Show filters
10,538 Total Results
Displaying 271-280 of 10,000
Refine your search criteria for more targeted results.
Sort by:
Attacker Value
Unknown

CVE-2024-54920

Disclosure Date: December 09, 2024 (last updated February 27, 2025)
A SQL Injection vulnerability was found in /teacher_signup.php of kashipara E-learning Management System v1.0, which allows remote attackers to execute arbitrary SQL command to get unauthorized database access via the firstname, lastname, and class_id parameters.
Attacker Value
Unknown

CVE-2024-54919

Disclosure Date: December 09, 2024 (last updated February 27, 2025)
A Stored Cross Site Scripting (XSS ) was found in /teacher_avatar.php of kashipara E-learning Management System v1.0. This vulnerability allows remote attackers to execute arbitrary java script via the filename parameter.
Attacker Value
Unknown

CVE-2024-54937

Disclosure Date: December 09, 2024 (last updated February 27, 2025)
A Directory Listing issue was found in Kashipara E-Learning Management System v1.0, which allows remote attackers to access sensitive files and directories via /admin/assets.
Attacker Value
Unknown

CVE-2024-54936

Disclosure Date: December 09, 2024 (last updated February 27, 2025)
A Stored Cross-Site Scripting (XSS) vulnerability was found in /send_message.php of Kashipara E-learning Management System v1.0. This vulnerability allows remote attackers to execute arbitrary scripts via the my_message parameter.
Attacker Value
Unknown

CVE-2024-54929

Disclosure Date: December 09, 2024 (last updated February 27, 2025)
KASHIPARA E-learning Management System v1.0 is vulnerable to SQL Injection in /admin/delete_subject.php.
Attacker Value
Unknown

CVE-2023-51360

Disclosure Date: December 09, 2024 (last updated February 27, 2025)
Missing Authorization vulnerability in WPDeveloper Essential Blocks for Gutenberg allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Essential Blocks for Gutenberg: from n/a through 4.2.0.
Attacker Value
Unknown

CVE-2023-51359

Disclosure Date: December 09, 2024 (last updated February 27, 2025)
Missing Authorization vulnerability in WPDeveloper Essential Blocks for Gutenberg allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Essential Blocks for Gutenberg: from n/a through 4.2.0.
Attacker Value
Unknown

CVE-2023-49848

Disclosure Date: December 09, 2024 (last updated February 27, 2025)
Missing Authorization vulnerability in wooproductimporter Sharkdropship dropshipping for Aliexpress, eBay, Amazon, etsy allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Sharkdropship dropshipping for Aliexpress, eBay, Amazon, etsy: from n/a through 2.1.1.
0
Attacker Value
Unknown

CVE-2023-47762

Disclosure Date: December 09, 2024 (last updated February 27, 2025)
Missing Authorization vulnerability in WPDeveloper BetterDocs allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects BetterDocs: from n/a through 2.5.2.
0
Attacker Value
Unknown

CVE-2023-47761

Disclosure Date: December 09, 2024 (last updated February 27, 2025)
Missing Authorization vulnerability in WPDeveloper Simple 301 Redirects by BetterLinks allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Simple 301 Redirects by BetterLinks: from n/a through 2.0.7.
0