Show filters
294 Total Results
Displaying 31-40 of 294
Sort by:
Attacker Value
Unknown
CVE-2024-42582
Disclosure Date: August 20, 2024 (last updated August 22, 2024)
A Cross-Site Request Forgery (CSRF) in the component delete_categorie.php of Warehouse Inventory System v2.0 allows attackers to escalate privileges.
0
Attacker Value
Unknown
CVE-2024-42581
Disclosure Date: August 20, 2024 (last updated August 22, 2024)
A Cross-Site Request Forgery (CSRF) in the component delete_group.php of Warehouse Inventory System v2.0 allows attackers to escalate privileges.
0
Attacker Value
Unknown
CVE-2024-42580
Disclosure Date: August 20, 2024 (last updated August 22, 2024)
A Cross-Site Request Forgery (CSRF) in the component edit_group.php of Warehouse Inventory System v2.0 allows attackers to escalate privileges.
0
Attacker Value
Unknown
CVE-2024-42579
Disclosure Date: August 20, 2024 (last updated August 22, 2024)
A Cross-Site Request Forgery (CSRF) in the component add_group.php of Warehouse Inventory System v2.0 allows attackers to escalate privileges.
0
Attacker Value
Unknown
CVE-2024-42577
Disclosure Date: August 20, 2024 (last updated August 22, 2024)
A Cross-Site Request Forgery (CSRF) in the component add_product.php of Warehouse Inventory System v2.0 allows attackers to escalate privileges.
0
Attacker Value
Unknown
CVE-2024-7947
Disclosure Date: August 20, 2024 (last updated August 22, 2024)
A vulnerability classified as critical has been found in SourceCodester Point of Sales and Inventory Management System 1.0. This affects an unknown part of the file login.php. The manipulation of the argument email leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
0
Attacker Value
Unknown
CVE-2024-7460
Disclosure Date: August 04, 2024 (last updated August 07, 2024)
A vulnerability was found in OSWAPP Warehouse Inventory System 1.0/2.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /change_password.php. The manipulation leads to cross-site request forgery. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-273553 was assigned to this vulnerability.
0
Attacker Value
Unknown
CVE-2024-7459
Disclosure Date: August 04, 2024 (last updated August 07, 2024)
A vulnerability was found in OSWAPP Warehouse Inventory System 1.0/2.0. It has been classified as problematic. Affected is an unknown function of the file /edit_account.php. The manipulation leads to cross-site request forgery. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-273552.
0
Attacker Value
Unknown
CVE-2024-37129
Disclosure Date: July 31, 2024 (last updated August 14, 2024)
Dell Inventory Collector, versions prior to 12.3.0.6 contains a Path Traversal vulnerability. A local authenticated malicious user could potentially exploit this vulnerability, leading to arbitrary code execution on the system.
0
Attacker Value
Unknown
CVE-2024-38708
Disclosure Date: July 22, 2024 (last updated August 15, 2024)
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in UkrSolution Barcode Scanner with Inventory & Order Manager allows SQL Injection.This issue affects Barcode Scanner with Inventory & Order Manager: from n/a through 1.6.1.
0