7.5

CVSS3.1

CVE-2026-22259 - Suricata dnp3: unbounded transaction growth

Suricata is a network IDS, IPS and NSM engine. Prior to versions 8.0.3 and 7.0.14, specially crafted traffic can cause Suricata to consume large amounts of memory while parsing DNP3 traffic. This can lead to the process slowing down and running out of memory, potentially leading to it getting kille…

📅 Published: Jan. 27, 2026, 5:13 p.m. 🔄 Last Modified: April 18, 2026, 2:15 a.m.

6.7

CVSS3.0

CVE-2026-0705 - Local Privilege Escalation via Insecure Folder Permissions

Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cloud Manager (Windows) before build 6.4.25342.354.

📅 Published: Jan. 27, 2026, 4:43 p.m. 🔄 Last Modified: April 18, 2026, 2:15 a.m.

9.3

CVSS4.0

CVE-2026-1483 - Out-of-band SQL injection in Quatuor Performance Evaluation

An out-of-band SQL injection vulnerability (OOB SQLi) has been detected in the Performance Evaluation (EDD) application developed by Gabinete Técnico de Programación. Exploiting this vulnerability in the parameter 'Id_usuario' in '/evaluacion_objetivos_ver_auto.aspx', could allow an attacker to ext…

📅 Published: Jan. 27, 2026, 4:33 p.m. 🔄 Last Modified: April 18, 2026, 2:15 a.m.

9.3

CVSS4.0

CVE-2026-1482 - Out-of-band SQL injection in Quatuor Performance Evaluation

An out-of-band SQL injection vulnerability (OOB SQLi) has been detected in the Performance Evaluation (EDD) application developed by Gabinete Técnico de Programación. Exploiting this vulnerability in the parameter 'Id_evaluacion' in '/evaluacion_objetivos_evalua_definido.aspx', could allow an attac…

📅 Published: Jan. 27, 2026, 4:32 p.m. 🔄 Last Modified: April 18, 2026, 2:15 a.m.

9.3

CVSS4.0

CVE-2026-1481 - Out-of-band SQL injection in Quatuor Performance Evaluation

An out-of-band SQL injection vulnerability (OOB SQLi) has been detected in the Performance Evaluation (EDD) application developed by Gabinete Técnico de Programación. Exploiting this vulnerability in the parameter 'Id_usuario' in '/evaluacion_objetivos_anyo_sig_ver_auto.aspx', could allow an attack…

📅 Published: Jan. 27, 2026, 4:32 p.m. 🔄 Last Modified: April 18, 2026, 3 p.m.

9.3

CVSS4.0

CVE-2026-1480 - Out-of-band SQL injection in Quatuor Performance Evaluation

An out-of-band SQL injection vulnerability (OOB SQLi) has been detected in the Performance Evaluation (EDD) application developed by Gabinete Técnico de Programación. Exploiting this vulnerability in the parameter 'Id_usuario' in '/evaluacion_objetivos_anyo_sig_evalua.aspx', could allow an attacker…

📅 Published: Jan. 27, 2026, 4:31 p.m. 🔄 Last Modified: April 18, 2026, 2:15 a.m.

9.3

CVSS4.0

CVE-2026-1479 - Out-of-band SQL injection in Quatuor Performance Evaluation

An out-of-band SQL injection vulnerability (OOB SQLi) has been detected in the Performance Evaluation (EDD) application developed by Gabinete Técnico de Programación. Exploiting this vulnerability in the parameters 'Id_usuario' and 'Id_evaluacion’ in ‘/evaluacion_hca_ver_auto.asp', could allow an a…

📅 Published: Jan. 27, 2026, 4:31 p.m. 🔄 Last Modified: April 18, 2026, 2:15 a.m.

9.3

CVSS4.0

CVE-2026-1478 - Out-of-band SQL injection in Quatuor Performance Evaluation

An out-of-band SQL injection vulnerability (OOB SQLi) has been detected in the Performance Evaluation (EDD) application developed by Gabinete Técnico de Programación. Exploiting this vulnerability in the parameter 'Id_usuario' and 'Id_evaluacion’ in ‘/evaluacion_hca_evalua.aspx’, could allow an att…

📅 Published: Jan. 27, 2026, 4:30 p.m. 🔄 Last Modified: April 16, 2026, 7:30 a.m.

9.3

CVSS4.0

CVE-2026-1477 - Out-of-band SQL injection in Quatuor Performance Evaluation

An out-of-band SQL injection vulnerability (OOB SQLi) has been detected in the Performance Evaluation (EDD) application developed by Gabinete Técnico de Programación. Exploiting this vulnerability in the parameter 'Id_usuario' and 'Id_evaluacion’ in ‘/evaluacion_competencias_evalua_old.aspx’, could…

📅 Published: Jan. 27, 2026, 4:30 p.m. 🔄 Last Modified: April 18, 2026, 2:15 a.m.

9.3

CVSS4.0

CVE-2026-1476 - Out-of-band SQL injection in Quatuor Performance Evaluation

An out-of-band SQL injection vulnerability (OOB SQLi) has been detected in the Performance Evaluation (EDD) application developed by Gabinete Técnico de Programación. Exploiting this vulnerability in the parameter 'Id_usuario' in ‘/evaluacion_acciones_ver_auto.aspx’, could allow an attacker to extr…

📅 Published: Jan. 27, 2026, 4:29 p.m. 🔄 Last Modified: April 18, 2026, 2:15 a.m.
Total resulsts: 347061
Page 1716 of 34,707
« previous page » next page
Filters