2481
|
- |
|
-
|
-
|
A vulnerability, which was classified as critical, has been found in 1000 Projects Human Resource Management System 1.0. This issue affects some unknown processing of the file /employeeview.php. The …
|
CWE-89 CWE-74
SQL Injection Injection
|
CVE-2024-13006
|
2024-12-29 17:15 |
2024-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2482
|
- |
|
-
|
-
|
A vulnerability classified as critical was found in 1000 Projects Attendance Tracking Management System 1.0. This vulnerability affects unknown code of the file /admin/attendance_action.php. The mani…
|
CWE-89 CWE-74
SQL Injection Injection
|
CVE-2024-13005
|
2024-12-29 17:15 |
2024-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2483
|
- |
|
-
|
-
|
A vulnerability classified as critical has been found in PHPGurukul Complaint Management System 1.0. This affects an unknown part of the file /admin/category.php. The manipulation of the argument sta…
|
CWE-89 CWE-74
SQL Injection Injection
|
CVE-2024-13004
|
2024-12-29 16:15 |
2024-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2484
|
6.3 |
MEDIUM
Network
|
-
|
-
|
The The Ninja Forms – The Contact Form Builder That Grows With You plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 3.8.22. This is due to the…
|
CWE-94
Code Injection
|
CVE-2024-12238
|
2024-12-29 15:15 |
2024-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2485
|
- |
|
-
|
-
|
A vulnerability was found in PHPGurukul Small CRM 1.0 and classified as critical. This issue affects some unknown processing of the file /admin/quote-details.php. The manipulation of the argument id …
|
CWE-89 CWE-74
SQL Injection Injection
|
CVE-2024-13000
|
2024-12-29 12:15 |
2024-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2486
|
- |
|
-
|
-
|
A vulnerability has been found in PHPGurukul Small CRM 1.0 and classified as critical. This vulnerability affects unknown code of the file /admin/edit-user.php. The manipulation of the argument id le…
|
CWE-89 CWE-74
SQL Injection Injection
|
CVE-2024-12999
|
2024-12-29 11:15 |
2024-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2487
|
- |
|
-
|
-
|
A vulnerability, which was classified as problematic, was found in code-projects Online Car Rental System 1.0. This affects an unknown part of the file /index.php of the component GET Parameter Handl…
|
CWE-79 CWE-94
Cross-site Scripting Code Injection
|
CVE-2024-12998
|
2024-12-29 07:15 |
2024-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2488
|
- |
|
-
|
-
|
An issue was discovered in Kurmi Provisioning Suite before 7.9.0.35 and 7.10.x through 7.10.0.18. A Directory Traversal and Local File Inclusion vulnerability in the logsSys.do page allows remote att…
|
-
|
CVE-2024-54452
|
2024-12-29 04:15 |
2024-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2489
|
- |
|
-
|
-
|
A cross-site scripting (XSS) vulnerability in the graphicCustomization.do page in Kurmi Provisioning Suite before 7.9.0.38, 7.10.x through 7.10.0.18, and 7.11.x through 7.11.0.15 allows remote attack…
|
-
|
CVE-2024-54451
|
2024-12-29 04:15 |
2024-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
2490
|
- |
|
-
|
-
|
An issue was discovered in Kurmi Provisioning Suite 7.9.0.33. If an X-Forwarded-For header is received during authentication, the Kurmi application will record the (possibly forged) IP address mentio…
|
-
|
CVE-2024-54450
|
2024-12-29 04:15 |
2024-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|