Show filters
358 Total Results
Displaying 291-300 of 358
Sort by:
Attacker Value
Unknown

CVE-2022-29004

Disclosure Date: May 23, 2022 (last updated February 23, 2025)
Diary Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the Name parameter in search-result.php.
Attacker Value
Unknown

CVE-2022-1816

Disclosure Date: May 23, 2022 (last updated February 23, 2025)
A vulnerability, which was classified as problematic, has been found in Zoo Management System 1.0. Affected by this issue is /zoo/admin/public_html/view_accounts?type=zookeeper of the content module. The manipulation of the argument admin_name with the input <script>alert(1)</script> leads to an authenticated cross site scripting. Exploit details have been disclosed to the public.
Attacker Value
Unknown

CVE-2022-28992

Disclosure Date: May 20, 2022 (last updated February 23, 2025)
A Cross-Site Request Forgery (CSRF) in Online Banquet Booking System v1.0 allows attackers to change admin credentials via a crafted POST request.
Attacker Value
Unknown

CVE-2022-29009

Disclosure Date: May 11, 2022 (last updated February 23, 2025)
Multiple SQL injection vulnerabilities via the username and password parameters in the Admin panel of Cyber Cafe Management System Project v1.0 allows attackers to bypass authentication.
Attacker Value
Unknown

CVE-2022-29008

Disclosure Date: May 11, 2022 (last updated February 23, 2025)
An insecure direct object reference (IDOR) vulnerability in the viewid parameter of Bus Pass Management System v1.0 allows attackers to access sensitive information.
Attacker Value
Unknown

CVE-2022-29007

Disclosure Date: May 11, 2022 (last updated February 23, 2025)
Multiple SQL injection vulnerabilities via the username and password parameters in the Admin panel of Dairy Farm Shop Management System v1.0 allows attackers to bypass authentication.
Attacker Value
Unknown

CVE-2022-29006

Disclosure Date: May 11, 2022 (last updated February 23, 2025)
Multiple SQL injection vulnerabilities via the username and password parameters in the Admin panel of Directory Management System v1.0 allows attackers to bypass authentication.
Attacker Value
Unknown

CVE-2022-27992

Disclosure Date: April 08, 2022 (last updated February 23, 2025)
Zoo Management System v1.0 was discovered to contain a SQL injection vulnerability at /public_html/animals via the class_id parameter.
Attacker Value
Unknown

CVE-2022-27351

Disclosure Date: April 08, 2022 (last updated February 23, 2025)
Zoo Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via /public_html/apply_vacancy. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.
Attacker Value
Unknown

CVE-2021-46110

Disclosure Date: February 18, 2022 (last updated February 23, 2025)
Online Shopping Portal v3.1 was discovered to contain multiple time-based SQL injection vulnerabilities via the email and contactno parameters.