Show filters
67 Total Results
Displaying 11-20 of 67
Sort by:
Attacker Value
Unknown

CVE-2023-25792

Disclosure Date: May 03, 2023 (last updated October 08, 2023)
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in XiaoMac WP Open Social plugin <= 5.0 versions.
Attacker Value
Unknown

CVE-2022-29523

Disclosure Date: February 16, 2023 (last updated October 08, 2023)
Improper conditions check in the Open CAS software maintained by Intel(R) before version 22.3.1 may allow an authenticated user to potentially enable denial of service via local access.
Attacker Value
Unknown

CVE-2022-42218

Disclosure Date: October 18, 2022 (last updated October 08, 2023)
Open Source SACCO Management System v1.0 vulnerable to SQL Injection via /sacco_shield/manage_loan.php.
Attacker Value
Unknown

CVE-2022-42143

Disclosure Date: October 17, 2022 (last updated October 08, 2023)
Open Source SACCO Management System v1.0 is vulnerable to SQL Injection via /sacco_shield/manage_payment.php.
Attacker Value
Unknown

CVE-2022-41536

Disclosure Date: October 14, 2022 (last updated October 08, 2023)
Open Source SACCO Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /sacco_shield/manage_user.php.
Attacker Value
Unknown

CVE-2022-41535

Disclosure Date: October 14, 2022 (last updated October 08, 2023)
Open Source SACCO Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /sacco_shield/manage_borrower.php.
Attacker Value
Unknown

CVE-2022-41532

Disclosure Date: October 12, 2022 (last updated October 08, 2023)
Open Source SACCO Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /sacco_shield/ajax.php?action=delete_plan.
Attacker Value
Unknown

CVE-2022-41530

Disclosure Date: October 12, 2022 (last updated October 08, 2023)
Open Source SACCO Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /sacco_shield/ajax.php?action=delete_borrower.
Attacker Value
Unknown

CVE-2022-41515

Disclosure Date: October 07, 2022 (last updated October 08, 2023)
Open Source SACCO Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /sacco_shield/ajax.php?action=delete_payment.
Attacker Value
Unknown

CVE-2022-41514

Disclosure Date: October 07, 2022 (last updated October 08, 2023)
Open Source SACCO Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at /sacco_shield/ajax.php?action=delete_loan.