Search

Found 17,411 results in 823ms · Match type: Filtered list

0
KEVHas exploit
Reset
CVE Severity CVSS Risk Flags OS Vendor Published Description
CVE-2025-14722 low 2.4 2.4 6mo ago A vulnerability was determined in vion707 DMadmin up to 3403cafdb42537a648c30bf8cbc8148ec60437d1. This impacts the function Add of the file Admin/Controller/AddonsController.class.php of the componen…
CVE-2025-14711 critical 9.8 9.8 fantasticlbp 6mo ago A flaw has been found in FantasticLBP Hotels Server up to 67b44df162fab26df209bd5d5d542875fcbec1d0. This vulnerability affects unknown code of the file /controller/api/hotelList.php. This manipulatio…
CVE-2025-14710 critical 9.8 9.8 fantasticlbp 6mo ago A vulnerability was detected in FantasticLBP Hotels Server up to 67b44df162fab26df209bd5d5d542875fcbec1d0. This affects an unknown part of the file /controller/api/OrderList.php. The manipulation of …
CVE-2025-14704 critical 9.8 9.8 6mo ago A vulnerability was found in Shiguangwu sgwbox N3 2.0.25. The impacted element is an unknown function of the file /eshell of the component API. The manipulation results in path traversal. It is possi…
CVE-2025-14697 low 3.7 3.7 6mo ago A security flaw has been discovered in Shenzhen Sixun Software Sixun Shanghui Group Business Management System 4.10.24.3. Affected by this issue is some unknown functionality of the file /ExportFiles…
CVE-2025-14673 critical 9.8 9.8 gmg137 6mo ago A vulnerability has been found in gmg137 snap7-rs up to 1.142.1. Affected is the function snap7_rs::client::S7Client::as_ct_write of the file /tests/snap7-rs/src/client.rs. The manipulation leads to …
CVE-2025-14672 critical 9.8 9.8 gmg137 6mo ago A flaw has been found in gmg137 snap7-rs up to 1.142.1. This impacts the function TSnap7MicroClient::opWriteArea of the file s7_micro_client.cpp. Executing a manipulation can lead to heap-based buffe…
CVE-2025-14668 critical 9.8 9.8 campcodes 6mo ago A vulnerability was detected in campcodes Advanced Online Examination System 1.0. This affects an unknown function of the file /query/loginExe.php. Performing a manipulation of the argument Username …
CVE-2025-14667 critical 9.8 9.8 angeljudesuarez 6mo ago A security vulnerability has been detected in itsourcecode COVID Tracking System 1.0. The impacted element is an unknown function of the file /admin/?page=system_info. Such manipulation of the argume…
CVE-2025-14666 critical 9.8 9.8 angeljudesuarez 6mo ago A weakness has been identified in itsourcecode COVID Tracking System 1.0. The affected element is an unknown function of the file /admin/?page=user. This manipulation of the argument Username causes …
CVE-2025-14664 critical 9.8 9.8 campcodes 6mo ago A vulnerability was identified in Campcodes Supplier Management System 1.0. This issue affects some unknown processing of the file /admin/view_unit.php. The manipulation of the argument chkId[] leads…
CVE-2025-14661 critical 9.8 9.8 angeljudesuarez 6mo ago A vulnerability has been found in itsourcecode Student Managemen System 1.0. Affected by this issue is some unknown functionality of the file /advisers.php. Such manipulation of the argument sy leads…
CVE-2025-14653 critical 9.8 9.8 angeljudesuarez 6mo ago A vulnerability was determined in itsourcecode Student Management System 1.0. Impacted is an unknown function of the file /addrecord.php. This manipulation of the argument ID causes sql injection. Re…
CVE-2025-14652 critical 9.8 9.8 admerc 6mo ago A vulnerability was found in itsourcecode Online Cake Ordering System 1.0. This issue affects some unknown processing of the file /admindetail.php?action=edit. The manipulation of the argument ID res…
CVE-2025-14651 low 3.7 3.7 6mo ago A vulnerability has been found in MartialBE one-hub up to 0.14.27. This vulnerability affects unknown code of the file docker-compose.yml. The manipulation of the argument SESSION_SECRET leads to use…
