CVE
Vendors
Products
Updated
CVSS v2
CVSS v3
Phpok 6.1 has a deserialization vulnerability via framework/phpok_call.php.
SourceCodester Best Student Result Management System 1.0 is vulnerable to SQL Injection.
DedeCMS 5.7.98 has a file upload vulnerability in the background.
Bento4 v1.6.0-639 has a memory allocation issue that can cause denial of service.
Bento4 1.6.0 has memory leaks via the mp4fragment.
SolarView Compact 6.00 was discovered to contain a command injection vulnerability via network_test.php
A vulnerability was found in rickxy Stock Management System and classified as critical. Affected by this issue is some unknown functionality of the file /pages/processlogin.php. The manipulation of the argument user/password leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. VDB-214322 is the identifier assigned to this vulnerability.
kkFileView v4.1.0 is vulnerable to Cross Site Scripting (XSS) via the parameter 'errorMsg.'
In Exam Reviewer Management System 1.0, an authenticated attacker can upload a web-shell php file in profile page to achieve Remote Code Execution (RCE).
Exam Reviewer Management System 1.0 is vulnerable to SQL Injection via the ‘id’ parameter.
