Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
nu11secur1ty vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2023-23398
Microsoft Excel Spoofing Vulnerability
Microsoft Excel 2013
Microsoft Excel 2016
Microsoft 365 Apps -
Microsoft Office 2019
Microsoft Office 2021
670
VMScore
CVE-2022-24571
Car Driving School Management System v1.0 is affected by SQL injection in the login page. An attacker can use simple SQL login injection payload to get admin access.
Car Driving School Management System Project Car Driving School Management System 1.0
385
VMScore
CVE-2021-38757
Persistent cross-site scripting (XSS) in Hospital Management System targeted towards web admin through contact.php.
Hospital Management System Project Hospital Management System -
742
VMScore
CVE-2020-0022
In reassemble_and_dispatch of packet_fragmenter.cc, there is possible out of bounds write due to an incorrect bounds calculation. This could lead to remote code execution over Bluetooth with no additional execution privileges needed. User interaction is not needed for exploitatio...
Google Android 8.0
Google Android 8.1
Google Android 9.0
Google Android 10.0
Huawei Mate 20 Firmware
Huawei Mate 20 Pro Firmware
Huawei Mate 20 X Firmware
Huawei P Smart Firmware
Huawei P Smart 2019 Firmware
Huawei P20 Firmware
Huawei P20 Pro Firmware
Huawei P30 Firmware
Huawei P30 Pro Firmware
Huawei Y6 2019 Firmware
Huawei Y6 Pro 2019 Firmware
Huawei Y9 2019 Firmware
Huawei Nova 3 Firmware
Huawei Nova Lite 3 Firmware
Huawei Honor 8a Firmware
Huawei Honor 8x Firmware
Huawei Honor View 20 Firmware
Huawei Mate 30 Pro Firmware
10 Github repositories
1 Article
642
VMScore
CVE-2020-0683
An elevation of privilege vulnerability exists in the Windows Installer when MSI packages process symbolic links, aka 'Windows Installer Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0686.
Microsoft Windows Server 2008 R2
Microsoft Windows Server 2012 R2
Microsoft Windows 10 1607
Microsoft Windows 8.1 -
Microsoft Windows Server 2016 -
Microsoft Windows Server 2008 -
Microsoft Windows 7 -
Microsoft Windows Rt 8.1 -
Microsoft Windows Server 2012 -
Microsoft Windows 10 -
Microsoft Windows 10 1709
Microsoft Windows 10 1803
Microsoft Windows Server 2016 1803
Microsoft Windows 10 1809
Microsoft Windows Server 2019
Microsoft Windows Server 2016 1903
Microsoft Windows 10 1903
Microsoft Windows Server 2016 1909
Microsoft Windows 10 1909
4 Github repositories
2 Articles
314
VMScore
CVE-2021-38138
OneNav beta 0.9.12 allows XSS via the Add Link feature. NOTE: the vendor's position is that there intentionally is not any XSS protection at present, because the attack risk is largely limited to a compromised account; however, XSS protection is planned for a future release.
Onenav Onenav 0.9.12
312
VMScore
CVE-2021-38699
TastyIgniter 3.0.7 allows XSS via /account, /reservation, /admin/dashboard, and /admin/system_logs.
Tastyigniter Tastyigniter 3.0.7
4 Github repositories
670
VMScore
CVE-2022-24263
Hospital Management System v4.0 exists to contain a SQL injection vulnerability in /Hospital-Management-System-master/func.php via the email parameter.
Phpgurukul Hospital Management System 4.0
580
VMScore
CVE-2021-28242
SQL Injection in the "evoadm.php" component of b2evolution v7.2.2-stable allows remote malicious users to obtain sensitive database information by injecting SQL commands into the "cf_name" parameter when creating a new filter under the "Collections" ...
B2evolution B2evolution 7.2.2
580
VMScore
CVE-2021-28419
The "order_col" parameter in archive.php of SEO Panel 4.8.0 is vulnerable to time-based blind SQL injection, which leads to the ability to retrieve all databases.
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
camera
bypass
CVE-2024-3592
CVE-2024-37383
CVE-2024-24919
CVE-2024-27822
CVE-2024-36788
CVE-2024-36789
man-in-the-middle
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
NEXT »