Vulnerabilidades CVE

A continuación la lista de las últimas vulnerabilidades publicadas por el instituto NIST:

CVE ID Publicado Severidad CVSS Descripción
CVE-2025-3151 2025-04-03 HIGH 7.3 A vulnerability was found in SourceCodester Gym Management System 1.0. It has been rated as critical. Affected by this issue…
CVE-2025-3143 2025-04-03 MEDIUM 6.3 A vulnerability classified as critical has been found in SourceCodester Apartment Visitor Management System 1.0. Affected is an unknown function…
CVE-2025-3142 2025-04-03 MEDIUM 6.3 A vulnerability was found in SourceCodester Apartment Visitor Management System 1.0. It has been rated as critical. This issue affects…
CVE-2025-2846 2025-03-27 HIGH 7.3 A vulnerability classified as critical was found in SourceCodester Online Eyewear Shop 1.0. This vulnerability affects the function registration of…
CVE-2025-3697 2025-04-16 MEDIUM 6.3 A vulnerability, which was classified as critical, has been found in SourceCodester Web-based Pharmacy Product Management System 1.0. This issue…
CVE-2025-3696 2025-04-16 MEDIUM 6.3 A vulnerability classified as critical was found in SourceCodester Web-based Pharmacy Product Management System 1.0. This vulnerability affects unknown code…
CVE-2025-3694 2025-04-16 HIGH 7.3 A vulnerability classified as critical has been found in SourceCodester Web-based Pharmacy Product Management System 1.0. This affects an unknown…
CVE-2025-3315 2025-04-06 HIGH 7.3 A vulnerability was found in SourceCodester Apartment Visitor Management System 1.0 and classified as critical. Affected by this issue is…
CVE-2025-3314 2025-04-06 HIGH 7.3 A vulnerability has been found in SourceCodester Apartment Visitor Management System 1.0 and classified as critical. Affected by this vulnerability…
CVE-2025-45956 2025-04-29 HIGH 8.8 A SQL injection vulnerability in manage_damage.php in Sourcecodester Computer Laboratory Management System v1.0 allows an authenticated attacker to execute arbitrary…
CVE-2025-3817 2025-04-19 MEDIUM 6.3 A vulnerability, which was classified as critical, has been found in SourceCodester Online Eyewear Shop 1.0. This issue affects some…
CVE-2025-3765 2025-04-17 MEDIUM 6.3 A vulnerability, which was classified as critical, has been found in SourceCodester Web-based Pharmacy Product Management System 1.0. This issue…
CVE-2025-3764 2025-04-17 MEDIUM 6.3 A vulnerability classified as critical was found in SourceCodester Web-based Pharmacy Product Management System 1.0. This vulnerability affects unknown code…
CVE-2025-4314 2025-05-06 HIGH 7.3 A vulnerability has been found in SourceCodester Advanced Web Store 1.0 and classified as critical. Affected by this vulnerability is…
CVE-2025-4313 2025-05-06 HIGH 7.3 A vulnerability, which was classified as critical, was found in SourceCodester Advanced Web Store 1.0. Affected is an unknown function…
CVE-2025-4312 2025-05-06 HIGH 7.3 A vulnerability, which was classified as critical, has been found in SourceCodester Advanced Web Store 1.0. This issue affects some…
CVE-2025-4283 2025-05-05 HIGH 7.3 A vulnerability was found in SourceCodester/oretnom23 Stock Management System 1.0 and classified as critical. This issue affects some unknown processing…
CVE-2025-4282 2025-05-05 MEDIUM 4.3 A vulnerability has been found in SourceCodester/oretnom23 Stock Management System 1.0 and classified as problematic. This vulnerability affects unknown code…
CVE-2025-4470 2025-05-09 LOW 2.4 A vulnerability classified as problematic was found in SourceCodester Online Student Clearance System 1.0. Affected by this vulnerability is an…
CVE-2025-4468 2025-05-09 HIGH 7.3 A vulnerability was found in SourceCodester Online Student Clearance System 1.0. It has been rated as critical. This issue affects…
CVE-2024-13493 2025-02-14 MEDIUM 4.8 The Sensly Online Presence WordPress plugin through 0.6 does not sanitise and escape some of its settings, which could allow…
CVE-2024-7052 2025-02-14 MEDIUM 4.8 The Forminator Forms WordPress plugin before 1.38.3 does not sanitise and escape some of its settings, which could allow high…
CVE-2024-13208 2025-02-15 MEDIUM 4.3 The Maps Plugin using Google Maps for WordPress WordPress plugin before 1.9.4 does not sanitise and escape some of its…
CVE-2024-13306 2025-02-15 MEDIUM 4.3 The Maps Plugin using Google Maps for WordPress WordPress plugin before 1.9.4 does not sanitise and escape some of its…
CVE-2024-13603 2025-02-17 MEDIUM 6.1 The Wise Forms WordPress plugin through 1.2.0 does not sanitise and escape some of its settings, which could allow unauthenticated…
CVE-2024-13608 2025-02-17 MEDIUM 4.7 The Track Logins WordPress plugin through 1.0 does not sanitize and escape a parameter before using it in a SQL…
CVE-2024-13625 2025-02-17 HIGH 7.1 The Tube Video Ads Lite WordPress plugin through 1.5.7 does not sanitise and escape a parameter before outputting it back…
CVE-2024-10939 2024-12-13 MEDIUM 4.8 The Image Widget WordPress plugin before 4.4.11 does not sanitise and escape some of its Image Widget settings, which could…
CVE-2024-5333 2024-12-16 MEDIUM 5.3 The Events Calendar WordPress plugin before 6.8.2.1 is missing access checks in the REST API, allowing for unauthenticated users to…
CVE-2023-52030 2024-01-11 CRITICAL 9.8 TOTOlink A3700R v9.1.2u.5822_B20200513 was discovered to contain a remote command execution (RCE) vulnerability via the setOpModeCfg function.
