8.8

CVSS3.1

CVE-2026-21672 -

A vulnerability allowing local privilege escalation on Windows-based Veeam Backup & Replication servers.

๐Ÿ“… Published: March 12, 2026, 4:26 p.m. ๐Ÿ”„ Last Modified: March 12, 2026, 9:07 p.m.

6.3

CVSS4.0

CVE-2026-4045 - projectsend Auth.php response discrepancy

A flaw has been found in projectsend up to r1945. This impacts an unknown function of the file includes/Classes/Auth.php. Executing a manipulation of the argument ldap_email can lead to observable response discrepancy. The attack can be executed remotely. A high complexity level is associated with โ€ฆ

๐Ÿ“… Published: March 12, 2026, 4:02 p.m. ๐Ÿ”„ Last Modified: March 12, 2026, 9:07 p.m.

8.8

CVSS4.0

CVE-2019-25543 - Netartmedia Real Estate Portal 5.0 SQL Injection via index.php

Netartmedia Real Estate Portal 5.0 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the page parameter. Attackers can submit POST requests to index.php with malicious SQL payloads in the page field to bypass aโ€ฆ

๐Ÿ“… Published: March 12, 2026, 3:37 p.m. ๐Ÿ”„ Last Modified: March 12, 2026, 9:07 p.m.

8.8

CVSS4.0

CVE-2019-25542 - Netartmedia Real Estate Portal 5.0 SQL Injection via index.php

Netartmedia Real Estate Portal 5.0 contains a SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the user_email parameter. Attackers can send POST requests to index.php with malicious payloads in the user_email field to bypโ€ฆ

๐Ÿ“… Published: March 12, 2026, 3:37 p.m. ๐Ÿ”„ Last Modified: March 12, 2026, 9:07 p.m.

8.8

CVSS4.0

CVE-2019-25541 - Netartmedia PHP Mall 4.1 Multiple SQL Injection

Netartmedia PHP Mall 4.1 contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to manipulate database queries through unvalidated parameters. Attackers can inject time-based blind SQL payloads via the 'id' parameter in index.php or the 'Email' parameter in loginactionโ€ฆ

๐Ÿ“… Published: March 12, 2026, 3:37 p.m. ๐Ÿ”„ Last Modified: March 12, 2026, 9:07 p.m.

8.8

CVSS4.0

CVE-2019-25540 - Netartmedia PHP Mall 4.1 Multiple SQL Injection

Netartmedia PHP Mall 4.1 contains multiple SQL injection vulnerabilities that allow unauthenticated attackers to manipulate database queries by injecting SQL code through various parameters. Attackers can craft malicious requests with SQL payloads to extract sensitive database information includingโ€ฆ

๐Ÿ“… Published: March 12, 2026, 3:37 p.m. ๐Ÿ”„ Last Modified: March 12, 2026, 9:07 p.m.

8.8

CVSS4.0

CVE-2019-25539 - 202CMS v10 beta SQL Injection via register.php

202CMS v10 beta contains a blind SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the log_user parameter. Attackers can send POST requests to index.php with crafted SQL payloads using time-based blind injection techniquesโ€ฆ

๐Ÿ“… Published: March 12, 2026, 3:37 p.m. ๐Ÿ”„ Last Modified: March 12, 2026, 9:07 p.m.

8.8

CVSS4.0

CVE-2019-25538 - 202CMS v10 beta SQL Injection via log_user Parameter

202CMS v10 beta contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the log_user parameter. Attackers can send crafted requests with malicious SQL statements in the log_user field to extract sensitive database inโ€ฆ

๐Ÿ“… Published: March 12, 2026, 3:37 p.m. ๐Ÿ”„ Last Modified: March 12, 2026, 9:07 p.m.

8.8

CVSS4.0

CVE-2019-25537 - Netartmedia Event Portal 2.0 SQL Injection via loginaction.php

Netartmedia Event Portal 2.0 contains a time-based blind SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the Email parameter. Attackers can send POST requests to loginaction.php with malicious SQL payloads in the Email fโ€ฆ

๐Ÿ“… Published: March 12, 2026, 3:37 p.m. ๐Ÿ”„ Last Modified: March 12, 2026, 9:07 p.m.

8.8

CVSS4.0

CVE-2019-25536 - Netartmedia PHP Real Estate Agency 4.0 SQL Injection via features parameter

Netartmedia PHP Real Estate Agency 4.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the features[] parameter. Attackers can send POST requests to index.php with crafted SQL payloads in the featuresโ€ฆ

๐Ÿ“… Published: March 12, 2026, 3:37 p.m. ๐Ÿ”„ Last Modified: March 12, 2026, 9:07 p.m.
Total resulsts: 337973
Page 36 of 33,798
ยซ previous page ยป next page
Filters