CVE-2025-14650 critical 9.8 9.8 admerc 6mo ago A flaw has been found in itsourcecode Online Cake Ordering System 1.0. This affects an unknown part of the file /cakeshop/product.php. Executing manipulation of the argument Product can lead to sql i…
CVE-2025-14649 critical 9.8 9.8 admerc 6mo ago A vulnerability was detected in itsourcecode Online Cake Ordering System 1.0. Affected by this issue is some unknown functionality of the file /cakeshop/supplier.php. Performing manipulation of the a…
CVE-2025-14647 critical 9.8 9.8 carmelo 6mo ago A weakness has been identified in code-projects Computer Book Store 1.0. Affected is an unknown function of the file /admin_delete.php. This manipulation of the argument bookisbn causes sql injection…
CVE-2025-14646 critical 9.8 9.8 fabian 6mo ago A security flaw has been discovered in code-projects Student File Management System 1.0. This impacts an unknown function of the file /admin/delete_student.php. The manipulation of the argument stud_…
CVE-2025-14645 critical 9.8 9.8 fabian 6mo ago A vulnerability was identified in code-projects Student File Management System 1.0. This affects an unknown function of the file /admin/delete_user.php. The manipulation of the argument user_id leads…
CVE-2025-14644 critical 9.8 9.8 angeljudesuarez 6mo ago A vulnerability was determined in itsourcecode Student Management System 1.0. The impacted element is an unknown function of the file /update_subject.php. Executing manipulation of the argument ID ca…
CVE-2025-14643 critical 9.8 9.8 fabian 6mo ago A vulnerability was found in code-projects Simple Attendance Record System 2.0. The affected element is an unknown function of the file /check.php. Performing manipulation of the argument student res…
CVE-2025-14640 critical 9.8 9.8 fabian 6mo ago A flaw has been found in code-projects Student File Management System 1.0. The affected element is an unknown function of the file /admin/save_student.php. Executing manipulation of the argument stud…
CVE-2025-14639 critical 9.8 9.8 angeljudesuarez 6mo ago A vulnerability was detected in itsourcecode Student Management System 1.0. Impacted is an unknown function of the file /uprec.php. Performing manipulation of the argument ID results in sql injection…
CVE-2025-14638 critical 9.8 9.8 facebook-riares 6mo ago A security vulnerability has been detected in itsourcecode Online Pet Shop Management System 1.0. This issue affects some unknown processing of the file /pet1/update_cnp.php. Such manipulation of the…
CVE-2025-14637 critical 9.8 9.8 facebook-riares 6mo ago A weakness has been identified in itsourcecode Online Pet Shop Management System 1.0. This vulnerability affects unknown code of the file /pet1/addcnp.php. This manipulation of the argument cnpname c…
CVE-2025-14636 low 3.7 3.7 6mo ago A security flaw has been discovered in Tenda AX9 22.03.01.46. This affects the function image_check of the component httpd. The manipulation results in use of weak hash. It is possible to launch the …
CVE-2025-14623 critical 9.8 9.8 fabian 6mo ago A weakness has been identified in code-projects Student File Management System 1.0. This issue affects some unknown processing of the file /admin/update_student.php. This manipulation of the argument…
CVE-2025-14622 critical 9.8 9.8 fabian 6mo ago A security flaw has been discovered in code-projects Student File Management System 1.0. This vulnerability affects unknown code of the file /admin/save_user.php. The manipulation of the argument fir…
CVE-2025-14621 critical 9.8 9.8 fabian 6mo ago A vulnerability was identified in code-projects Student File Management System 1.0. This affects an unknown part of the file /admin/update_user.php. The manipulation of the argument user_id leads to …
