Search
Search Results (345093 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2018-18799 | 1 School Attendance Monitoring System Project | 1 School Attendance Monitoring System | 2024-11-21 | N/A |
| School Attendance Monitoring System 1.0 has CSRF via event/controller.php?action=photos. | ||||
| CVE-2018-18798 | 1 School Attendance Monitoring System Project | 1 School Attendance Monitoring System | 2024-11-21 | N/A |
| Attendance Monitoring System 1.0 has SQL Injection via the 'id' parameter to student/index.php?view=view, event/index.php?view=view, and user/index.php?view=view. | ||||
| CVE-2018-18797 | 1 School Attendance Monitoring System Project | 1 School Attendance Monitoring System | 2024-11-21 | N/A |
| School Attendance Monitoring System 1.0 has CSRF via /user/user/edit.php. | ||||
| CVE-2018-18796 | 1 Library Management System Project | 1 Library Management System | 2024-11-21 | N/A |
| Library Management System 1.0 has SQL Injection via the "Search for Books" screen. | ||||
| CVE-2018-18795 | 1 School Event Management System Project | 1 School Event Management System | 2024-11-21 | N/A |
| School Event Management System 1.0 has SQL Injection via the student/index.php or event/index.php id parameter. | ||||
| CVE-2018-18794 | 1 School Event Management System Project | 1 School Event Management System | 2024-11-21 | N/A |
| School Event Management System 1.0 allows CSRF via user/controller.php?action=edit. | ||||
| CVE-2018-18793 | 1 School Event Management System Project | 1 School Event Management System | 2024-11-21 | N/A |
| School Event Management System 1.0 allows Arbitrary File Upload via event/controller.php?action=photos. | ||||
| CVE-2018-18792 | 1 Zzcms | 1 Zzcms | 2024-11-21 | N/A |
| An issue was discovered in zzcms 8.3. SQL Injection exists in zs/zs_list.php via a pxzs cookie. | ||||
| CVE-2018-18791 | 1 Zzcms | 1 Zzcms | 2024-11-21 | N/A |
| An issue was discovered in zzcms 8.3. SQL Injection exists in zs/search.php via a pxzs cookie. | ||||
| CVE-2018-18790 | 1 Zzcms | 1 Zzcms | 2024-11-21 | N/A |
| An issue was discovered in zzcms 8.3. SQL Injection exists in admin/special_add.php via a zxbigclassid cookie. (This needs an admin user login.) | ||||
| CVE-2018-18789 | 1 Zzcms | 1 Zzcms | 2024-11-21 | N/A |
| An issue was discovered in zzcms 8.3. SQL Injection exists in zt/top.php via a Host HTTP header to zt/news.php. | ||||
| CVE-2018-18788 | 1 Zzcms | 1 Zzcms | 2024-11-21 | N/A |
| An issue was discovered in zzcms 8.3. SQL Injection exists in admin/classmanage.php via the tablename parameter. (This needs an admin user login.) | ||||
| CVE-2018-18787 | 1 Zzcms | 1 Zzcms | 2024-11-21 | N/A |
| An issue was discovered in zzcms 8.3. SQL Injection exists in zs/zs.php via a pxzs cookie. | ||||
| CVE-2018-18786 | 1 Zzcms | 1 Zzcms | 2024-11-21 | N/A |
| An issue was discovered in zzcms 8.3. SQL Injection exists in ajax/zs.php via a pxzs cookie. | ||||
| CVE-2018-18785 | 1 Zzcms | 1 Zzcms | 2024-11-21 | N/A |
| An issue was discovered in zzcms 8.3. SQL Injection exists in zs/subzs.php with a zzcmscpid cookie to zs/search.php. | ||||
| CVE-2018-18784 | 1 Zzcms | 1 Zzcms | 2024-11-21 | N/A |
| An issue was discovered in zzcms 8.3. SQL Injection exists in admin/tagmanage.php via the tabletag parameter. (This needs an admin user login.) | ||||
| CVE-2018-18783 | 1 Sem-cms | 1 Semcms | 2024-11-21 | N/A |
| XSS was discovered in SEMCMS V3.4 via the semcms_remail.php?type=ok umail parameter. | ||||
| CVE-2018-18782 | 1 Dedecms | 1 Dedecms | 2024-11-21 | N/A |
| Reflected XSS exists in DedeCMS 5.7 SP2 via the /member/myfriend.php ftype parameter. | ||||
| CVE-2018-18781 | 1 Dedecms | 1 Dedecms | 2024-11-21 | N/A |
| DedeCMS 5.7 SP2 allows XSS via the /member/uploads_select.php f or keyword parameter. | ||||
| CVE-2018-18778 | 1 Acme | 1 Mini-httpd | 2024-11-21 | N/A |
| ACME mini_httpd before 1.30 lets remote users read arbitrary files. | ||||