A vulnerability classified as critical has been found in SourceCodester Point of Sales and Inventory Management System 1.0. This affects an unknown part of the file login.php. The manipulation of the argument email leads to sql injection.
This vulnerability is uniquely identified as CVE-2024-7947. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
A vulnerability was found in itsourcecode Online Blood Bank Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file register.php of the component User Signup. The manipulation of the argument user leads to sql injection.
This vulnerability is handled as CVE-2024-7946. The attack may be launched remotely. Furthermore, there is an exploit available.
A vulnerability was found in itsourcecode Laravel Property Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /admin/notes/create of the component Notes Page. The manipulation of the argument Note text leads to cross site scripting.
This vulnerability is known as CVE-2024-7945. The attack can be launched remotely. Furthermore, there is an exploit available.
A vulnerability was found in itsourcecode Laravel Property Management System 1.0. It has been classified as critical. Affected is the function UpdateDocumentsRequest of the file DocumentsController.php. The manipulation leads to unrestricted upload.
This vulnerability is traded as CVE-2024-7944. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
A vulnerability was found in itsourcecode Laravel Property Management System 1.0 and classified as critical. This issue affects the function upload of the file PropertiesController.php. The manipulation of the argument file leads to unrestricted upload.
The identification of this vulnerability is CVE-2024-7943. The attack may be initiated remotely. Furthermore, there is an exploit available.
A vulnerability has been found in SourceCodester Leads Manager Tool 1.0 and classified as problematic. This vulnerability affects unknown code of the file update-leads.php. The manipulation of the argument phone_number leads to cross site scripting.
This vulnerability was named CVE-2024-7942. The attack can be initiated remotely. Furthermore, there is an exploit available.
A vulnerability, which was classified as very critical, was found in MobSF Mobile-Security-Framework-MobSF up to 4.0.6. This affects an unknown part of the component a Extension File Handler. The manipulation leads to relative path traversal.
This vulnerability is uniquely identified as CVE-2024-43399. It is possible to initiate the attack remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, has been found in Red Hat Undertow. Affected by this issue is some unknown functionality of the component Proxy Protocol Parser. The manipulation leads to information disclosure.
This vulnerability is handled as CVE-2024-7885. The attack needs to be initiated within the local network. There is no exploit available.
A vulnerability classified as problematic was found in BP Profile Search Plugin up to 5.7.5 on WordPress. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross-site request forgery.
This vulnerability is known as CVE-2024-7850. The attack can be launched remotely. There is no exploit available.
A vulnerability classified as problematic has been found in Snapshot Backup Plugin up to 2.1.1 on WordPress. Affected is an unknown function. The manipulation leads to cross-site request forgery.
This vulnerability is traded as CVE-2024-7689. It is possible to launch the attack remotely. There is no exploit available.
A vulnerability was found in GiveWP Plugin up to 3.14.1 on WordPress. It has been rated as problematic. This issue affects some unknown processing. The manipulation leads to missing authorization.
The identification of this vulnerability is CVE-2024-5941. The attack may be initiated remotely. There is no exploit available.