-
CVE-2025-0213 – Campcodes Project Management System Remote Unrestricted File Upload Vulnerability
CVE ID : CVE-2025-0213 Published : Jan. 4, 2025, 5:15 p.m. | 3 hours, 8 minutes ago Description : A vulnerability was found in Campcodes Project Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /forms/update_forms.php?action=change_pic2&id=4. The manipulation of the argument file leads to unrestricted upload. The attack can…
-
CVE-2025-0214 – OpenCart TMD Custom Header Menu SQL Injection Vulnerability
CVE ID : CVE-2025-0214 Published : Jan. 4, 2025, 5:15 p.m. | 3 hours, 7 minutes ago Description : A vulnerability was found in TMD Custom Header Menu 4.0.0.1 on OpenCart. It has been rated as problematic. This issue affects some unknown processing of the file /admin/index.php. The manipulation of the argument headermenu_id leads to sql injection.…
-
CVE-2025-0212 – Campcodes Student Grading System SQL Injection
CVE ID : CVE-2025-0212 Published : Jan. 4, 2025, 4:15 p.m. | 4 hours, 7 minutes ago Description : A vulnerability was found in Campcodes Student Grading System 1.0. It has been classified as critical. This affects an unknown part of the file /view_students.php. The manipulation of the argument id leads to sql injection. It is possible…
-
CVE-2025-0211 – Campcodes School Faculty Scheduling System Remote File Inclusion Vulnerability
CVE ID : CVE-2025-0211 Published : Jan. 4, 2025, 3:15 p.m. | 5 hours, 7 minutes ago Description : A vulnerability was found in Campcodes School Faculty Scheduling System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/index.php. The manipulation of the argument page leads to file inclusion. The…
-
CVE-2024-41767 – IBM Engineering Lifecycle Optimization SQL Injection Vulnerability
CVE ID : CVE-2024-41767 Published : Jan. 4, 2025, 3:15 p.m. | 5 hours, 7 minutes ago Description : IBM Engineering Lifecycle Optimization – Publishing 7.0.2 and 7.0.3 is vulnerable to SQL injection. A remote attacker could send specially crafted SQL statements, which could allow the attacker to view, add, modify, or delete information in the back-end…
-
CVE-2024-41768 – IBM Engineering Lifecycle Optimization SSL Exception Vulnerability (Remote)
CVE ID : CVE-2024-41768 Published : Jan. 4, 2025, 3:15 p.m. | 5 hours, 7 minutes ago Description : IBM Engineering Lifecycle Optimization – Publishing 7.0.2 and 7.0.3 could allow a remote attacker to cause an unhandled SSL exception which could leave the connection in an unexpected or insecure state. Severity: 6.5 | MEDIUM Visit the link…
-
CVE-2024-41766 – IBM Engineering Lifecycle Optimization RE DoS
CVE ID : CVE-2024-41766 Published : Jan. 4, 2025, 3:15 p.m. | 5 hours, 7 minutes ago Description : IBM Engineering Lifecycle Optimization – Publishing 7.0.2 and 7.0.3 could allow a remote attacker to cause a denial of service using a complex regular expression. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS…
-
CVE-2024-41763 – IBM Engineering Lifecycle Optimization Weak Cryptographic Algorithms
CVE ID : CVE-2024-41763 Published : Jan. 4, 2025, 3:15 p.m. | 5 hours, 8 minutes ago Description : IBM Engineering Lifecycle Optimization – Publishing 7.0.2 and 7.0.3 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. Severity: 5.9 | MEDIUM Visit the link for more details, such as CVSS…
-
CVE-2024-41765 – IBM Engineering Lifecycle Optimization File Traversal Vulnerability
CVE ID : CVE-2024-41765 Published : Jan. 4, 2025, 3:15 p.m. | 5 hours, 8 minutes ago Description : IBM Engineering Lifecycle Optimization – Publishing 7.0.2 and 7.0.3 could allow a remote attacker to traverse directories on the system. An attacker could send a specially crafted URL request containing “dot dot” sequences (/../) to view arbitrary files…
-
CVE-2025-0210 – Campcodes School Faculty Scheduling System SQL Injection
CVE ID : CVE-2025-0210 Published : Jan. 4, 2025, 2:15 p.m. | 6 hours, 7 minutes ago Description : A vulnerability has been found in Campcodes School Faculty Scheduling System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/ajax.php?action=login. The manipulation of the argument username leads to sql injection.…