Show filters
219 Total Results
Displaying 21-30 of 219
Sort by:
Attacker Value
Unknown

CVE-2023-31233

Disclosure Date: May 18, 2023 (last updated February 25, 2025)
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Haoqisir Baidu Tongji generator plugin <= 1.0.2 versions.
Attacker Value
Unknown

CVE-2023-23683

Disclosure Date: May 15, 2023 (last updated February 24, 2025)
Auth. (admin+) Stored Cross-Site Scripting (XSS) vulnerability in Ozan Canakli White Label Branding for Elementor Page Builder plugin <= 1.0.2 versions.
Attacker Value
Unknown

CVE-2023-29986

Disclosure Date: May 11, 2023 (last updated February 24, 2025)
spring-boot-actuator-logview 0.2.13 allows Directory Traversal to sibling directories via LogViewEndpoint.view.
Attacker Value
Unknown

CVE-2022-46864

Disclosure Date: May 09, 2023 (last updated February 24, 2025)
Unauth. Reflected Cross-Site Scripting (XSS) vulnerability in Umair Saleem Woocommerce Custom Checkout Fields Editor With Drag & Drop plugin <= 0.1 versions.
Attacker Value
Unknown

CVE-2020-23966

Disclosure Date: May 08, 2023 (last updated February 24, 2025)
SQL Injection vulnerability in victor cms 1.0 allows attackers to execute arbitrary commands via the post parameter to /post.php in a crafted GET request.
Attacker Value
Unknown

CVE-2023-27614

Disclosure Date: April 23, 2023 (last updated February 24, 2025)
Auth. (admin+) Cross-Site Scripting (XSS) vulnerability in Ian Haycox Motor Racing League plugin <= 1.9.9 versions.
Attacker Value
Unknown

CVE-2023-1796

Disclosure Date: April 02, 2023 (last updated February 24, 2025)
A vulnerability classified as problematic has been found in SourceCodester Employee Payslip Generator 1.0. Affected is an unknown function of the file /classes/Master.php?f=save_position of the component Create News Handler. The manipulation of the argument name with the input <script>alert(document.cookie)</script> leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-224748.
Attacker Value
Unknown

CVE-2023-1771

Disclosure Date: March 31, 2023 (last updated February 24, 2025)
A vulnerability was found in SourceCodester Grade Point Average GPA Calculator 1.0 and classified as problematic. Affected by this issue is the function get_scale of the file Master.php. The manipulation of the argument perc leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-224672.
Attacker Value
Unknown

CVE-2023-1770

Disclosure Date: March 31, 2023 (last updated February 24, 2025)
A vulnerability has been found in SourceCodester Grade Point Average GPA Calculator 1.0 and classified as critical. Affected by this vulnerability is the function get_scale of the file Master.php. The manipulation of the argument perc leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-224671.
Attacker Value
Unknown

CVE-2023-1769

Disclosure Date: March 31, 2023 (last updated February 24, 2025)
A vulnerability, which was classified as problematic, was found in SourceCodester Grade Point Average GPA Calculator 1.0. Affected is an unknown function of the file index.php. The manipulation of the argument page with the input php://filter/read=convert.base64-encode/resource=grade_table leads to information disclosure. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-224670 is the identifier assigned to this vulnerability.