8.8

CVSS4.0

CVE-2019-25514 - Jettweb PHP Hazir Haber Sitesi Scripti V3 SQL Injection

Jettweb PHP Hazir Haber Sitesi Scripti V3 contains an SQL injection vulnerability that allows attackers to inject malicious SQL commands through the kelime parameter in POST requests. Attackers can manipulate the kelime parameter with UNION-based SQL injection payloads to extract sensitive data fro…

πŸ“… Published: March 12, 2026, 3:36 p.m. πŸ”„ Last Modified: March 12, 2026, 4:16 p.m.

8.8

CVSS4.0

CVE-2019-25513 - Jettweb PHP Hazir Haber Sitesi Scripti V3 SQL Injection via datagetir.php

Jettweb PHP Hazir Haber Sitesi Scripti V3 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'q' parameter. Attackers can send GET requests to datagetir.php with malicious 'q' values using time-based blind S…

πŸ“… Published: March 12, 2026, 3:36 p.m. πŸ”„ Last Modified: March 12, 2026, 4:16 p.m.

8.8

CVSS4.0

CVE-2019-25512 - Jettweb PHP Hazir Haber Sitesi Scripti V3 SQL Injection

Jettweb PHP Hazir Haber Sitesi Scripti V3 contains an SQL injection vulnerability that allows attackers to inject malicious SQL commands through the kelime parameter in POST requests. Attackers can manipulate the kelime parameter with UNION-based SQL injection payloads to extract sensitive database…

πŸ“… Published: March 12, 2026, 3:36 p.m. πŸ”„ Last Modified: March 12, 2026, 4:16 p.m.

8.8

CVSS4.0

CVE-2019-25511 - Jettweb PHP Hazir Haber Sitesi Scripti V3 SQL Injection

Jettweb PHP Hazir Haber Sitesi Scripti V3 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the videoid parameter. Attackers can send GET requests to fonksiyonlar.php with malicious videoid values using UNION-b…

πŸ“… Published: March 12, 2026, 3:36 p.m. πŸ”„ Last Modified: March 12, 2026, 4:16 p.m.

8.8

CVSS4.0

CVE-2019-25510 - Jettweb PHP Hazir Haber Sitesi Scripti V2 Authentication Bypass

Jettweb PHP Hazir Haber Sitesi Scripti V2 contains an authentication bypass vulnerability in the administration panel that allows unauthenticated attackers to gain administrative access by exploiting improper SQL query validation. Attackers can submit SQL injection payloads in the username and pass…

πŸ“… Published: March 12, 2026, 3:36 p.m. πŸ”„ Last Modified: March 12, 2026, 3:36 p.m.

8.8

CVSS4.0

CVE-2019-25509 - XooDigital Lastest Latest SQL Injection via results.php

XooDigital Latest contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'p' parameter. Attackers can send GET requests to results.php with malicious 'p' values to extract sensitive database information.

πŸ“… Published: March 12, 2026, 3:36 p.m. πŸ”„ Last Modified: March 12, 2026, 3:36 p.m.

8.8

CVSS4.0

CVE-2019-25508 - Jettweb Php Hazir Ilan Sitesi Scripti V2 SQL Injection via katgetir.php

Jettweb Php Hazir Ilan Sitesi Scripti V2 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'kat' parameter. Attackers can send GET requests to the katgetir.php endpoint with malicious 'kat' values to extrac…

πŸ“… Published: March 12, 2026, 3:36 p.m. πŸ”„ Last Modified: March 12, 2026, 3:36 p.m.

8.8

CVSS4.0

CVE-2019-25488 - Jettweb Hazir Rent A Car Scripti V4 SQL Injection via admin

Jettweb Hazir Rent A Car Scripti V4 contains multiple SQL injection vulnerabilities in the admin panel that allow unauthenticated attackers to manipulate database queries through GET parameters. Attackers can inject SQL code into the 'tur', 'id', and 'ozellikdil' parameters of the admin/index.php e…

πŸ“… Published: March 12, 2026, 3:36 p.m. πŸ”„ Last Modified: March 12, 2026, 3:36 p.m.

8.8

CVSS4.0

CVE-2019-25482 - Jettweb PHP Hazir Rent A Car Sitesi Scripti V2 SQL Injection

Jettweb PHP Hazir Rent A Car Sitesi Scripti V2 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the arac_kategori_id parameter. Attackers can send POST requests to the endpoint with malicious SQL payloads to e…

πŸ“… Published: March 12, 2026, 3:36 p.m. πŸ”„ Last Modified: March 12, 2026, 3:36 p.m.

8.8

CVSS4.0

CVE-2019-25481 - iScripts ReserveLogic Lastest SQL Injection via search endpoint

iScripts ReserveLogic contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the jqSearchDestination parameter. Attackers can send POST requests to the search endpoint with crafted SQL payloads to extract sensitive …

πŸ“… Published: March 12, 2026, 3:36 p.m. πŸ”„ Last Modified: March 12, 2026, 3:36 p.m.
Total resulsts: 337605
Page 4 of 33,761
Β« previous page Β» next page
Filters