom23 AC Repair AND Services System | 4/28/2023 | 6/17/2026 | A vulnerability, which was classified as critical, has been found in SourceCodester AC Repair and Services System 1.0. Affected by this issue is some unknown functionality of the file services/view.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit has… | |
| Modified | High (7.8) | 0.43% | — | Wondershare Repairit | 4/4/2023 | 6/17/2026 | An issue found in Wondershare Technology Co.,Ltd Repairit v.3.5.4 allows a remote attacker to execute arbitrary commands via the repairit_setup_full5913.exe file. | |
| Modified | High (7.8) | 0.51% | 💥 PoC | Outbyte PC Repair | 9/7/2022 | 7/29/2026 | Outbyte PC Repair Installation File 1.7.112.7856 is vulnerable to Dll Hijacking. iertutil.dll is missing so an attacker can use a malicious dll with same name and can get admin privileges. | |
| Modified | Critical (9.8) | 1.6% | — | Computer AND Mobile Repair Shop Management System Project Computer AND Mobile Repair Shop Management System | 1/20/2022 | 6/17/2026 | An SQL Injection vulnerability exists in Sourcecodester Computer and Mobile Repair Shop Management system (RSMS) 1.0 via the code parameter in /rsms/ node app. | |
| Modified | Critical (9.1) | 3.1% | 💥 PoC | Keypair Project Keypair | 10/11/2021 | 6/17/2026 | keypair is a a RSA PEM key generator written in javascript. keypair implements a lot of cryptographic primitives on its own or by borrowing from other libraries where possible, including node-forge. An issue was discovered where this library was generating identical RSA keys used in SSH. This would mean that the… | |
| Modified | Medium (6.1) | 3.9% | 💥 Exploit | Smartdatasoft CAR Repair Services & Auto Mechanic | 6/1/2021 | 6/17/2026 | The Car Repair Services & Auto Mechanic WordPress theme before 4.0 did not properly sanitise its serviceestimatekey search parameter before outputting it back in the page, leading to a reflected Cross-Site Scripting issue | |
| Modified | High (8.1) | 1.0% | — | Oracle Depot Repair | 4/22/2021 | 6/17/2026 | Vulnerability in the Oracle Depot Repair product of Oracle E-Business Suite (component: LOVs). Supported versions that are affected are 12.1.1-12.1.3. Easily exploitable vulnerability allows low privileged attacker with network access via HTTP to compromise Oracle Depot Repair. Successful attacks of this vulnerability… |