5.3

CVSS4.0

CVE-2024-13135 - Emlog Pro Subpage twitter.php cross site scripting

A vulnerability has been found in Emlog Pro 2.4.3 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /admin/twitter.php of the component Subpage Handler. The manipulation leads to cross site scripting. The attack can be launched remotely. The explo…

📅 Published: Jan. 5, 2025, 8:31 a.m. 🔄 Last Modified: Feb. 25, 2025, 10:53 p.m.

5.3

CVSS4.0

CVE-2024-13134 - ZeroWdd studentmanager TeacherController. java editTeacher unrestricted upload

A vulnerability, which was classified as critical, was found in ZeroWdd studentmanager 1.0. Affected is the function addTeacher/editTeacher of the file src/main/Java/com/wdd/studentmanager/controller/TeacherController. java. The manipulation of the argument file leads to unrestricted upload. It is …

📅 Published: Jan. 5, 2025, 8 a.m. 🔄 Last Modified: Oct. 10, 2025, 5:41 p.m.

5.1

CVSS4.0

CVE-2025-0219 - Trimble SPS851 Receiver Status Identity Tab cross site scripting

A vulnerability, which was classified as problematic, has been found in Trimble SPS851 488.01. Affected by this issue is some unknown functionality of the component Receiver Status Identity Tab. The manipulation of the argument System Name leads to cross site scripting. The attack may be launched r…

📅 Published: Jan. 5, 2025, 5:31 a.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

5.3

CVSS4.0

CVE-2024-13133 - ZeroWdd studentmanager StudentController. java editStudent unrestricted upload

A vulnerability, which was classified as critical, has been found in ZeroWdd studentmanager 1.0. This issue affects the function addStudent/editStudent of the file src/main/Java/com/wdd/studentmanager/controller/StudentController. java. The manipulation of the argument file leads to unrestricted up…

📅 Published: Jan. 5, 2025, 5 a.m. 🔄 Last Modified: Oct. 10, 2025, 5:41 p.m.

5.3

CVSS4.0

CVE-2024-13132 - Emlog Pro Subpage article.php cross site scripting

A vulnerability classified as problematic was found in Emlog Pro up to 2.4.3. This vulnerability affects unknown code of the file /admin/article.php of the component Subpage Handler. The manipulation leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed…

📅 Published: Jan. 5, 2025, 4:31 a.m. 🔄 Last Modified: Feb. 25, 2025, 10:47 p.m.

0.0

CVE-2024-13131 -

** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2019-9680. Reason: This candidate is a reservation duplicate of CVE-2019-9680. Notes: All CVE users should reference CVE-2019-9680 instead of this candidate. All references and descriptions in this candidate have been removed to prevent…

📅 Published: Jan. 5, 2025, 3 a.m. 🔄 Last Modified: Jan. 14, 2025, 2:15 p.m.

5.3

CVSS4.0

CVE-2024-13130 - Dahua IPC-HFW1200S Web Interface Sha1Account1 path traversal

A vulnerability was found in Dahua IPC-HFW1200S, IPC-HFW2300R-Z, IPC-HFW5220E-Z and IPC-HDW1200S up to 20241222. It has been rated as problematic. Affected by this issue is some unknown functionality of the file ../mtd/Config/Sha1Account1 of the component Web Interface. The manipulation leads to pa…

📅 Published: Jan. 5, 2025, 1 a.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

2.1

CVSS4.0

CVE-2025-0214 - TMD Custom Header Menu index.php sql injection

A vulnerability was found in TMD Custom Header Menu 4.0.0.1 on OpenCart. It has been rated as problematic. This issue affects some unknown processing of the file /admin/index.php. The manipulation of the argument headermenu_id leads to sql injection. The attack may be initiated remotely. The comple…

📅 Published: Jan. 4, 2025, 5 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

5.3

CVSS4.0

CVE-2025-0213 - Campcodes Project Management System update_forms.php unrestricted upload

A vulnerability was found in Campcodes Project Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /forms/update_forms.php?action=change_pic2&id=4. The manipulation of the argument file leads to unrestricted upload. The attack can be initiate…

📅 Published: Jan. 4, 2025, 4:31 p.m. 🔄 Last Modified: Jan. 10, 2025, 6:55 p.m.

5.3

CVSS4.0

CVE-2025-0212 - Campcodes Student Grading System view_students.php sql injection

A vulnerability was found in Campcodes Student Grading System 1.0. It has been classified as critical. This affects an unknown part of the file /view_students.php. The manipulation of the argument id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclo…

📅 Published: Jan. 4, 2025, 4 p.m. 🔄 Last Modified: Jan. 10, 2025, 6:57 p.m.
Total resulsts: 345149
Page 6880 of 34,515
« previous page » next page
Filters