Show filters
358 Total Results
Displaying 291-300 of 358
Sort by:
Attacker Value
Unknown
CVE-2022-29004
Disclosure Date: May 23, 2022 (last updated February 23, 2025)
Diary Management System v1.0 was discovered to contain a cross-site scripting (XSS) vulnerability via the Name parameter in search-result.php.
0
Attacker Value
Unknown
CVE-2022-1816
Disclosure Date: May 23, 2022 (last updated February 23, 2025)
A vulnerability, which was classified as problematic, has been found in Zoo Management System 1.0. Affected by this issue is /zoo/admin/public_html/view_accounts?type=zookeeper of the content module. The manipulation of the argument admin_name with the input <script>alert(1)</script> leads to an authenticated cross site scripting. Exploit details have been disclosed to the public.
0
Attacker Value
Unknown
CVE-2022-28992
Disclosure Date: May 20, 2022 (last updated February 23, 2025)
A Cross-Site Request Forgery (CSRF) in Online Banquet Booking System v1.0 allows attackers to change admin credentials via a crafted POST request.
0
Attacker Value
Unknown
CVE-2022-29009
Disclosure Date: May 11, 2022 (last updated February 23, 2025)
Multiple SQL injection vulnerabilities via the username and password parameters in the Admin panel of Cyber Cafe Management System Project v1.0 allows attackers to bypass authentication.
0
Attacker Value
Unknown
CVE-2022-29008
Disclosure Date: May 11, 2022 (last updated February 23, 2025)
An insecure direct object reference (IDOR) vulnerability in the viewid parameter of Bus Pass Management System v1.0 allows attackers to access sensitive information.
0
Attacker Value
Unknown
CVE-2022-29007
Disclosure Date: May 11, 2022 (last updated February 23, 2025)
Multiple SQL injection vulnerabilities via the username and password parameters in the Admin panel of Dairy Farm Shop Management System v1.0 allows attackers to bypass authentication.
0
Attacker Value
Unknown
CVE-2022-29006
Disclosure Date: May 11, 2022 (last updated February 23, 2025)
Multiple SQL injection vulnerabilities via the username and password parameters in the Admin panel of Directory Management System v1.0 allows attackers to bypass authentication.
0
Attacker Value
Unknown
CVE-2022-27992
Disclosure Date: April 08, 2022 (last updated February 23, 2025)
Zoo Management System v1.0 was discovered to contain a SQL injection vulnerability at /public_html/animals via the class_id parameter.
0
Attacker Value
Unknown
CVE-2022-27351
Disclosure Date: April 08, 2022 (last updated February 23, 2025)
Zoo Management System v1.0 was discovered to contain an arbitrary file upload vulnerability via /public_html/apply_vacancy. This vulnerability allows attackers to execute arbitrary code via a crafted PHP file.
0
Attacker Value
Unknown
CVE-2021-46110
Disclosure Date: February 18, 2022 (last updated February 23, 2025)
Online Shopping Portal v3.1 was discovered to contain multiple time-based SQL injection vulnerabilities via the email and contactno parameters.
0