快速搜索提示:
按厂商查询(如:microsoft)|
按产品查询(如:microsoft sql_server)
漏洞列表 358424
| CVE ID | 标题 | 严重程度 | CVSS | 发布时间 | 受影响产品 | 数据源 | 操作 |
|---|---|---|---|---|---|---|---|
| CVE-2026-3171 |
SourceCodester/Patrick Mvuma Patients Waiting Area Queue Management System queue.php cross site scripting
|
MEDIUM | 5.1 | 2026-02-25 |
SourceCodester Patients Waiting Area Queue Management System
Patrick Mvuma Patients Waiting Area Queue Management System
+1个
|
CVE NVD | |
| CVE-2026-1929 |
Advanced Woo Labels <= 2.37 - Authenticated (Contributor+) Remote Code Execution via 'callback' Parameter
|
HIGH | 8.8 | 2026-02-25 |
mihail-barinov Advanced Woo Labels – Product Labels & Badges for WooCommerce
|
CVE NVD | |
| CVE-2026-2416 |
Geo Mashup <= 1.13.17 - Unauthenticated SQL Injection via 'sort' Parameter
|
HIGH | 7.5 | 2026-02-25 |
cyberhobo Geo Mashup
|
CVE NVD | |
| CVE-2026-1916 |
WPGSI: Spreadsheet Integration <= 3.8.3 - Missing Authorization to Unauthenticated Arbitrary Post Creation and Deletion via Forged Base64 Token
|
HIGH | 7.5 | 2026-02-25 |
javmah WPGSI: Spreadsheet Integration
|
CVE NVD | |
| CVE-2026-2479 |
Responsive Lightbox & Gallery <= 2.7.1 - Authenticated (Author+) Server-Side Request Forgery via Remote Library Image Upload
|
MEDIUM | 5.0 | 2026-02-25 |
dfactory Responsive Lightbox & Gallery
|
CVE NVD | |
| CVE-2026-3170 |
SourceCodester/Patrick Mvuma Patients Waiting Area Queue Management System patient-search.php cross site scripting
|
MEDIUM | 4.8 | 2026-02-25 |
SourceCodester Patients Waiting Area Queue Management System
Patrick Mvuma Patients Waiting Area Queue Management System
+1个
|
CVE NVD | |
| CVE-2026-3169 |
Tenda F453 httpd SafeEmailFilter fromSafeEmailFilter buffer overflow
|
HIGH | 8.7 | 2026-02-25 |
Tenda F453
tenda f453_firmware
|
CVE NVD | |
| CVE-2026-3168 |
Tenda F453 httpd NatStaticSetting fromNatStaticSetting buffer overflow
|
HIGH | 8.7 | 2026-02-25 |
Tenda F453
tenda f453_firmware
|
CVE NVD | |
| CVE-2026-3167 |
Tenda F453 httpd webtypelibrary formWebTypeLibrary buffer overflow
|
HIGH | 8.7 | 2026-02-25 |
Tenda F453
tenda f453_firmware
|
CVE NVD | |
| CVE-2026-1614 |
Rise Blocks – A Complete Gutenberg Page Builder <= 3.7 - Authenticated (Contributor+) Stored Cross-Site Scripting via Site Identity Block Attributes
|
MEDIUM | 6.4 | 2026-02-25 |
eaglethemes Rise Blocks – A Complete Gutenberg Page Builder
|
CVE NVD | |
| CVE-2026-3166 |
Tenda F453 httpd RouteStatic fromRouteStatic buffer overflow
|
HIGH | 8.7 | 2026-02-25 |
Tenda F453
tenda f453_firmware
|
CVE NVD | |
| CVE-2026-3165 |
Tenda F453 httpd AdvSetWrlsafeset fromSetWifiGusetBasic buffer overflow
|
HIGH | 8.7 | 2026-02-25 |
Tenda F453
tenda f453_firmware
|
CVE NVD | |
| CVE-2026-3164 |
itsourcecode News Portal Project contactus.php sql injection
|
MEDIUM | 6.9 | 2026-02-25 |
itsourcecode News Portal Project
clive_21 news_portal_project
|
CVE NVD | |
| CVE-2026-25785 |
Path traversal vulnerability exists in Lanscope Endpoint Manager (On-Premises) Sub-Manager Server Ve...
|
CRITICAL | 9.3 | 2026-02-25 |
MOTEX Inc. Lanscope Endpoint Manager (On-Premises) Sub-Manager Server
motex lanscope_endpoint_manager
|
CVE NVD | |
| CVE-2026-3179 |
A path traversal vulnerability was found in the FTP Backup on the ADM.
|
CRITICAL | 9.2 | 2026-02-25 |
ASUSTOR ADM
asustor data_master
|
CVE NVD | |
| CVE-2026-3100 |
An improper certificate validation vulnerability was found in the FTP Backup on the ADM.
|
HIGH | 8.3 | 2026-02-25 |
ASUSTOR ADM
asustor data_master
|
CVE NVD | |
| CVE-2026-3163 |
SourceCodester Website Link Extractor URL file_get_contents server-side request forgery
|
MEDIUM | 5.3 | 2026-02-25 |
SourceCodester Website Link Extractor
remyandrade website_link_extractor
|
CVE NVD | |
| CVE-2026-3153 |
itsourcecode Document Management System register.php sql injection
|
MEDIUM | 6.9 | 2026-02-25 |
itsourcecode Document Management System
admerc document_management_system
|
CVE NVD | |
| CVE-2026-3152 |
itsourcecode College Management System teacher-salary.php sql injection
|
MEDIUM | 6.9 | 2026-02-25 |
itsourcecode College Management System
angeljudesuarez college_management_system
|
CVE NVD | |
| CVE-2026-3151 |
itsourcecode College Management System login.php sql injection
|
MEDIUM | 6.9 | 2026-02-25 |
itsourcecode College Management System
angeljudesuarez college_management_system
|
CVE NVD |