Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
portal vulnerabilities and exploits
(subscribe to this query)
9.8
CVSSv3
CVE-2017-20143
A vulnerability, which was classified as critical, has been found in Itech Movie Portal Script 7.36. This issue affects some unknown processing of the file /film-rating.php. The manipulation of the argument v leads to sql injection (Error). The attack may be initiated remotely. T...
Ambit Movie Portal Script 7.36
9.8
CVSSv3
CVE-2017-20131
A vulnerability was found in Itech News Portal 6.28. It has been classified as critical. Affected is an unknown function of the file /news-portal-script/information.php. The manipulation of the argument inf leads to sql injection. It is possible to launch the attack remotely. The...
Itechscripts News Portal Script 6.28
9.8
CVSSv3
CVE-2017-20133
A vulnerability, which was classified as critical, was found in Itech Job Portal Script 9.13. This affects an unknown part of the file /admin. The manipulation leads to improper authentication. It is possible to initiate the attack remotely.
Itechscripts Job Portal Script 9.13
9.8
CVSSv3
CVE-2022-32409
A local file inclusion (LFI) vulnerability in the component codemirror.php of Portal do Software Publico Brasileiro i3geo v7.0.5 allows malicious users to execute arbitrary PHP code via a crafted HTTP request.
Softwarepublico I3geo 7.0.5
1 Github repository
9.8
CVSSv3
CVE-2022-20733
A vulnerability in the login page of Cisco Identity Services Engine (ISE) could allow an unauthenticated, remote malicious user to log in without credentials and access all roles without any restrictions. This vulnerability is due to exposed sensitive Security Assertion Markup La...
Cisco Identity Services Engine 3.1
9.8
CVSSv3
CVE-2022-24239
ACEweb Online Portal 3.5.065 exists to contain an unrestricted file upload vulnerability via attachments.awp.
Aceware Aceweb Online Portal
9.8
CVSSv3
CVE-2022-24240
ACEweb Online Portal 3.5.065 exists to contain a SQL injection vulnerability via the criteria parameter in showschedule.awp.
Aceware Aceweb Online Portal
9.8
CVSSv3
CVE-2022-29660
CSCMS Music Portal System v4.2 exists to contain a SQL injection vulnerability via the id parameter at /admin.php/pic/admin/pic/del.
Chshcms Cscms Music Portal System 4.2
9.8
CVSSv3
CVE-2022-28030
Simple Real Estate Portal System v1.0 exists to contain a SQL injection vulnerability via /reps/classes/Master.php?f=delete_estate.
Simple Real Estate Portal System Project Simple Real Estate Portal System 1.0
9.8
CVSSv3
CVE-2022-28410
Simple Real Estate Portal System v1.0 exists to contain a SQL injection vulnerability via /reps/classes/Users.php?f=delete_agent.
Simple Real Estate Portal System Project Simple Real Estate Portal System 1.0
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
path traversal
CVE-2024-26978
CVE-2024-26982
wireless
CVE-2023-6949
CVE-2024-26980
CVE-2024-32766
CVE-2024-26939
cache poisoning
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
2
3
4
5
6
7
8
9
10
NEXT »