Show filters
563 Total Results
Displaying 201-210 of 563
Sort by:
Attacker Value
Unknown
CVE-2022-1592
Disclosure Date: May 05, 2022 (last updated February 23, 2025)
Server-Side Request Forgery in scout in GitHub repository clinical-genomics/scout prior to v4.42. An attacker could make the application perform arbitrary requests to fishing steal cookie, request to private area, or lead to xss...
0
Attacker Value
Unknown
CVE-2022-29427
Disclosure Date: May 04, 2022 (last updated February 23, 2025)
Cross-Site Request Forgery (CSRF) vulnerability in Aftab Muni's Disable Right Click For WP plugin <= 1.1.6 at WordPress.
0
Attacker Value
Unknown
CVE-2021-27419
Disclosure Date: May 03, 2022 (last updated February 23, 2025)
uClibc-ng versions prior to 1.0.37 are vulnerable to integer wrap-around in functions malloc-simple. This improper memory assignment can lead to arbitrary memory allocation, resulting in unexpected behavior such as a crash or a remote code injection/execution.
0
Attacker Value
Unknown
CVE-2022-1554
Disclosure Date: May 03, 2022 (last updated February 23, 2025)
Path Traversal due to `send_file` call in GitHub repository clinical-genomics/scout prior to 4.52.
0
Attacker Value
Unknown
CVE-2021-41041
Disclosure Date: April 27, 2022 (last updated February 23, 2025)
In Eclipse Openj9 before version 0.32.0, Java 8 & 11 fail to throw the exception captured during bytecode verification when verification is triggered by a MethodHandle invocation, allowing unverified methods to be invoked using MethodHandles.
0
Attacker Value
Unknown
CVE-2021-43484
Disclosure Date: March 31, 2022 (last updated February 23, 2025)
A Remote Code Execution (RCE) vulnerability exists in Simple Client Management System 1.0 in create.php due to the failure to validate the extension of the file being sent in a request.
0
Attacker Value
Unknown
CVE-2021-43506
Disclosure Date: March 31, 2022 (last updated February 23, 2025)
An SQL Injection vulnerability exists in Sourcecodester Simple Client Management System 1.0 via the password parameter in Login.php.
0
Attacker Value
Unknown
CVE-2021-43505
Disclosure Date: March 31, 2022 (last updated February 23, 2025)
Multiple Cross Site Scripting (XSS) vulnerabilities exist in Ssourcecodester Simple Client Management System v1 via (1) Add new Client and (2) Add new invoice.
0
Attacker Value
Unknown
CVE-2022-26285
Disclosure Date: March 21, 2022 (last updated February 23, 2025)
Simple Subscription Website v1.0 was discovered to contain a SQL injection vulnerability via the id parameter in the apply endpoint. This vulnerability allows attackers to dump the application's database via crafted HTTP requests.
0
Attacker Value
Unknown
CVE-2022-26284
Disclosure Date: March 21, 2022 (last updated February 23, 2025)
Simple Client Management System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter in the manage_client endpoint. This vulnerability allows attackers to dump the application's database via crafted HTTP requests.
0