Show filters
358 Total Results
Displaying 251-260 of 358
Sort by:
Attacker Value
Unknown

CVE-2023-23155

Disclosure Date: February 27, 2023 (last updated February 24, 2025)
Art Gallery Management System Project in PHP 1.0 was discovered to contain a SQL injection vulnerability via the username parameter in the Admin Login.
Attacker Value
Unknown

CVE-2023-23163

Disclosure Date: February 10, 2023 (last updated February 24, 2025)
Art Gallery Management System Project v1.0 was discovered to contain a SQL injection vulnerability via the editid parameter.
Attacker Value
Unknown

CVE-2023-23162

Disclosure Date: February 10, 2023 (last updated February 24, 2025)
Art Gallery Management System Project v1.0 was discovered to contain a SQL injection vulnerability via the cid parameter at product.php.
Attacker Value
Unknown

CVE-2023-23161

Disclosure Date: February 10, 2023 (last updated February 24, 2025)
A reflected cross-site scripting (XSS) vulnerability in Art Gallery Management System Project v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the artname parameter under ART TYPE option in the navigation bar.
Attacker Value
Unknown

CVE-2023-0563

Disclosure Date: January 28, 2023 (last updated February 24, 2025)
A vulnerability classified as problematic has been found in PHPGurukul Bank Locker Management System 1.0. This affects an unknown part of the file add-locker-form.php of the component Assign Locker. The manipulation of the argument ahname leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-219717 was assigned to this vulnerability.
Attacker Value
Unknown

CVE-2023-0562

Disclosure Date: January 28, 2023 (last updated February 24, 2025)
A vulnerability was found in PHPGurukul Bank Locker Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file index.php of the component Login. The manipulation of the argument username leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-219716.
Attacker Value
Unknown

CVE-2022-46128

Disclosure Date: January 26, 2023 (last updated February 24, 2025)
phpgurukul Doctor Appointment Management System V 1.0.0 is vulnerable to Cross Site Scripting (XSS) via searchdata=.
Attacker Value
Unknown

CVE-2022-45730

Disclosure Date: January 26, 2023 (last updated February 24, 2025)
A cross-site scripting (XSS) vulnerability in Doctor Appointment Management System v1.0.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Search function.
Attacker Value
Unknown

CVE-2022-47102

Disclosure Date: January 12, 2023 (last updated February 24, 2025)
A cross-site scripting (XSS) vulnerability in Student Study Center Management System V 1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the name parameter.
Attacker Value
Unknown

CVE-2022-45729

Disclosure Date: January 12, 2023 (last updated February 24, 2025)
A cross-site scripting (XSS) vulnerability in Doctor Appointment Management System v1.0.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Employee ID parameter.