CVE-2025-14620 critical 9.8 9.8 fabian 6mo ago A vulnerability was determined in code-projects Student File Management System 1.0. Affected by this issue is some unknown functionality of the file /admin/login_query.php. Executing manipulation of …
CVE-2025-14619 critical 9.8 9.8 fabian 6mo ago A vulnerability was found in code-projects Student File Management System 1.0. Affected by this vulnerability is an unknown functionality of the file login_query.php. Performing manipulation of the a…
CVE-2025-14590 critical 9.8 9.8 carmelo 6mo ago A security vulnerability has been detected in code-projects Prison Management System 2.0. Impacted is an unknown function of the file /admin/search1.php. The manipulation of the argument keyname lead…
CVE-2025-14588 critical 9.8 9.8 angeljudesuarez 6mo ago A security flaw has been discovered in itsourcecode Student Management System 1.0. This vulnerability affects unknown code of the file /update_program.php. Performing manipulation of the argument ID …
CVE-2025-14587 critical 9.8 9.8 facebook-riares 6mo ago A vulnerability was identified in itsourcecode Online Pet Shop Management System 1.0. This affects an unknown part of the file /pet1/available.php. Such manipulation of the argument Name leads to sql…
CVE-2025-14586 critical 9.8 9.8 6mo ago A vulnerability was determined in TOTOLINK X5000R 9.1.0cu.2089_B20211224. Affected by this issue is the function snprintf of the file /cgi-bin/cstecgi.cgi?action=exportOvpn&type=user. This manipulati…
CVE-2025-14585 critical 9.8 9.8 angeljudesuarez 6mo ago A vulnerability was found in itsourcecode COVID Tracking System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/?page=zone. The manipulation of the argument ID resu…
CVE-2025-14584 critical 9.8 9.8 angeljudesuarez 6mo ago A vulnerability has been found in itsourcecode COVID Tracking System 1.0. Affected is an unknown function of the file /admin/login.php of the component Admin Login. The manipulation of the argument U…
CVE-2025-14583 critical 9.8 9.8 campcodes 6mo ago A flaw has been found in campcodes Online Student Enrollment System 1.0. This impacts an unknown function of the file /admin/register.php. Executing a manipulation of the argument photo can lead to u…
CVE-2025-14578 critical 9.8 9.8 angeljudesuarez 6mo ago A weakness has been identified in itsourcecode Student Management System 1.0. The affected element is an unknown function of the file /update_account.php. This manipulation of the argument ID causes …
CVE-2025-14571 critical 9.8 9.8 projectworlds 6mo ago A vulnerability has been found in projectworlds Advanced Library Management System 1.0. Affected by this issue is some unknown functionality of the file /borrow_book.php. Such manipulation of the arg…
CVE-2025-14570 critical 9.8 9.8 projectworlds 6mo ago A flaw has been found in projectworlds Advanced Library Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /view_admin.php. This manipulation of the argumen…
CVE-2025-14566 critical 9.8 9.8 kidaze 6mo ago A security flaw has been discovered in kidaze CourseSelectionSystem up to 42cd892b40a18d50bd4ed1905fa89f939173a464. The impacted element is an unknown function of the file /Profilers/SProfile/reg.php…
CVE-2025-14565 critical 9.8 9.8 kidaze 6mo ago A vulnerability was identified in kidaze CourseSelectionSystem up to 42cd892b40a18d50bd4ed1905fa89f939173a464. The affected element is an unknown function of the file /Profilers/SProfile/login1.php. …
CVE-2025-14538 low 3.5 3.5 6mo ago A security vulnerability has been detected in yangshare warehouseManager 仓库管理系统 1.1.0. This affects the function addCustomer of the file CustomerManageHandler.java. Such manipulation of the argument …
CVE-2025-14537 critical 9.8 9.8 fabian 6mo ago A weakness has been identified in code-projects Class and Exam Timetable Management 1.0. Affected by this issue is some unknown functionality of the file /preview7.php. This manipulation of the argum…
