6.9

CVSS4.0

CVE-2025-3828 - PHPGurukul Men Salon Management System view-appointment.php sql injection

A vulnerability was found in PHPGurukul Men Salon Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /admin/view-appointment.php?viewid=11. The manipulation of the argument remark leads to sql injection. The attack may be initiated remotely. The…

πŸ“… Published: April 20, 2025, 3:31 p.m. πŸ”„ Last Modified: April 28, 2025, 5:38 p.m.

6.9

CVSS4.0

CVE-2025-3827 - PHPGurukul Men Salon Management System forgot-password.php sql injection

A vulnerability has been found in PHPGurukul Men Salon Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /admin/forgot-password.php. The manipulation of the argument email leads to sql injection. The attack can be initiated remotely. The exploit h…

πŸ“… Published: April 20, 2025, 3 p.m. πŸ”„ Last Modified: April 28, 2025, 5:38 p.m.

4.8

CVSS4.0

CVE-2025-3826 - SourceCodester Web-based Pharmacy Product Management System add-supplier.php cross site scripting

A vulnerability, which was classified as problematic, was found in SourceCodester Web-based Pharmacy Product Management System 1.0. This affects an unknown part of the file add-supplier.php. The manipulation of the argument txtsupplier_name/txtaddress leads to cross site scripting. It is possible t…

πŸ“… Published: April 20, 2025, 1 p.m. πŸ”„ Last Modified: April 30, 2025, 5:16 p.m.

4.8

CVSS4.0

CVE-2025-3825 - SourceCodester Web-based Pharmacy Product Management System add-category.php cross site scripting

A vulnerability, which was classified as problematic, has been found in SourceCodester Web-based Pharmacy Product Management System 1.0. Affected by this issue is some unknown functionality of the file add-category.php. The manipulation of the argument txtcategory_name leads to cross site scripting…

πŸ“… Published: April 20, 2025, 11:31 a.m. πŸ”„ Last Modified: April 30, 2025, 5:33 p.m.

4.8

CVSS4.0

CVE-2025-3824 - SourceCodester Web-based Pharmacy Product Management System add-product.php cross site scripting

A vulnerability classified as problematic was found in SourceCodester Web-based Pharmacy Product Management System 1.0. Affected by this vulnerability is an unknown functionality of the file add-product.php. The manipulation of the argument txtprice/txtproduct_name leads to cross site scripting. Th…

πŸ“… Published: April 20, 2025, 11 a.m. πŸ”„ Last Modified: April 30, 2025, 5:36 p.m.

4.8

CVSS4.0

CVE-2025-3823 - SourceCodester Web-based Pharmacy Product Management System add-stock.php cross site scripting

A vulnerability classified as problematic has been found in SourceCodester Web-based Pharmacy Product Management System 1.0. Affected is an unknown function of the file add-stock.php. The manipulation of the argument txttotalcost/txtproductID/txtprice/txtexpirydate leads to cross site scripting. It…

πŸ“… Published: April 20, 2025, 10:31 a.m. πŸ”„ Last Modified: April 30, 2025, 5:38 p.m.

4.8

CVSS4.0

CVE-2025-3822 - SourceCodester Web-based Pharmacy Product Management System changepassword.php cross site scripting

A vulnerability was found in SourceCodester Web-based Pharmacy Product Management System 1.0. It has been rated as problematic. This issue affects some unknown processing of the file changepassword.php. The manipulation of the argument txtconfirm_password/txtnew_password/txtold_password leads to cr…

πŸ“… Published: April 20, 2025, 6:31 a.m. πŸ”„ Last Modified: April 24, 2025, 3:40 p.m.

4.8

CVSS4.0

CVE-2025-3821 - SourceCodester Web-based Pharmacy Product Management System add-admin.php cross site scripting

A vulnerability was found in SourceCodester Web-based Pharmacy Product Management System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file add-admin.php. The manipulation of the argument txtpassword/txtfullname/txtemail leads to cross site scripting. The …

πŸ“… Published: April 20, 2025, 4 a.m. πŸ”„ Last Modified: April 24, 2025, 3:43 p.m.

5.8

CVSS3.1

CVE-2025-43928 -

In Infodraw Media Relay Service (MRS) 7.1.0.0, the MRS web server (on port 12654) allows reading arbitrary files via ../ directory traversal in the username field. Reading ServerParameters.xml may reveal administrator credentials in cleartext or with MD5 hashing.

πŸ“… Published: April 20, 2025, midnight πŸ”„ Last Modified: April 24, 2025, 4 p.m.

2.9

CVSS3.1

CVE-2025-43967 -

libheif before 1.19.6 has a NULL pointer dereference in ImageItem_Grid::get_decoder in image-items/grid.cc because a grid image can reference a nonexistent image item.

πŸ“… Published: April 20, 2025, midnight πŸ”„ Last Modified: May 8, 2025, 4:05 p.m.
Total resulsts: 344974
Page 5290 of 34,498
Β« previous page Β» next page
Filters