6.9

CVSS4.0

CVE-2025-13285 - itsourcecode Online Voting System login.php sql injection

A vulnerability was identified in itsourcecode Online Voting System 1.0. The affected element is an unknown function of the file /login.php. Such manipulation of the argument Username leads to sql injection. The attack may be launched remotely. The exploit is publicly available and might be used.

πŸ“… Published: Nov. 17, 2025, 1:32 p.m. πŸ”„ Last Modified: Nov. 19, 2025, 1:12 p.m.

6.9

CVSS4.0

CVE-2025-13280 - CodeAstro Simple Inventory System Login index.php sql injection

A vulnerability was determined in CodeAstro Simple Inventory System 1.0. The impacted element is an unknown function of the file /index.php of the component Login. Executing a manipulation of the argument Username can lead to sql injection. The attack may be launched remotely. The exploit has been …

πŸ“… Published: Nov. 17, 2025, 1:02 p.m. πŸ”„ Last Modified: Feb. 24, 2026, 7:16 a.m.

5.3

CVSS4.0

CVE-2025-13279 - code-projects Nero Social Networking Site profilefriends.php sql injection

A vulnerability was found in code-projects Nero Social Networking Site 1.0. The affected element is an unknown function of the file /profilefriends.php. Performing manipulation of the argument ID results in sql injection. The attack may be initiated remotely. The exploit has been made public and co…

πŸ“… Published: Nov. 17, 2025, 12:32 p.m. πŸ”„ Last Modified: Nov. 19, 2025, 1:13 p.m.

5.3

CVSS4.0

CVE-2025-13278 - projectworlds Advanced Library Management System borrowed_book_search.php sql injection

A vulnerability has been found in projectworlds Advanced Library Management System 1.0. Impacted is an unknown function of the file /borrowed_book_search.php. Such manipulation of the argument datefrom/dateto leads to sql injection. The attack can be launched remotely. The exploit has been disclose…

πŸ“… Published: Nov. 17, 2025, 12:02 p.m. πŸ”„ Last Modified: Feb. 24, 2026, 6:32 a.m.

7.3

CVSS4.0

CVE-2025-40936 -

A vulnerability has been identified in PS/IGES Parasolid Translator Component (All versions < V29.0.258), Solid Edge (All versions < V226.00 Update 03). The affected applications contains an out of bounds read vulnerability while parsing specially crafted IGS files. This could allow an attacker to …

πŸ“… Published: Nov. 17, 2025, 11:39 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.8

CVSS4.0

CVE-2025-40834 -

A vulnerability has been identified in Mendix RichText (All versions >= V4.0.0 < V4.6.1). Affected widget does not properly neutralize the input. This could allow an attacker to execute cross-site scripting attacks.

πŸ“… Published: Nov. 17, 2025, 11:39 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.9

CVSS4.0

CVE-2025-13277 - code-projects Nero Social Networking Site friendsphoto.php sql injection

A flaw has been found in code-projects Nero Social Networking Site 1.0. This issue affects some unknown processing of the file /friendsphoto.php. This manipulation of the argument ID causes sql injection. The attack can be initiated remotely. The exploit has been published and may be used.

πŸ“… Published: Nov. 17, 2025, 11:32 a.m. πŸ”„ Last Modified: Nov. 19, 2025, 1:13 p.m.

7.1

CVSS4.0

CVE-2025-11681 - Denial of Service condition in M-Files Server

Denial-of-service condition in M-Files Server versions before 25.11.15392.1, before 25.2 LTS SR2 and before 25.8 LTS SR2 allows an authenticated user to cause the MFserver process to crash.

πŸ“… Published: Nov. 17, 2025, 11:30 a.m. πŸ”„ Last Modified: Feb. 23, 2026, 11:16 a.m.

6.9

CVSS4.0

CVE-2025-13276 - g33kyrash Online-Banking-System index.php sql injection

A vulnerability was detected in g33kyrash Online-Banking-System up to 12dbfa690e5af649fb72d2e5d3674e88d6743455. This vulnerability affects unknown code of the file /index.php. The manipulation of the argument Username results in sql injection. It is possible to launch the attack remotely. The explo…

πŸ“… Published: Nov. 17, 2025, 11:02 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.1

CVSS4.0

CVE-2025-13275 - Iqbolshoh php-business-website about.php unrestricted upload

A security vulnerability has been detected in Iqbolshoh php-business-website up to 10677743a8dfc281f85291a27cf63a0bce043c24. This affects an unknown part of the file /admin/about.php. The manipulation leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit has been…

πŸ“… Published: Nov. 17, 2025, 10:32 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 2993 of 34,919
Β« previous page Β» next page
Filters