8.8

CVSS4.0

CVE-2019-25640 - Inout Article Base CMS Lastest SQL Injection via portalLogin.php

Inout Article Base CMS contains SQL injection vulnerabilities that allow unauthenticated attackers to manipulate database queries through the 'p' and 'u' parameters. Attackers can inject SQL code using XOR-based payloads in GET requests to portalLogin.php to extract sensitive database information oโ€ฆ

๐Ÿ“… Published: March 24, 2026, 11:27 a.m. ๐Ÿ”„ Last Modified: March 25, 2026, 8:39 p.m.

8.8

CVSS4.0

CVE-2019-25639 - Matrimony Website Script M-Plus Multiple SQL Injection

Matrimony Website Script M-Plus contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to manipulate database queries by injecting SQL code through various POST parameters. Attackers can inject malicious SQL payloads into parameters like txtGender, religion, Fage, and โ€ฆ

๐Ÿ“… Published: March 24, 2026, 11:27 a.m. ๐Ÿ”„ Last Modified: March 25, 2026, 8:39 p.m.

7.1

CVSS4.0

CVE-2019-25638 - Meeplace Business Review Script Lastest SQL Injection via addclick.php

Meeplace Business Review Script contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the 'id' parameter. Attackers can send GET requests to the addclick.php endpoint with crafted SQL payloads in the 'id' pโ€ฆ

๐Ÿ“… Published: March 24, 2026, 11:27 a.m. ๐Ÿ”„ Last Modified: March 26, 2026, 12:39 p.m.

8.6

CVSS4.0

CVE-2019-25637 - X-NetStat Pro 5.63 Local Buffer Overflow via EggHunter

X-NetStat Pro 5.63 contains a local buffer overflow vulnerability that allows local attackers to execute arbitrary code by overwriting the EIP register through a 264-byte buffer overflow. Attackers can inject shellcode into memory and use an egg hunter technique to locate and execute the payload whโ€ฆ

๐Ÿ“… Published: March 24, 2026, 11:27 a.m. ๐Ÿ”„ Last Modified: March 25, 2026, 8:39 p.m.

8.8

CVSS4.0

CVE-2019-25636 - Zeeways Jobsite CMS Lastest SQL Injection via id Parameter

Zeeways Jobsite CMS contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'id' GET parameter. Attackers can send crafted requests to news_details.php, jobs_details.php, or job_cmp_details.php with malicious 'idโ€ฆ

๐Ÿ“… Published: March 24, 2026, 11:27 a.m. ๐Ÿ”„ Last Modified: March 25, 2026, 8:39 p.m.

8.8

CVSS4.0

CVE-2019-25635 - Zeeways Matrimony CMS Lastest SQL Injection via profile_list

Zeeways Matrimony CMS contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to manipulate database queries through the profile_list endpoint. Attackers can inject SQL code via the up_cast, s_mother, and s_religion parameters to extract sensitive database information uโ€ฆ

๐Ÿ“… Published: March 24, 2026, 11:27 a.m. ๐Ÿ”„ Last Modified: March 25, 2026, 8:39 p.m.

8.6

CVSS4.0

CVE-2019-25634 - Base64 Decoder 1.1.2 Local Buffer Overflow SEH Egghunter

Base64 Decoder 1.1.2 contains a stack-based buffer overflow vulnerability that allows local attackers to execute arbitrary code by triggering a structured exception handler (SEH) overwrite. Attackers can craft a malicious input file that overflows a buffer, overwrites the SEH chain with a POP-POP-Rโ€ฆ

๐Ÿ“… Published: March 24, 2026, 11:27 a.m. ๐Ÿ”„ Last Modified: March 25, 2026, 8:39 p.m.

8.6

CVSS4.0

CVE-2019-25633 - AIDA64 Extreme 5.99.4900 SEH Buffer Overflow via EggHunter

AIDA64 Extreme 5.99.4900 contains a structured exception handling buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying malicious input through the email preferences and report wizard interfaces. Attackers can inject crafted payloads into the Display name โ€ฆ

๐Ÿ“… Published: March 24, 2026, 11:27 a.m. ๐Ÿ”„ Last Modified: March 27, 2026, 9:21 a.m.

6.9

CVSS4.0

CVE-2019-25632 - phpFileManager 1.7.8 Local File Inclusion via index.php

phpFileManager 1.7.8 contains a local file inclusion vulnerability that allows unauthenticated attackers to read arbitrary files by manipulating the action, fm_current_dir, and filename parameters. Attackers can send GET requests to index.php with crafted parameter values to access sensitive files โ€ฆ

๐Ÿ“… Published: March 24, 2026, 11:27 a.m. ๐Ÿ”„ Last Modified: March 26, 2026, 12:38 p.m.

8.6

CVSS4.0

CVE-2019-25631 - AIDA64 Business 5.99.4900 SEH Buffer Overflow via EggHunter

AIDA64 Business 5.99.4900 contains a structured exception handling buffer overflow vulnerability that allows local attackers to execute arbitrary code by overwriting SEH pointers with malicious shellcode. Attackers can inject egg hunter shellcode through the SMTP display name field in preferences oโ€ฆ

๐Ÿ“… Published: March 24, 2026, 11:27 a.m. ๐Ÿ”„ Last Modified: March 27, 2026, 8:26 p.m.
Total resulsts: 341106
Page 145 of 34,111
ยซ previous page ยป next page
Filters