CVE-2025-14536 critical 9.8 9.8 fabian 6mo ago A security flaw has been discovered in code-projects Class and Exam Timetable Management 1.0. Affected by this vulnerability is an unknown functionality of the file /index.php of the component Login.…
CVE-2025-14529 critical 9.8 9.8 campcodes 6mo ago A flaw has been found in Campcodes Retro Basketball Shoes Online Store 1.0. The affected element is an unknown function of the file /admin/admin_running.php. This manipulation of the argument pid cau…
CVE-2025-14527 critical 9.8 9.8 projectworlds 6mo ago A weakness has been identified in projectworlds Advanced Library Management System 1.0. This vulnerability affects unknown code of the file /view_book.php. Executing a manipulation of the argument bo…
CVE-2025-14522 critical 9.8 9.8 baowzh 6mo ago A vulnerability was detected in baowzh hfly up to 638ff9abe9078bc977c132b37acbe1900b63491c. The impacted element is an unknown function of the file /Public/Kindeditor/php/upload_json.php. Performing …
CVE-2025-14520 critical 9.1 9.1 baowzh 6mo ago A weakness has been identified in baowzh hfly up to 638ff9abe9078bc977c132b37acbe1900b63491c. Impacted is an unknown function of the file /admin/index.php/datafile/delfile. This manipulation of the a…
CVE-2025-14518 critical 9.8 9.8 powerjob 6mo ago PowerJob has a server-side request forgery vulnerability in PingPongUtils.java
CVE-2025-14515 critical 9.8 9.8 campcodes 6mo ago A vulnerability has been found in Campcodes Supplier Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/add_unit.php. Such manipulation of the argume…
CVE-2025-14514 critical 9.8 9.8 campcodes 6mo ago A flaw has been found in Campcodes Supplier Management System 1.0. Affected is an unknown function of the file /admin/add_distributor.php. This manipulation of the argument txtDistributorAddress caus…
CVE-2025-13127 low 3.5 3.5 6mo ago Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in TAC Information Services Internal and External Trade Inc. GoldenHorn allows Cross-Site Scr…
CVE-2025-64787 low 3.3 3.3 macos macos adobe 6mo ago Acrobat Reader versions 24.001.30264, 20.005.30793, 25.001.20982, 24.001.30273, 20.005.30803 and earlier are affected by an Improper Verification of Cryptographic Signature vulnerability that could r…
CVE-2025-64786 low 3.3 3.3 macos macos adobe 6mo ago Acrobat Reader versions 24.001.30264, 20.005.30793, 25.001.20982, 24.001.30273, 20.005.30803 and earlier are affected by an Improper Verification of Cryptographic Signature vulnerability that could r…
CVE-2025-14337 critical 9.8 9.8 angeljudesuarez 6mo ago A vulnerability was determined in itsourcecode Student Management System 1.0. This affects an unknown part of the file /new_grade.php. This manipulation of the argument grade causes sql injection. Th…
CVE-2025-14336 critical 9.8 9.8 angeljudesuarez 6mo ago A vulnerability was found in itsourcecode Student Management System 1.0. Affected by this issue is some unknown functionality of the file /promote.php. The manipulation of the argument sy results in …
CVE-2025-14335 critical 9.8 9.8 angeljudesuarez 6mo ago A vulnerability has been found in itsourcecode Student Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /new_school_year.php. The manipulation of the argu…
CVE-2025-14334 critical 9.8 9.8 angeljudesuarez 6mo ago A flaw has been found in itsourcecode Student Management System 1.0. Affected is an unknown function of the file /new_adviser.php. Executing manipulation of the argument Name can lead to sql injectio…
CVE-2025-64254 low 2.7 2.7 6mo ago Missing Authorization vulnerability in Ronald Huereca Photo Block photo-block allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Photo Block: from n/a through …
CVE-2025-12504 critical 9.8 9.8 6mo ago Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Talent Software UNIS allows SQL Injection. This issue affects UNIS: before 42321.
