Export limit exceeded: 400945 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Export limit exceeded: 400945 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Search

Search Results (400945 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2025-6239 1 Zohocorp 1 Manageengine Applications Manager 2025-10-24 6.5 Medium
Zohocorp ManageEngine Applications Manager versions 176800 and below are vulnerable to information disclosure in File/Directory monitor.
CVE-2025-39898 1 Linux 1 Linux Kernel 2025-10-24 7.0 High
This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.
CVE-2025-62835 2025-10-24 N/A
Not used
CVE-2025-62834 2025-10-24 N/A
Not used
CVE-2025-62833 2025-10-24 N/A
Not used
CVE-2025-62832 2025-10-24 N/A
Not used
CVE-2025-62831 2025-10-24 N/A
Not used
CVE-2025-62830 2025-10-24 N/A
Not used
CVE-2025-62829 2025-10-24 N/A
Not used
CVE-2025-62828 2025-10-24 N/A
Not used
CVE-2025-62827 2025-10-24 N/A
Not used
CVE-2024-57777 1 Lanproxy Project 1 Lanproxy 2025-10-23 5.1 Medium
Directory Traversal vulnerability in Ianproxy v.0.1 and before allows a remote attacker to obtain sensitive information
CVE-2024-34687 1 Sap 1 Sap Basis 2025-10-23 6.5 Medium
SAP NetWeaver Application Server for ABAP and ABAP Platform do not sufficiently encode user controlled inputs, resulting in Cross-Site Scripting (XSS) vulnerability. An attacker can control code that is executed within a user’s browser, which could result in modification, deletion of data, including accessing or deleting files, or stealing session cookies which an attacker could use to hijack a user’s session. Hence, this could have impact on Confidentiality, Integrity and Availability of the system.
CVE-2025-62407 1 Frappe 1 Frappe 2025-10-23 6.1 Medium
Frappe is a full-stack web application framework. Prior to 14.98.0 and 15.83.0, an open redirect was possible through the redirect argument on the login page, if a specific type of URL was passed in. This vulnerability is fixed in 14.98.0 and 15.83.0.
CVE-2025-2419 1 Fabian 1 Real Estate Property Management System 2025-10-23 6.3 Medium
A vulnerability classified as critical has been found in code-projects Real Estate Property Management System 1.0. Affected is an unknown function of the file /InsertFeedback.php. The manipulation of the argument txtName/txtEmail/txtMobile/txtFeedback leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
CVE-2025-2392 1 Fabian 1 Online Class And Exam Scheduling System 2025-10-23 4.7 Medium
A vulnerability, which was classified as critical, has been found in code-projects Online Class and Exam Scheduling System 1.0. This issue affects some unknown processing of the file /pages/activate.php. The manipulation of the argument id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
CVE-2025-2384 1 Fabian 1 Real Estate Property Management System 2025-10-23 6.3 Medium
A vulnerability, which was classified as critical, was found in code-projects Real Estate Property Management System 1.0. This affects an unknown part of the file /InsertCustomer.php of the component Parameter Handler. The manipulation of the argument txtName/txtAddress/cmbCity/txtEmail/cmbGender/txtBirthDate/txtUserName2/txtPassword2 leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
CVE-2024-0504 1 Fabian 1 Simple Online Hotel Reservation System 2025-10-23 3.5 Low
A vulnerability has been found in code-projects Simple Online Hotel Reservation System 1.0 and classified as problematic. This vulnerability affects unknown code of the file add_reserve.php of the component Make a Reservation Page. The manipulation of the argument Firstname/Lastname with the input <script>alert(1)</script> leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-250618 is the identifier assigned to this vulnerability.
CVE-2023-7108 1 Fabian 1 E-commerce Website 2025-10-23 4.3 Medium
A vulnerability classified as problematic has been found in code-projects E-Commerce Website 1.0. This affects an unknown part of the file user_signup.php. The manipulation of the argument firstname with the input <video/src=x onerror=alert(document.domain)> leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-249003.
CVE-2023-7097 1 Fabian 1 Water Billing System 2025-10-23 6.3 Medium
A vulnerability classified as critical has been found in code-projects Water Billing System 1.0. This affects an unknown part of the file /addbill.php. The manipulation of the argument owners_id leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-248949 was assigned to this vulnerability.