Show filters
24 Total Results
Displaying 11-20 of 24
Sort by:
Attacker Value
Unknown

CVE-2024-36599

Disclosure Date: June 14, 2024 (last updated February 26, 2025)
A cross-site scripting (XSS) vulnerability in Aegon Life v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the name parameter at insertClient.php.
Attacker Value
Unknown

CVE-2024-36597

Disclosure Date: June 14, 2024 (last updated February 26, 2025)
Aegon Life v1.0 was discovered to contain a SQL injection vulnerability via the client_id parameter at clientStatus.php.
Attacker Value
Unknown

CVE-2024-2150

Disclosure Date: March 03, 2024 (last updated February 26, 2025)
A vulnerability, which was classified as critical, has been found in SourceCodester Insurance Management System 1.0. This issue affects some unknown processing. The manipulation of the argument page leads to file inclusion. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-255503.
Attacker Value
Unknown

CVE-2023-3693

Disclosure Date: July 16, 2023 (last updated February 25, 2025)
A vulnerability classified as critical was found in SourceCodester Life Insurance Management System 1.0. This vulnerability affects unknown code of the file login.php. The manipulation of the argument username leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-234244.
Attacker Value
Unknown

CVE-2023-3165

Disclosure Date: June 08, 2023 (last updated February 25, 2025)
A vulnerability was found in SourceCodester Life Insurance Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file insertNominee.php of the component POST Parameter Handler. The manipulation of the argument nominee_id leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-231109 was assigned to this vulnerability.
Attacker Value
Unknown

CVE-2022-30002

Disclosure Date: May 12, 2022 (last updated February 23, 2025)
Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/editNominee.php?nominee_id=.
Attacker Value
Unknown

CVE-2022-30001

Disclosure Date: May 12, 2022 (last updated February 23, 2025)
Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/editAgent.php?agent_id=.
Attacker Value
Unknown

CVE-2022-30000

Disclosure Date: May 12, 2022 (last updated February 23, 2025)
Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/editPayment.php?recipt_no=.
Attacker Value
Unknown

CVE-2022-29999

Disclosure Date: May 12, 2022 (last updated February 23, 2025)
Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/editClient.php?client_id=.
Attacker Value
Unknown

CVE-2022-29998

Disclosure Date: May 12, 2022 (last updated February 23, 2025)
Insurance Management System 1.0 is vulnerable to SQL Injection via /insurance/clientStatus.php?client_id=.