CVE-2025-11022 critical 9.6 9.6 6mo ago Cross-Site Request Forgery (CSRF) vulnerability in Personal Project Panilux allows Cross Site Request Forgery.  This CSRF vulnerability resulting in Command Injection has been identified. Thi…
CVE-2025-14285 critical 9.8 9.8 code-projects 6mo ago A vulnerability was found in code-projects Employee Profile Management System 1.0. Affected is an unknown function of the file edit_personnel.php. The manipulation of the argument per_id results in s…
CVE-2025-14258 critical 9.8 9.8 angeljudesuarez 6mo ago A vulnerability has been found in itsourcecode Student Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /newsubject.php. The manipulation of the argument …
CVE-2025-14257 critical 9.8 9.8 angeljudesuarez 6mo ago A flaw has been found in itsourcecode Student Management System 1.0. Affected is an unknown function of the file /newrecord.php. Executing manipulation of the argument ID can lead to sql injection. T…
CVE-2025-14256 critical 9.8 9.8 angeljudesuarez 6mo ago A vulnerability was detected in itsourcecode Student Management System 1.0. This impacts an unknown function of the file /newcurriculm.php. Performing manipulation of the argument ID results in sql i…
CVE-2025-14251 critical 9.8 9.8 fabian 6mo ago A security vulnerability has been detected in code-projects Online Ordering System 1.0. This affects an unknown function of the file /admin/ of the component Admin Login. Such manipulation of the arg…
CVE-2025-14250 critical 9.8 9.8 fabian 6mo ago A weakness has been identified in code-projects Online Ordering System 1.0. The impacted element is an unknown function of the file /user_contact.php. This manipulation of the argument Name causes sq…
CVE-2025-14249 critical 9.8 9.8 fabian 6mo ago A security flaw has been discovered in code-projects Online Ordering System 1.0. The affected element is an unknown function of the file /user_school.php. The manipulation of the argument product_id …
CVE-2025-14248 critical 9.8 9.8 fabian 6mo ago A vulnerability was identified in code-projects Simple Shopping Cart 1.0. Impacted is an unknown function of the file /adminlogin.php. The manipulation of the argument admin_username leads to sql inj…
CVE-2025-14247 critical 9.8 9.8 fabian 6mo ago A vulnerability was determined in code-projects Simple Shopping Cart 1.0. This issue affects some unknown processing of the file /Admin/additems.php. Executing manipulation of the argument item_name …
CVE-2025-14246 critical 9.8 9.8 fabian 6mo ago A vulnerability was found in code-projects Simple Shopping Cart 1.0. This vulnerability affects unknown code of the file /Customers/settings.php. Performing manipulation of the argument user_id resul…
CVE-2025-14245 critical 9.8 9.8 ideacms 6mo ago A vulnerability has been found in IdeaCMS up to 1.8. This affects the function whereRaw of the file app/common/logic/index/Coupon.php. Such manipulation of the argument params leads to sql injection.…
CVE-2025-14228 low 3.5 3.5 6mo ago A weakness has been identified in Yealink SIP-T21P E2 52.84.0.15. Impacted is an unknown function of the component Local Directory Page. This manipulation causes cross site scripting. It is possible …
CVE-2025-14227 critical 9.8 9.8 philipinho 6mo ago A security flaw has been discovered in Philipinho Simple-PHP-Blog up to 94b5d3e57308bce5dfbc44c3edafa9811893d958. This issue affects some unknown processing of the file /edit.php. The manipulation re…
CVE-2025-14226 critical 9.8 9.8 angeljudesuarez 6mo ago A vulnerability was identified in itsourcecode Student Management System 1.0. This vulnerability affects unknown code of the file /edit_user.php. The manipulation of the argument fname leads to sql i…
CVE-2025-14224 critical 9.8 9.8 6mo ago A vulnerability was found in Yottamaster DM2, DM3 and DM200 up to 1.2.23/1.9.12. Affected by this issue is some unknown functionality of the component File Upload. Performing manipulation results in …
CVE-2025-14223 critical 9.8 9.8 carmelo 6mo ago A vulnerability has been found in code-projects Simple Leave Manager 1.0. Affected by this vulnerability is an unknown functionality of the file /request.php. Such manipulation of the argument staff_…
CVE-2025-14218 critical 9.8 9.8 fabian 6mo ago A security flaw has been discovered in code-projects Currency Exchange System 1.0. The affected element is an unknown function of the file /editotheraccount.php. Performing manipulation of the argume…
