Show filters
356 Total Results
Displaying 111-120 of 356
Sort by:
Attacker Value
Unknown
CVE-2022-30809
Disclosure Date: June 02, 2022 (last updated February 23, 2025)
elitecms 1.01 is vulnerable to SQL Injection via /admin/edit_page.php?page=.
0
Attacker Value
Unknown
CVE-2022-30808
Disclosure Date: June 02, 2022 (last updated February 23, 2025)
elitecms 1.0.1 is vulnerable to Arbitrary code execution via admin/manage_uploads.php.
0
Attacker Value
Unknown
CVE-2022-30804
Disclosure Date: June 02, 2022 (last updated February 23, 2025)
elitecms v1.01 is vulnerable to Delete any file via /admin/delete_image.php?file=.
0
Attacker Value
Unknown
CVE-2022-30592
Disclosure Date: May 11, 2022 (last updated February 23, 2025)
liblsquic/lsquic_qenc_hdl.c in LiteSpeed QUIC (aka LSQUIC) before 3.1.0 mishandles MAX_TABLE_CAPACITY.
0
Attacker Value
Unknown
CVE-2021-46709
Disclosure Date: March 13, 2022 (last updated February 23, 2025)
phpLiteAdmin through 1.9.8.2 allows XSS via the index.php newRows parameter (aka num or number).
0
Attacker Value
Unknown
CVE-2021-23682
Disclosure Date: February 16, 2022 (last updated February 23, 2025)
This affects the package litespeed.js before 0.3.12; the package appwrite/server-ce from 0.12.0 and before 0.12.2, before 0.11.1. When parsing the query string in the getJsonFromUrl function, the key that is set in the result object is not properly sanitized leading to a Prototype Pollution vulnerability.
0
Attacker Value
Unknown
CVE-2021-45346
Disclosure Date: February 14, 2022 (last updated February 23, 2025)
A Memory Leak vulnerability exists in SQLite Project SQLite3 3.35.1 and 3.37.0 via maliciously crafted SQL Queries (made via editing the Database File), it is possible to query a record, and leak subsequent bytes of memory that extend beyond the record, which could let a malicious user obtain sensitive information. NOTE: The developer disputes this as a vulnerability stating that If you give SQLite a corrupted database file and submit a query against the database, it might read parts of the database that you did not intend or expect.
0
Attacker Value
Unknown
CVE-2022-0201
Disclosure Date: February 14, 2022 (last updated February 23, 2025)
The Permalink Manager Lite WordPress plugin before 2.2.15 and Permalink Manager Pro WordPress plugin before 2.2.15 do not sanitise and escape query parameters before outputting them back in the debug page, leading to a Reflected Cross-Site Scripting issue
0
Attacker Value
Unknown
CVE-2022-24222
Disclosure Date: February 01, 2022 (last updated February 23, 2025)
eliteCMS v1.0 was discovered to contain a SQL injection vulnerability via /admin/edit_user.php.
0
Attacker Value
Unknown
CVE-2022-24221
Disclosure Date: February 01, 2022 (last updated February 23, 2025)
eliteCMS v1.0 was discovered to contain a SQL injection vulnerability via /admin/functions/functions.php.
0