Show filters
3,812 Total Results
Displaying 311-320 of 3,812
Sort by:
Attacker Value
Unknown
CVE-2023-6402
Disclosure Date: November 30, 2023 (last updated February 25, 2025)
A vulnerability, which was classified as critical, was found in PHPGurukul Nipah Virus Testing Management System 1.0. This affects an unknown part of the file add-phlebotomist.php. The manipulation of the argument empid leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-246423.
0
Attacker Value
Unknown
CVE-2023-49087
Disclosure Date: November 30, 2023 (last updated February 25, 2025)
xml-security is a library that implements XML signatures and encryption. Validation of an XML signature requires verification that the hash value of the related XML-document matches a specific DigestValue-value, but also that the cryptographic signature on the SignedInfo-tree (the one that contains the DigestValue) verifies and matches a trusted public key. If an attacker somehow (i.e. by exploiting a bug in PHP's canonicalization function) manages to manipulate the canonicalized version's DigestValue, it would be possible to forge the signature. This issue has been patched in version 1.6.12 and 5.0.0-alpha.13.
0
Attacker Value
Unknown
CVE-2023-49316
Disclosure Date: November 27, 2023 (last updated February 25, 2025)
In Math/BinaryField.php in phpseclib 3 before 3.0.34, excessively large degrees can lead to a denial of service.
0
Attacker Value
Unknown
CVE-2023-6297
Disclosure Date: November 26, 2023 (last updated February 25, 2025)
A vulnerability classified as problematic has been found in PHPGurukul Nipah Virus Testing Management System 1.0. This affects an unknown part of the file patient-search-report.php of the component Search Report Page. The manipulation of the argument Search By Patient Name with the input <script>alert(document.cookie)</script> leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-246123.
0
Attacker Value
Unknown
CVE-2023-47446
Disclosure Date: November 15, 2023 (last updated February 25, 2025)
Pre-School Enrollment version 1.0 is vulnerable to Cross Site Scripting (XSS) on the profile.php page via fullname parameter.
0
Attacker Value
Unknown
CVE-2023-47445
Disclosure Date: November 15, 2023 (last updated February 25, 2025)
Pre-School Enrollment version 1.0 is vulnerable to SQL Injection via the username parameter in preschool/admin/ page.
0
Attacker Value
Unknown
CVE-2023-46026
Disclosure Date: November 14, 2023 (last updated February 25, 2025)
Cross Site Scripting (XSS) vulnerability in profile.php in phpgurukul Teacher Subject Allocation Management System 1.0 allows attackers to run arbitrary code via the 'adminname' and 'email' parameters.
0
Attacker Value
Unknown
CVE-2023-46025
Disclosure Date: November 14, 2023 (last updated February 25, 2025)
SQL Injection vulnerability in teacher-info.php in phpgurukul Teacher Subject Allocation Management System 1.0 allows attackers to obtain sensitive information via the 'editid' parameter.
0
Attacker Value
Unknown
CVE-2023-46024
Disclosure Date: November 14, 2023 (last updated February 25, 2025)
SQL Injection vulnerability in index.php in phpgurukul Teacher Subject Allocation Management System 1.0 allows attackers to run arbitrary SQL commands and obtain sensitive information via the 'searchdata' parameter.
0
Attacker Value
Unknown
CVE-2023-6076
Disclosure Date: November 10, 2023 (last updated February 25, 2025)
A vulnerability classified as problematic was found in PHPGurukul Restaurant Table Booking System 1.0. Affected by this vulnerability is an unknown functionality of the file booking-details.php of the component Reservation Status Handler. The manipulation of the argument bid leads to information disclosure. The attack can be launched remotely. The identifier VDB-244945 was assigned to this vulnerability.
0