Show filters
358 Total Results
Displaying 241-250 of 358
Sort by:
Attacker Value
Unknown
CVE-2023-1949
Disclosure Date: April 08, 2023 (last updated February 24, 2025)
A vulnerability, which was classified as critical, was found in PHPGurukul BP Monitoring Management System 1.0. Affected is an unknown function of the file change-password.php of the component Change Password Handler. The manipulation of the argument password leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-225336.
0
Attacker Value
Unknown
CVE-2023-1948
Disclosure Date: April 08, 2023 (last updated February 24, 2025)
A vulnerability, which was classified as problematic, has been found in PHPGurukul BP Monitoring Management System 1.0. This issue affects some unknown processing of the file add-family-member.php of the component Add New Family Member Handler. The manipulation of the argument Member Name leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-225335.
0
Attacker Value
Unknown
CVE-2023-1909
Disclosure Date: April 07, 2023 (last updated February 24, 2025)
A vulnerability, which was classified as critical, was found in PHPGurukul BP Monitoring Management System 1.0. Affected is an unknown function of the file profile.php of the component User Profile Update Handler. The manipulation of the argument name/mobno leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-225318 is the identifier assigned to this vulnerability.
0
Attacker Value
Unknown
CVE-2023-26959
Disclosure Date: March 27, 2023 (last updated February 24, 2025)
Phpgurukul Park Ticketing Management System 1.0 is vulnerable to SQL Injection via the User Name parameter.
0
Attacker Value
Unknown
CVE-2023-26958
Disclosure Date: March 27, 2023 (last updated February 24, 2025)
Phpgurukul Park Ticketing Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via the Admin Name parameter.
0
Attacker Value
Unknown
CVE-2023-24726
Disclosure Date: March 15, 2023 (last updated February 24, 2025)
Art Gallery Management System v1.0 was discovered to contain a SQL injection vulnerability via the viewid parameter on the enquiry page.
0
Attacker Value
Unknown
CVE-2023-27074
Disclosure Date: March 14, 2023 (last updated February 24, 2025)
BP Monitoring Management System v1.0 was discovered to contain a SQL injection vulnerability via the emailid parameter in the login page.
0
Attacker Value
Unknown
CVE-2023-23158
Disclosure Date: February 27, 2023 (last updated February 24, 2025)
A stored cross-site scripting (XSS) vulnerability in Art Gallery Management System Project v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the message parameter on the enquiry page.
0
Attacker Value
Unknown
CVE-2023-23157
Disclosure Date: February 27, 2023 (last updated February 24, 2025)
A stored cross-site scripting (XSS) vulnerability in Art Gallery Management System Project v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the fullname parameter on the enquiry page.
0
Attacker Value
Unknown
CVE-2023-23156
Disclosure Date: February 27, 2023 (last updated February 24, 2025)
Art Gallery Management System Project in PHP 1.0 was discovered to contain a SQL injection vulnerability via the pid parameter in the single-product page.
0