Show filters
358 Total Results
Displaying 281-290 of 358
Sort by:
Attacker Value
Unknown

CVE-2022-2803

Disclosure Date: August 12, 2022 (last updated February 24, 2025)
A vulnerability was found in SourceCodester Zoo Management System and classified as critical. This issue affects some unknown processing of the file /pages/animals.php. The manipulation of the argument class_id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-206249 was assigned to this vulnerability.
Attacker Value
Unknown

CVE-2022-33075

Disclosure Date: July 05, 2022 (last updated February 24, 2025)
A stored cross-site scripting (XSS) vulnerability in the Add Classification function of Zoo Management System v1.0 allows attackers to execute arbitrary web scripts or HTML via unspecified vectors.
Attacker Value
Unknown

CVE-2022-31897

Disclosure Date: June 29, 2022 (last updated February 24, 2025)
SourceCodester Zoo Management System 1.0 is vulnerable to Cross Site Scripting (XSS) via public_html/register_visitor?msg=.
Attacker Value
Unknown

CVE-2022-31384

Disclosure Date: June 16, 2022 (last updated February 23, 2025)
Directory Management System v1.0 was discovered to contain a SQL injection vulnerability via the fullname parameter in add-directory.php.
Attacker Value
Unknown

CVE-2022-31383

Disclosure Date: June 16, 2022 (last updated February 23, 2025)
Directory Management System v1.0 was discovered to contain a SQL injection vulnerability via the editid parameter in view-directory.php.
Attacker Value
Unknown

CVE-2022-31382

Disclosure Date: June 16, 2022 (last updated February 23, 2025)
Directory Management System v1.0 was discovered to contain a SQL injection vulnerability via the searchdata parameter in search-dirctory.php.
Attacker Value
Unknown

CVE-2022-31914

Disclosure Date: June 16, 2022 (last updated February 23, 2025)
Zoo Management System v1.0 is vulnerable to Cross Site Scripting (XSS) via zms/admin/public_html/save_animal?an_id=24.
Attacker Value
Unknown

CVE-2022-30930

Disclosure Date: June 14, 2022 (last updated February 23, 2025)
Tourism Management System Version: V 3.2 is affected by: Cross Site Request Forgery (CSRF).
Attacker Value
Unknown

CVE-2021-4232

Disclosure Date: May 26, 2022 (last updated February 23, 2025)
A vulnerability classified as problematic has been found in Zoo Management System 1.0. Affected is an unknown function of the file admin/manage-ticket.php. The manipulation with the input <script>alert(1)</script> leads to cross site scripting. It is possible to launch the attack remotely.
Attacker Value
Unknown

CVE-2022-29005

Disclosure Date: May 23, 2022 (last updated February 23, 2025)
Multiple cross-site scripting (XSS) vulnerabilities in the component /obcs/user/profile.php of Online Birth Certificate System v1.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the fname or lname parameters.