5.3

CVSS4.0

CVE-2026-4877 - itsourcecode Payroll Management System index.php cross site scripting

A security flaw has been discovered in itsourcecode Payroll Management System up to 1.0. This affects an unknown function of the file /index.php. Performing a manipulation of the argument page results in cross site scripting. It is possible to initiate the attack remotely. The exploit has been rele…

πŸ“… Published: March 26, 2026, 1:05 p.m. πŸ”„ Last Modified: April 24, 2026, 4:35 p.m.

5.3

CVSS4.0

CVE-2026-4876 - itsourcecode Free Hotel Reservation System index.php sql injection

A vulnerability was identified in itsourcecode Free Hotel Reservation System 1.0. The impacted element is an unknown function of the file /admin/mod_amenities/index.php?view=editpic. Such manipulation of the argument ID leads to sql injection. The attack may be performed from remote. The exploit is…

πŸ“… Published: March 26, 2026, 1:05 p.m. πŸ”„ Last Modified: April 24, 2026, 4:35 p.m.

7.3

CVSS3.1

CVE-2025-55263 - HCL Aftermarket DPC is affected by Hardcoded Sensitive Data

HCL Aftermarket DPC is affected by Hardcoded Sensitive Data which allows attacker to gain access to the source code or if it is stored in insecure repositories, they can easily retrieve these hardcoded secrets.

πŸ“… Published: March 26, 2026, 1:05 p.m. πŸ”„ Last Modified: March 27, 2026, 9:28 a.m.

5.5

CVSS3.1

CVE-2025-55264 - HCL Aftermarket DPC is affected by Failure to Invalidate Session on Password Change

HCL Aftermarket DPC is affected by Failure to Invalidate Session on Password Change will allow attacker to access to a session, then they can maintain control over the account despite the password change leading to account takeover.

πŸ“… Published: March 26, 2026, 1:04 p.m. πŸ”„ Last Modified: March 27, 2026, 9:28 a.m.

6.5

CVSS3.1

CVE-2025-55265 - HCL Aftermarket DPC is affected by File Discovery

HCL Aftermarket DPC is affected by File Discovery which allows attacker could exploit this issue to read sensitive files present in the system and may use it to craft further attacks.

πŸ“… Published: March 26, 2026, 1:02 p.m. πŸ”„ Last Modified: March 27, 2026, 9:28 a.m.

5.9

CVSS3.1

CVE-2025-55266 - HCL Aftermarket DPC is affected by Session Fixation

HCL Aftermarket DPC is affected by Session Fixation which allows attacker to takeover the user's session and use it carry out unauthorized transaction behalf of the user.

πŸ“… Published: March 26, 2026, 1:02 p.m. πŸ”„ Last Modified: March 27, 2026, 9:28 a.m.

5.7

CVSS3.1

CVE-2025-55267 - HCL Aftermarket DPC is affected by Unrestricted File Upload vulnerability

HCL Aftermarket DPC is affected by Unrestricted File Upload vulnerability, allows attacker to upload and execute malicious scripts, gaining full control over the server.

πŸ“… Published: March 26, 2026, 1:01 p.m. πŸ”„ Last Modified: March 27, 2026, 9:28 a.m.

4.3

CVSS3.1

CVE-2025-55268 - HCL Aftermarket DPC is affected by Spamming Vulnerability

HCL Aftermarket DPC is affected by Spamming Vulnerability which can allow the actor to excessive spamming can consume server bandwidth and processing resources which may lead to Denial of Service.

πŸ“… Published: March 26, 2026, 1 p.m. πŸ”„ Last Modified: March 27, 2026, 9:28 a.m.

4.2

CVSS3.1

CVE-2025-55269 - HCL Aftermarket DPC is affected by Weak Password Policy vulnerability

HCL Aftermarket DPC is affected by Weak Password Policy vulnerability, which makes it easier for attackers to guess weak passwords or use brute-force techniques to gain unauthorized access to user accounts.

πŸ“… Published: March 26, 2026, 1 p.m. πŸ”„ Last Modified: March 27, 2026, 9:28 a.m.

3.5

CVSS3.1

CVE-2025-55270 - HCL Aftermarket DPC is affected by Improper Input Validation

HCL Aftermarket DPC is affected by Improper Input Validation which allows an attacker to inject executable code and can carry out attacks such as XSS, SQL Injection, Command Injection etc.

πŸ“… Published: March 26, 2026, 12:59 p.m. πŸ”„ Last Modified: March 27, 2026, 9:28 a.m.
Total resulsts: 349182
Page 860 of 34,919
Β« previous page Β» next page
Filters