Security
Headlines
HeadlinesLatestCVEs

Tag

#windows

CVE-2022-30822: bug_report/RCE-5.md at main · k0xx11/bug_report

In Wedding Management System v1.0, there is an arbitrary file upload vulnerability in the picture upload point of "users_profile.php" file.

CVE
#vulnerability#windows#php#firefox
CVE-2022-30820: bug_report/RCE-4.md at main · k0xx11/bug_report

In Wedding Management v1.0, there is an arbitrary file upload vulnerability in the picture upload point of "users_edit.php" file.

CVE-2022-30821: bug_report/RCE-2.md at main · k0xx11/bug_report

In Wedding Management System v1.0, the editing function of the "Services" module in the background management system has an arbitrary file upload vulnerability in the picture upload point of "package_edit.php" file.

CVE-2022-30808: bug_report/RCE-1.md at main · k0xx11/bug_report

elitecms 1.0.1 is vulnerable to Arbitrary code execution via admin/manage_uploads.php.

CVE-2022-31964: bug_report/SQLi-11.md at main · k0xx11/bug_report

Rescue Dispatch Management System v1.0 is vulnerable to SQL Injection via rdms/admin/respondent_types/view_respondent_type.php?id=.

CVE-2022-30825: bug_report/SQLi-2.md at main · k0xx11/bug_report

Wedding Management System v1.0 is vulnerable to SQL Injection via \admin\client_edit.php.

CVE-2022-30823: bug_report/SQLi-1.md at main · k0xx11/bug_report

Wedding Management System v1.0 is vulnerable to SQL Injection via \admin\blog_events_edit.php.

CVE-2022-31347: bug_report/SQLi-4.md at main · k0xx11/bug_report

Online Car Wash Booking System v1.0 is vulnerable to SQL Injection via /ocwbs/classes/Master.php?f=delete_vehicle.

CVE-2022-31348: bug_report/SQLi-6.md at main · k0xx11/bug_report

Online Car Wash Booking System v1.0 is vulnerable to SQL Injection via /ocwbs/admin/bookings/update_status.php?id=.

CVE-2022-31343: bug_report/SQLi-1.md at main · k0xx11/bug_report

Online Car Wash Booking System v1.0 is vulnerable to SQL Injection via /ocwbs/admin/?page=bookings/view_details&id=.