5.3

CVSS4.0

CVE-2025-6876 - SourceCodester Best Salon Management System add-category.php sql injection

A vulnerability was found in SourceCodester Best Salon Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /panel/add-category.php. The manipulation of the argument Name leads to sql injection. The attack may be launched remotely. The e…

πŸ“… Published: June 29, 2025, 11:02 p.m. πŸ”„ Last Modified: July 1, 2025, 7:08 p.m.

5.3

CVSS4.0

CVE-2025-6875 - SourceCodester Best Salon Management System edit-subscription.php sql injection

A vulnerability has been found in SourceCodester Best Salon Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /panel/edit-subscription.php. The manipulation of the argument editid leads to sql injection. The attack can be launch…

πŸ“… Published: June 29, 2025, 10:32 p.m. πŸ”„ Last Modified: July 1, 2025, 6:53 p.m.

5.3

CVSS4.0

CVE-2025-6874 - SourceCodester Best Salon Management System add_subscribe.php sql injection

A vulnerability, which was classified as critical, was found in SourceCodester Best Salon Management System 1.0. Affected is an unknown function of the file /panel/add_subscribe.php. The manipulation of the argument user_id/plan_id leads to sql injection. It is possible to launch the attack remotel…

πŸ“… Published: June 29, 2025, 10:02 p.m. πŸ”„ Last Modified: July 1, 2025, 6:49 p.m.

5.1

CVSS4.0

CVE-2025-6873 - SourceCodester Simple Company Website Users.php unrestricted upload

A vulnerability, which was classified as critical, has been found in SourceCodester Simple Company Website 1.0. This issue affects some unknown processing of the file /classes/Users.php?f=save. The manipulation of the argument img leads to unrestricted upload. The attack may be initiated remotely. …

πŸ“… Published: June 29, 2025, 9:32 p.m. πŸ”„ Last Modified: July 1, 2025, 6:48 p.m.

5.1

CVSS4.0

CVE-2025-6872 - SourceCodester Simple Company Website SystemSettings.php unrestricted upload

A vulnerability classified as critical was found in SourceCodester Simple Company Website 1.0. This vulnerability affects unknown code of the file /classes/SystemSettings.php?f=update_settings. The manipulation of the argument img leads to unrestricted upload. The attack can be initiated remotely. …

πŸ“… Published: June 29, 2025, 9:02 p.m. πŸ”„ Last Modified: July 1, 2025, 6:47 p.m.

6.9

CVSS4.0

CVE-2025-6871 - SourceCodester Simple Company Website Login.php sql injection

A vulnerability classified as critical has been found in SourceCodester Simple Company Website 1.0. This affects an unknown part of the file /classes/Login.php. The manipulation of the argument Username leads to sql injection. It is possible to initiate the attack remotely. The exploit has been dis…

πŸ“… Published: June 29, 2025, 8:32 p.m. πŸ”„ Last Modified: July 1, 2025, 6:46 p.m.

5.1

CVSS4.0

CVE-2025-6870 - SourceCodester Simple Company Website Content.php unrestricted upload

A vulnerability was found in SourceCodester Simple Company Website 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /classes/Content.php?f=service. The manipulation of the argument img leads to unrestricted upload. The attack may be launched remot…

πŸ“… Published: June 29, 2025, 8:02 p.m. πŸ”„ Last Modified: July 1, 2025, 6:22 p.m.

5.1

CVSS4.0

CVE-2025-6869 - SourceCodester Simple Company Website manage.php sql injection

A vulnerability was found in SourceCodester Simple Company Website 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /admin/testimonials/manage.php. The manipulation of the argument ID leads to sql injection. The attack can be launched rem…

πŸ“… Published: June 29, 2025, 7:32 p.m. πŸ”„ Last Modified: July 8, 2025, 6:14 p.m.

6.8

CVSS3.0

CVE-2025-24292 -

A misconfigured query in UniFi Network (v9.1.120 and earlier) could allow users to authenticate to Enterprise WiFi or VPN Server (l2tp and OpenVPN) using a device’s MAC address from 802.1X or MAC Authentication, if both services are enabled and share the same RADIUS profile.

πŸ“… Published: June 29, 2025, 7:25 p.m. πŸ”„ Last Modified: July 6, 2025, 10:16 p.m.

9.9

CVSS3.0

CVE-2025-24290 -

Multiple Authenticated SQL Injection vulnerabilities found in UISP Application (Version 2.4.206 and earlier) could allow a malicious actor with low privileges to escalate privileges.

πŸ“… Published: June 29, 2025, 7:25 p.m. πŸ”„ Last Modified: June 30, 2025, 6:38 p.m.
Total resulsts: 343968
Page 4320 of 34,397
Β« previous page Β» next page
Filters