CVE-2025-14217 critical 9.8 9.8 fabian 6mo ago A vulnerability was identified in code-projects Currency Exchange System 1.0. Impacted is an unknown function of the file /edittrns.php. Such manipulation of the argument ID leads to sql injection. T…
CVE-2025-14216 critical 9.8 9.8 fabian 6mo ago A vulnerability was determined in code-projects Currency Exchange System 1.0. This issue affects some unknown processing of the file /viewserial.php. This manipulation of the argument ID causes sql i…
CVE-2025-14215 critical 9.8 9.8 fabian 6mo ago A vulnerability was found in code-projects Currency Exchange System 1.0. This vulnerability affects unknown code of the file /edit.php. The manipulation of the argument ID results in sql injection. T…
CVE-2025-14212 critical 9.8 9.8 projectworlds 6mo ago A flaw has been found in projectworlds Advanced Library Management System 1.0. Affected by this issue is some unknown functionality of the file /member_search.php. Executing a manipulation of the arg…
CVE-2025-14211 critical 9.8 9.8 projectworlds 6mo ago A vulnerability was detected in projectworlds Advanced Library Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /delete_book.php. Performing a manipulatio…
CVE-2025-14210 critical 9.8 9.8 projectworlds 6mo ago A security vulnerability has been detected in projectworlds Advanced Library Management System 1.0. Affected is an unknown function of the file /delete_member.php. Such manipulation of the argument u…
CVE-2025-14209 critical 9.8 9.8 campcodes 6mo ago A weakness has been identified in Campcodes School File Management System 1.0. This impacts an unknown function of the file /update_query.php. This manipulation of the argument stud_id causes sql inj…
CVE-2025-14199 critical 9.8 9.8 verysync 6mo ago A flaw has been found in Verysync 微力同步 up to 2.21.3. This impacts an unknown function of the file /rest/f/api/resources/f96956469e7be39d/tmp/text.txt?override=false of the component Web Administratio…
CVE-2025-14186 low 3.5 3.5 6mo ago A security flaw has been discovered in Grandstream GXP1625 1.0.7.4. The impacted element is an unknown function of the file /cgi-bin/api.values.post of the component Network Status Page. Performing m…
CVE-2025-14182 critical 9.8 9.8 sobey 6mo ago A vulnerability has been found in Sobey Media Convergence System 2.0/2.1. This vulnerability affects unknown code of the file /sobey-mchEditor/watermark/upload. The manipulation of the argument File …
CVE-2025-14094 critical 9.8 9.8 6mo ago A flaw has been found in Edimax BR-6478AC V3 1.0.15. The affected element is the function sub_44CCE4 of the file /boafrm/formSysCmd. This manipulation of the argument sysCmd causes os command injecti…
CVE-2025-14093 critical 9.8 9.8 6mo ago A vulnerability was detected in Edimax BR-6478AC V3 1.0.15. Impacted is the function sub_416990 of the file /boafrm/formTracerouteDiagnosticRun. The manipulation of the argument host results in os co…
CVE-2025-14004 critical 9.8 9.8 xunruicms 6mo ago A security flaw has been discovered in dayrui XunRuiCMS up to 4.7.1. Affected is an unknown function of the file /admind45f74adbd95.php?c=email&m=add of the component Email Setting Handler. Performin…
CVE-2025-13815 critical 9.8 9.8 mogublog_project 6mo ago A weakness has been identified in moxi159753 Mogu Blog v2 up to 5.2. The affected element is an unknown function of the file /file/pictures. This manipulation of the argument filedatas causes unrestr…
CVE-2025-13814 critical 9.8 9.8 mogublog_project 6mo ago A security flaw has been discovered in moxi159753 Mogu Blog v2 up to 5.2. Impacted is the function LocalFileServiceImpl.uploadPictureByUrl of the file /file/uploadPicsByUrl. The manipulation results …
CVE-2025-13806 critical 9.8 9.8 nutzam 6mo ago NutzBoot Incorrect Privilege Assignment vulnerability
CVE-2025-13805 low 3.7 3.7 6mo ago NutzBoot vulnerable to deserialization
CVE-2025-13800 critical 9.8 9.8 6mo ago A vulnerability was found in ADSLR NBR1005GPEV2 250814-r037c. This issue affects the function set_mesh_disconnect of the file /send_order.cgi. The manipulation of the argument mac results in command …
CVE-2025-13799 critical 9.8 9.8 6mo ago A vulnerability has been found in ADSLR NBR1005GPEV2 250814-r037c. This vulnerability affects the function ap_macfilter_del of the file /send_order.cgi. The manipulation of the argument mac leads to …