5.3

CVSS4.0

CVE-2024-8563 - SourceCodester PHP CRUD update.php cross site scripting

A vulnerability was found in SourceCodester PHP CRUD 1.0. It has been classified as problematic. This affects an unknown part of the file /endpoint/update.php. The manipulation of the argument first_name/middle_name/last_name leads to cross site scripting. It is possible to initiate the attack remo…

πŸ“… Published: Sept. 7, 2024, 8 p.m. πŸ”„ Last Modified: Sept. 10, 2024, 3:37 p.m.

5.3

CVSS4.0

CVE-2024-8562 - SourceCodester PHP CRUD Add.php cross site scripting

A vulnerability was found in SourceCodester PHP CRUD 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /endpoint/Add.php. The manipulation of the argument first_name/middle_name/last_name leads to cross site scripting. The attack may be launched rem…

πŸ“… Published: Sept. 7, 2024, 7 p.m. πŸ”„ Last Modified: Sept. 10, 2024, 3:36 p.m.

5.3

CVSS4.0

CVE-2024-8561 - SourceCodester PHP CRUD Delete Person delete.php sql injection

A vulnerability has been found in SourceCodester PHP CRUD 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /endpoint/delete.php of the component Delete Person Handler. The manipulation of the argument person leads to sql injection. The attack ca…

πŸ“… Published: Sept. 7, 2024, 6:31 p.m. πŸ”„ Last Modified: Sept. 10, 2024, 3:35 p.m.

5.3

CVSS4.0

CVE-2024-8560 - SourceCodester Simple Invoice Generator System save_invoice.php sql injection

A vulnerability, which was classified as critical, was found in SourceCodester Simple Invoice Generator System 1.0. Affected is an unknown function of the file /save_invoice.php. The manipulation of the argument invoice_code/customer/cashier/total_amount/discount_percentage/discount_amount/tendered…

πŸ“… Published: Sept. 7, 2024, 6 p.m. πŸ”„ Last Modified: Sept. 10, 2024, 3:32 p.m.

5.1

CVSS4.0

CVE-2024-8559 - SourceCodester Online Food Menu delete-menu.php sql injection

A vulnerability, which was classified as critical, has been found in SourceCodester Online Food Menu 1.0. This issue affects some unknown processing of the file /endpoint/delete-menu.php. The manipulation of the argument menu leads to sql injection. The attack may be initiated remotely. The exploit…

πŸ“… Published: Sept. 7, 2024, 5:31 p.m. πŸ”„ Last Modified: Sept. 10, 2024, 3:31 p.m.

9.9

CVSS3.0

CVE-2024-38650 -

An authentication bypass vulnerability can allow a low privileged attacker to access the NTLM hash of service account on the VSPC server.

πŸ“… Published: Sept. 7, 2024, 4:11 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.5

CVSS3.1

CVE-2024-42021 -

An improper access control vulnerability allows an attacker with valid access tokens to access saved credentials.

πŸ“… Published: Sept. 7, 2024, 4:11 p.m. πŸ”„ Last Modified: April 28, 2025, 4:54 p.m.

8.8

CVSS3.0

CVE-2024-40718 -

A server side request forgery vulnerability allows a low-privileged user to perform local privilege escalation through exploiting an SSRF vulnerability.

πŸ“… Published: Sept. 7, 2024, 4:11 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.8

CVSS3.1

CVE-2024-42023 -

An improper access control vulnerability allows low-privileged users to execute code with Administrator privileges remotely.

πŸ“… Published: Sept. 7, 2024, 4:11 p.m. πŸ”„ Last Modified: April 28, 2025, 4:49 p.m.

8.3

CVSS3.1

CVE-2024-40714 -

An improper certificate validation vulnerability in TLS certificate validation allows an attacker on the same network to intercept sensitive credentials during restore operations.

πŸ“… Published: Sept. 7, 2024, 4:11 p.m. πŸ”„ Last Modified: May 1, 2025, 6:17 p.m.
Total resulsts: 348436
Page 8562 of 34,844
Β« previous page Β» next page
Filters