CVE-2023-50930 2024-01-09 HIGH 8.3 An issue was discovered in savignano S/Notify before 4.0.2 for Jira. While an administrative user is logged on, the configuration…
CVE-2023-47996 2024-01-09 MEDIUM 6.5 An integer overflow vulnerability in Exif.cpp::jpeg_read_exif_dir in FreeImage 3.18.0 allows attackers to obtain information and cause a denial of service.
CVE-2022-41587 2022-10-14 MEDIUM 5.3 Uncaptured exceptions in the home screen module. Successful exploitation of this vulnerability may affect stability.
CVE-2024-10892 2024-12-18 MEDIUM 5.4 The Cost Calculator Builder WordPress plugin before 3.2.43 does not have CSRF checks in some AJAX actions, which could allow…
CVE-2025-4077 2025-04-29 MEDIUM 5.3 A vulnerability classified as critical was found in code-projects School Billing System 1.0. This vulnerability affects the function searchrec. The…
CVE-2025-4080 2025-04-29 MEDIUM 6.3 A vulnerability has been found in PHPGurukul Online Nurse Hiring System 1.0 and classified as critical. Affected by this vulnerability…
CVE-2025-30202 2025-04-30 HIGH 7.5 vLLM is a high-throughput and memory-efficient inference and serving engine for LLMs. Versions starting from 0.5.2 and prior to 0.8.5…
CVE-2025-2907 2025-04-26 CRITICAL 9.8 The Order Delivery Date WordPress plugin before 12.3.1 does not have authorization and CSRF checks when importing settings. Furthermore it…
CVE-2025-3998 2025-04-28 HIGH 7.3 A vulnerability classified as critical was found in CodeAstro Membership Management System 1.0. This vulnerability affects unknown code of the…
CVE-2025-4021 2025-04-28 MEDIUM 6.3 A vulnerability was found in code-projects Patient Record Management System 1.0. It has been classified as critical. This affects an…
CVE-2025-4022 2025-04-28 MEDIUM 6.3 A vulnerability was found in web-arena-x webarena up to 0.2.0. It has been declared as critical. This vulnerability affects the…
CVE-2022-41597 2022-10-14 LOW 3.4 The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted application (TA).Successful exploitation of…
CVE-2022-41595 2022-10-14 LOW 3.4 The phones have the heap overflow, out-of-bounds read, and null pointer vulnerabilities in the fingerprint trusted application (TA).Successful exploitation of…
CVE-2022-3158 2022-10-17 HIGH 8.8 Rockwell Automation FactoryTalk VantagePoint versions 8.0, 8.10, 8.20, 8.30, 8.31 are vulnerable to an input validation vulnerability. The FactoryTalk VantagePoint…
CVE-2025-4023 2025-04-28 HIGH 7.3 A vulnerability was found in itsourcecode Placement Management System 1.0. It has been rated as critical. This issue affects some…
CVE-2015-2079 2025-04-28 CRITICAL 9.9 Usermin 0.980 through 1.x before 1.660 allows uconfig_save.cgi sig_file_free remote code execution because it uses the two argument (not three…
CVE-2022-41871 2025-04-28 MEDIUM 6.0 SEPPmail through 12.1.17 allows command injection within the Admin Portal. An authenticated attacker is able to execute arbitrary code in…
CVE-2024-57439 2025-01-29 MEDIUM 4.9 An issue in the reset password interface of ruoyi v4.8.0 allows attackers with Admin privileges to cause a Denial of…
CVE-2024-57438 2025-01-29 MEDIUM 5.4 Insecure permissions in RuoYi v4.8.0 allows authenticated attackers to escalate privileges by assigning themselves higher level roles.
CVE-2024-57437 2025-01-29 MEDIUM 6.5 RuoYi v4.8.0 was discovered to contain a SQL injection vulnerability via the orderby parameter at /monitor/online/list.
« Anterior Página 446 de 3529 Siguiente »