Show filters
3,812 Total Results
Displaying 321-330 of 3,812
Sort by:
Attacker Value
Unknown

CVE-2023-6075

Disclosure Date: November 10, 2023 (last updated February 25, 2025)
A vulnerability classified as problematic has been found in PHPGurukul Restaurant Table Booking System 1.0. Affected is an unknown function of the file index.php of the component Reservation Request Handler. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. The identifier of this vulnerability is VDB-244944.
Attacker Value
Unknown

CVE-2023-6074

Disclosure Date: November 10, 2023 (last updated February 25, 2025)
A vulnerability was found in PHPGurukul Restaurant Table Booking System 1.0. It has been rated as critical. This issue affects some unknown processing of the file check-status.php of the component Booking Reservation Handler. The manipulation leads to sql injection. The attack may be initiated remotely. The associated identifier of this vulnerability is VDB-244943.
Attacker Value
Unknown

CVE-2023-46817

Disclosure Date: November 03, 2023 (last updated February 25, 2025)
An issue was discovered in phpFox before 4.8.14. The url request parameter passed to the /core/redirect route is not properly sanitized before being used in a call to the unserialize() PHP function. This can be exploited by remote, unauthenticated attackers to inject arbitrary PHP objects into the application scope, allowing them to perform a variety of attacks, such as executing arbitrary PHP code.
Attacker Value
Unknown

CVE-2022-4900

Disclosure Date: November 02, 2023 (last updated February 25, 2025)
A vulnerability was found in PHP where setting the environment variable PHP_CLI_SERVER_WORKERS to a large value leads to a heap buffer overflow.
Attacker Value
Unknown

CVE-2023-5917

Disclosure Date: November 02, 2023 (last updated February 25, 2025)
A vulnerability, which was classified as problematic, has been found in phpBB up to 3.3.10. This issue affects the function main of the file phpBB/includes/acp/acp_icons.php of the component Smiley Pack Handler. The manipulation of the argument pak leads to cross site scripting. The attack may be initiated remotely. Upgrading to version 3.3.11 is able to address this issue. The patch is named ccf6e6c255d38692d72fcb613b113e6eaa240aac. It is recommended to upgrade the affected component. The associated identifier of this vulnerability is VDB-244307.
Attacker Value
Unknown

CVE-2023-5867

Disclosure Date: October 31, 2023 (last updated February 25, 2025)
Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.2.2.
Attacker Value
Unknown

CVE-2023-5866

Disclosure Date: October 31, 2023 (last updated February 25, 2025)
Sensitive Cookie in HTTPS Session Without 'Secure' Attribute in GitHub repository thorsten/phpmyfaq prior to 3.2.1.
Attacker Value
Unknown

CVE-2023-5865

Disclosure Date: October 31, 2023 (last updated February 25, 2025)
Insufficient Session Expiration in GitHub repository thorsten/phpmyfaq prior to 3.2.2.
Attacker Value
Unknown

CVE-2023-5864

Disclosure Date: October 31, 2023 (last updated February 25, 2025)
Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.2.1.
Attacker Value
Unknown

CVE-2023-5863

Disclosure Date: October 31, 2023 (last updated February 25, 2025)
Cross-site Scripting (XSS) - Reflected in GitHub repository thorsten/phpmyfaq prior to 3.2.2.