0.0

CVE-2025-22290 - WordPress LTL Freight Quotes โ€“ FreightQuote Edition Plugin <= 2.3.11 - SQL Injection vulnerability

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in enituretechnology LTL Freight Quotes โ€“ FreightQuote Edition ltl-freight-quotes-freightquote-edition allows SQL Injection.This issue affects LTL Freight Quotes โ€“ FreightQuote Edition: from n/a throuโ€ฆ

๐Ÿ“… Published: Feb. 16, 2025, 10:17 p.m. ๐Ÿ”„ Last Modified: April 1, 2026, 4:21 p.m.

9.8

CVSS3.1

CVE-2025-22289 - WordPress LTL Freight Quotes โ€“ Unishippers Edition plugin <= 2.5.8 - Broken Access Control vulnerabโ€ฆ

Missing Authorization vulnerability in enituretechnology LTL Freight Quotes โ€“ Unishippers Edition ltl-freight-quotes-unishippers-edition allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects LTL Freight Quotes โ€“ Unishippers Edition: from n/a through <= 2.5.8.

๐Ÿ“… Published: Feb. 16, 2025, 10:17 p.m. ๐Ÿ”„ Last Modified: April 1, 2026, 4:21 p.m.

0.0

CVE-2025-22286 - WordPress LTL Freight Quotes โ€“ Worldwide Express Edition plugin <= 5.0.21 - Reflected Cross Site Scโ€ฆ

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in enituretechnology LTL Freight Quotes โ€“ Worldwide Express Edition ltl-freight-quotes-worldwide-express-edition allows Reflected XSS.This issue affects LTL Freight Quotes โ€“ Worldwide Express Edition:โ€ฆ

๐Ÿ“… Published: Feb. 16, 2025, 10:17 p.m. ๐Ÿ”„ Last Modified: April 1, 2026, 4:21 p.m.

6.1

CVSS3.1

CVE-2025-22284 - WordPress LTL Freight Quotes โ€“ Unishippers Edition plugin <= 2.5.8 - Reflected Cross Site Scriptingโ€ฆ

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in enituretechnology LTL Freight Quotes โ€“ Unishippers Edition ltl-freight-quotes-unishippers-edition allows Reflected XSS.This issue affects LTL Freight Quotes โ€“ Unishippers Edition: from n/a through โ€ฆ

๐Ÿ“… Published: Feb. 16, 2025, 10:17 p.m. ๐Ÿ”„ Last Modified: April 1, 2026, 4:21 p.m.

0.0

CVE-2024-44044 - WordPress Oshine Modules plugin < 3.3.8 - Reflected Cross Site Scripting (XSS) vulnerability

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in brandexponents Oshine Modules oshine-modules allows Reflected XSS.This issue affects Oshine Modules: from n/a through < 3.3.8.

๐Ÿ“… Published: Feb. 16, 2025, 10:17 p.m. ๐Ÿ”„ Last Modified: April 1, 2026, 4:17 p.m.

5.1

CVSS4.0

CVE-2025-1360 - Internet Web Solutions Sublime CRM HTTP POST Request inicio.php cross site scripting

A vulnerability, which was classified as problematic, was found in Internet Web Solutions Sublime CRM up to 20250207. Affected is an unknown function of the file /crm/inicio.php of the component HTTP POST Request Handler. The manipulation of the argument msg_to leads to cross site scripting. It is โ€ฆ

๐Ÿ“… Published: Feb. 16, 2025, 8:31 p.m. ๐Ÿ”„ Last Modified: Feb. 18, 2025, 4:10 p.m.

5.3

CVSS4.0

CVE-2025-1359 - SIAM Industria de Automaรงรฃo e Monitoramento qrcode.jsp cross site scripting

A vulnerability, which was classified as problematic, has been found in SIAM Industria de Automaรงรฃo e Monitoramento SIAM 2.0. This issue affects some unknown processing of the file /qrcode.jsp. The manipulation of the argument url leads to cross site scripting. The attack may be initiated remotely.โ€ฆ

๐Ÿ“… Published: Feb. 16, 2025, 8 p.m. ๐Ÿ”„ Last Modified: Feb. 18, 2025, 9:43 p.m.

5.3

CVSS4.0

CVE-2025-1358 - Pix Software Vivaz cross-site request forgery

A vulnerability classified as problematic was found in Pix Software Vivaz 6.0.10. This vulnerability affects unknown code. The manipulation leads to cross-site request forgery. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contactโ€ฆ

๐Ÿ“… Published: Feb. 16, 2025, 7:31 p.m. ๐Ÿ”„ Last Modified: Feb. 18, 2025, 5:15 p.m.

5.3

CVSS4.0

CVE-2025-1357 - Seventh D-Guard HTTP GET Request path traversal

A vulnerability classified as problematic has been found in Seventh D-Guard up to 20250206. This affects an unknown part of the component HTTP GET Request Handler. The manipulation leads to path traversal. It is possible to initiate the attack remotely. The exploit has been disclosed to the public โ€ฆ

๐Ÿ“… Published: Feb. 16, 2025, 6:31 p.m. ๐Ÿ”„ Last Modified: Feb. 18, 2025, 7:35 p.m.

5.3

CVSS4.0

CVE-2025-1356 - needyamin Library Card System card.php sql injection

A vulnerability was found in needyamin Library Card System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file card.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed tโ€ฆ

๐Ÿ“… Published: Feb. 16, 2025, 5:31 p.m. ๐Ÿ”„ Last Modified: Feb. 25, 2025, 3:40 a.m.
Total resulsts: 343879
Page 6188 of 34,388
ยซ previous page ยป next page
Filters