Security
Headlines
HeadlinesLatestCVEs

Tag

#windows

CVE-2022-30815: bug_report/SQLi-4.md at main · k0xx11/bug_report

elitecms 1.01 is vulnerable to SQL Injection via admin/edit_sidebar.php?page=2&sidebar=

CVE
#sql#vulnerability#windows#php#firefox
CVE-2022-29725: There is a file upload vulnerability in the background settings page · Issue #161 · Creatiwity/wityCMS

An arbitrary file upload in the image upload component of wityCMS v0.6.2 allows attackers to execute arbitrary code via a crafted PHP file.

CVE-2022-30816: bug_report/SQLi-6.md at main · k0xx11/bug_report

elitecms 1.01 is vulnerable to SQL Injection via /admin/edit_sidebar.php.

CVE-2022-30819: bug_report/RCE-3.md at main · k0xx11/bug_report

In Wedding Management System v1.0, there is an arbitrary file upload vulnerability in the picture upload point of "photos_edit.php" file.

CVE-2022-30820: bug_report/RCE-4.md at main · k0xx11/bug_report

In Wedding Management v1.0, there is an arbitrary file upload vulnerability in the picture upload point of "users_edit.php" file.

CVE-2022-30828: bug_report/SQLi-6.md at main · k0xx11/bug_report

Wedding Management System v1.0 is vulnerable to SQL Injection via \admin\photos_edit.php.

CVE-2022-30827: bug_report/SQLi-4.md at main · k0xx11/bug_report

Wedding Management System v1.0 is vulnerable to SQL Injection via \admin\package_edit.php.

CVE-2022-30822: bug_report/RCE-5.md at main · k0xx11/bug_report

In Wedding Management System v1.0, there is an arbitrary file upload vulnerability in the picture upload point of "users_profile.php" file.

CVE-2022-30821: bug_report/RCE-2.md at main · k0xx11/bug_report

In Wedding Management System v1.0, the editing function of the "Services" module in the background management system has an arbitrary file upload vulnerability in the picture upload point of "package_edit.php" file.

CVE-2022-30818: bug_report/SQLi-10.md at main · k0xx11/bug_report

Wedding Management System v1.0 is vulnerable to SQL injection via /Wedding-Management/admin/blog_events_edit.php?id=31.