8.8

CVSS4.0

CVE-2019-25516 - Jettweb PHP Hazir Haber Sitesi Scripti V1 SQL Injection via gallery.php

Jettweb PHP Hazir Haber Sitesi Scripti V1 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the gallery_id parameter. Attackers can send GET requests to gallery.php with malicious gallery_id values using UNION-…

πŸ“… Published: March 12, 2026, 3:36 p.m. πŸ”„ Last Modified: March 12, 2026, 9:07 p.m.

8.7

CVSS4.0

CVE-2019-25515 - Jettweb PHP Hazir Haber Sitesi Scripti V3 Authentication Bypass

Jettweb PHP Hazir Haber Sitesi Scripti V3 contains an authentication bypass vulnerability in the login.php administration panel that allows unauthenticated attackers to gain administrative access by submitting crafted SQL syntax. Attackers can bypass authentication by submitting equals signs and 'o…

πŸ“… Published: March 12, 2026, 3:36 p.m. πŸ”„ Last Modified: March 12, 2026, 9:07 p.m.

8.8

CVSS4.0

CVE-2019-25514 - Jettweb PHP Hazir Haber Sitesi Scripti V3 SQL Injection

Jettweb PHP Hazir Haber Sitesi Scripti V3 contains an SQL injection vulnerability that allows attackers to inject malicious SQL commands through the kelime parameter in POST requests. Attackers can manipulate the kelime parameter with UNION-based SQL injection payloads to extract sensitive data fro…

πŸ“… Published: March 12, 2026, 3:36 p.m. πŸ”„ Last Modified: March 12, 2026, 9:07 p.m.

8.8

CVSS4.0

CVE-2019-25513 - Jettweb PHP Hazir Haber Sitesi Scripti V3 SQL Injection via datagetir.php

Jettweb PHP Hazir Haber Sitesi Scripti V3 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'q' parameter. Attackers can send GET requests to datagetir.php with malicious 'q' values using time-based blind S…

πŸ“… Published: March 12, 2026, 3:36 p.m. πŸ”„ Last Modified: March 12, 2026, 9:07 p.m.

8.8

CVSS4.0

CVE-2019-25512 - Jettweb PHP Hazir Haber Sitesi Scripti V3 SQL Injection

Jettweb PHP Hazir Haber Sitesi Scripti V3 contains an SQL injection vulnerability that allows attackers to inject malicious SQL commands through the kelime parameter in POST requests. Attackers can manipulate the kelime parameter with UNION-based SQL injection payloads to extract sensitive database…

πŸ“… Published: March 12, 2026, 3:36 p.m. πŸ”„ Last Modified: March 12, 2026, 9:07 p.m.

8.8

CVSS4.0

CVE-2019-25511 - Jettweb PHP Hazir Haber Sitesi Scripti V3 SQL Injection

Jettweb PHP Hazir Haber Sitesi Scripti V3 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the videoid parameter. Attackers can send GET requests to fonksiyonlar.php with malicious videoid values using UNION-b…

πŸ“… Published: March 12, 2026, 3:36 p.m. πŸ”„ Last Modified: March 12, 2026, 9:07 p.m.

8.8

CVSS4.0

CVE-2019-25510 - Jettweb PHP Hazir Haber Sitesi Scripti V2 Authentication Bypass

Jettweb PHP Hazir Haber Sitesi Scripti V2 contains an authentication bypass vulnerability in the administration panel that allows unauthenticated attackers to gain administrative access by exploiting improper SQL query validation. Attackers can submit SQL injection payloads in the username and pass…

πŸ“… Published: March 12, 2026, 3:36 p.m. πŸ”„ Last Modified: March 12, 2026, 9:07 p.m.

8.8

CVSS4.0

CVE-2019-25509 - XooDigital Lastest Latest SQL Injection via results.php

XooDigital Latest contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'p' parameter. Attackers can send GET requests to results.php with malicious 'p' values to extract sensitive database information.

πŸ“… Published: March 12, 2026, 3:36 p.m. πŸ”„ Last Modified: March 12, 2026, 9:07 p.m.

8.8

CVSS4.0

CVE-2019-25508 - Jettweb Php Hazir Ilan Sitesi Scripti V2 SQL Injection via katgetir.php

Jettweb Php Hazir Ilan Sitesi Scripti V2 contains an SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through the 'kat' parameter. Attackers can send GET requests to the katgetir.php endpoint with malicious 'kat' values to extrac…

πŸ“… Published: March 12, 2026, 3:36 p.m. πŸ”„ Last Modified: March 12, 2026, 9:07 p.m.

8.8

CVSS4.0

CVE-2019-25488 - Jettweb Hazir Rent A Car Scripti V4 SQL Injection via admin

Jettweb Hazir Rent A Car Scripti V4 contains multiple SQL injection vulnerabilities in the admin panel that allow unauthenticated attackers to manipulate database queries through GET parameters. Attackers can inject SQL code into the 'tur', 'id', and 'ozellikdil' parameters of the admin/index.php e…

πŸ“… Published: March 12, 2026, 3:36 p.m. πŸ”„ Last Modified: March 14, 2026, 3:41 a.m.
Total resulsts: 337984
Page 40 of 33,799
Β« previous page Β» next page
Filters