|
312151
|
6.1 |
MEDIUM
Network
|
phpgurukul
|
job_portal
|
Cross-Site Scripting (XSS) vulnerability, whereby user-controlled input is not sufficiently encrypted. Exploitation of this vulnerability could allow an attacker to retrieve the session details of an…
|
CWE-79
Cross-site Scripting
|
CVE-2024-8473
|
2024-09-6 20:44 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312152
|
6.1 |
MEDIUM
Network
|
phpgurukul
|
job_portal
|
Cross-Site Scripting (XSS) vulnerability, whereby user-controlled input is not sufficiently encrypted. Exploitation of this vulnerability could allow an attacker to retrieve the session details of an…
|
CWE-79
Cross-site Scripting
|
CVE-2024-8472
|
2024-09-6 20:44 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312153
|
6.1 |
MEDIUM
Network
|
phpgurukul
|
job_portal
|
Cross-Site Scripting (XSS) vulnerability, whereby user-controlled input is not sufficiently encrypted. Exploitation of this vulnerability could allow an attacker to retrieve the session details of an…
|
CWE-79
Cross-site Scripting
|
CVE-2024-8471
|
2024-09-6 20:44 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312154
|
7.5 |
HIGH
Network
|
phpgurukul
|
job_portal
|
SQL injection vulnerability, by which an attacker could send a specially designed query through CATEGORY parameter in /jobportal/admin/vacancy/controller.php, and retrieve all the information stored …
|
CWE-89
SQL Injection
|
CVE-2024-8470
|
2024-09-6 20:44 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312155
|
7.5 |
HIGH
Network
|
phpgurukul
|
job_portal
|
SQL injection vulnerability, by which an attacker could send a specially designed query through id parameter in /jobportal/admin/employee/index.php, and retrieve all the information stored in it.
|
CWE-89
SQL Injection
|
CVE-2024-8469
|
2024-09-6 20:43 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312156
|
7.5 |
HIGH
Network
|
phpgurukul
|
job_portal
|
SQL injection vulnerability, by which an attacker could send a specially designed query through search parameter in /jobportal/index.php, and retrieve all the information stored in it.
|
CWE-89
SQL Injection
|
CVE-2024-8468
|
2024-09-6 20:43 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312157
|
7.5 |
HIGH
Network
|
phpgurukul
|
job_portal
|
SQL injection vulnerability, by which an attacker could send a specially designed query through id parameter in /jobportal/admin/category/index.php, and retrieve all the information stored in it.
|
CWE-89
SQL Injection
|
CVE-2024-8467
|
2024-09-6 20:42 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312158
|
7.5 |
HIGH
Network
|
phpgurukul
|
job_portal
|
SQL injection vulnerability, by which an attacker could send a specially designed query through CATEGORY parameter in /jobportal/admin/category/controller.php, and retrieve all the information stored…
|
CWE-89
SQL Injection
|
CVE-2024-8466
|
2024-09-6 20:24 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312159
|
7.5 |
HIGH
Network
|
phpgurukul
|
job_portal
|
SQL injection vulnerability, by which an attacker could send a specially designed query through user_id parameter in /jobportal/admin/user/controller.php, and retrieve all the information stored in i…
|
CWE-89
SQL Injection
|
CVE-2024-8465
|
2024-09-6 20:16 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
312160
|
7.5 |
HIGH
Network
|
phpgurukul
|
job_portal
|
SQL injection vulnerability, by which an attacker could send a specially designed query through JOBREGID parameter in /jobportal/admin/applicants/controller.php, and retrieve all the information stor…
|
CWE-89
SQL Injection
|
CVE-2024-8464
|
2024-09-6 20:15 |
2024-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|