6.9

CVSS4.0

CVE-2025-4033 - PHPGurukul Nipah Virus Testing Management System patient-search-report.php sql injection

A vulnerability classified as critical has been found in PHPGurukul Nipah Virus Testing Management System 1.0. Affected is an unknown function of the file /patient-search-report.php. The manipulation of the argument searchdata leads to sql injection. It is possible to launch the attack remotely. Thโ€ฆ

๐Ÿ“… Published: April 28, 2025, 7 p.m. ๐Ÿ”„ Last Modified: May 10, 2025, 12:58 a.m.

7.8

CVSS3.1

CVE-2025-34489 - GFI MailEssentials < 21.8 Local Privilege Escalation

GFI MailEssentials prior to version 21.8 is vulnerable to a local privilege escalation issue. A local attacker can escalate to NT Authority/SYSTEM by sending a crafted serialized payload to a .NET Remoting Service.

๐Ÿ“… Published: April 28, 2025, 6:50 p.m. ๐Ÿ”„ Last Modified: Nov. 19, 2025, 1:26 a.m.

2.3

CVSS4.0

CVE-2025-4032 - inclusionAI AWorld shell_tool.py subprocess.Popen os command injection

A vulnerability was found in inclusionAI AWorld up to 8c257626e648d98d793dd9a1a950c2af4dd84c4e. It has been rated as critical. This issue affects the function subprocess.run/subprocess.Popen of the file AWorld/aworld/virtual_environments/terminals/shell_tool.py. The manipulation leads to os commandโ€ฆ

๐Ÿ“… Published: April 28, 2025, 6:31 p.m. ๐Ÿ”„ Last Modified: May 10, 2025, 12:58 a.m.

6.9

CVSS4.0

CVE-2025-4031 - PHPGurukul Pre-School Enrollment System aboutus.php sql injection

A vulnerability was found in PHPGurukul Pre-School Enrollment System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /admin/aboutus.php. The manipulation of the argument pagetitle leads to sql injection. The attack can be initiated remotely. The exploit haโ€ฆ

๐Ÿ“… Published: April 28, 2025, 6 p.m. ๐Ÿ”„ Last Modified: May 10, 2025, 1 a.m.

2.1

CVSS4.0

CVE-2024-12706 - SQL Injection vulnerability discovered in OpenTextโ„ข Digital Asset Management.

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in OpenTextโ„ข Digital Asset Management. T he vulnerability could allow an authenticated user to run arbitrary SQL commands on the underlying database. This issue affects Digital Asset Management.: tโ€ฆ

๐Ÿ“… Published: April 28, 2025, 5:59 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.9

CVSS4.0

CVE-2025-4030 - PHPGurukul COVID19 Testing Management System search-report-result.php sql injection

A vulnerability was found in PHPGurukul COVID19 Testing Management System 1.0. It has been classified as critical. This affects an unknown part of the file /search-report-result.php. The manipulation of the argument serachdata leads to sql injection. It is possible to initiate the attack remotely. โ€ฆ

๐Ÿ“… Published: April 28, 2025, 5:31 p.m. ๐Ÿ”„ Last Modified: May 10, 2025, 1 a.m.

4.8

CVSS4.0

CVE-2025-4029 - code-projects Personal Diary Management System New Record addrecord stack-based overflow

A vulnerability was found in code-projects Personal Diary Management System 1.0 and classified as critical. Affected by this issue is the function addrecord of the component New Record Handler. The manipulation of the argument filename leads to stack-based buffer overflow. Local access is required โ€ฆ

๐Ÿ“… Published: April 28, 2025, 5 p.m. ๐Ÿ”„ Last Modified: May 10, 2025, 1:03 a.m.

6.9

CVSS4.0

CVE-2025-4028 - PHPGurukul COVID19 Testing Management System profile.php sql injection

A vulnerability has been found in PHPGurukul COVID19 Testing Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /profile.php. The manipulation of the argument mobilenumber leads to sql injection. The attack can be launched remoteโ€ฆ

๐Ÿ“… Published: April 28, 2025, 4:31 p.m. ๐Ÿ”„ Last Modified: May 10, 2025, 1:03 a.m.

6

CVSS4.0

CVE-2025-43857 - net-imap rubygem vulnerable to possible DoS by memory exhaustion

Net::IMAP implements Internet Message Access Protocol (IMAP) client functionality in Ruby. Prior to versions 0.5.7, 0.4.20, 0.3.9, and 0.2.5, there is a possibility for denial of service by memory exhaustion when net-imap reads server responses. At any time while the client is connected, a maliciouโ€ฆ

๐Ÿ“… Published: April 28, 2025, 4:02 p.m. ๐Ÿ”„ Last Modified: Nov. 21, 2025, 7:23 p.m.

6.9

CVSS4.0

CVE-2025-4027 - PHPGurukul Old Age Home Management System rules.php sql injection

A vulnerability, which was classified as critical, was found in PHPGurukul Old Age Home Management System 1.0. Affected is an unknown function of the file /admin/rules.php. The manipulation of the argument pagetitle leads to sql injection. It is possible to launch the attack remotely. The exploit hโ€ฆ

๐Ÿ“… Published: April 28, 2025, 4 p.m. ๐Ÿ”„ Last Modified: April 30, 2025, 6:11 p.m.
Total resulsts: 346661
Page 5392 of 34,667
ยซ previous page ยป next page
Filters