CVE-2022-40447 Zhaozcms 2022 had a SQL injection vulnerability in the 'keyword' parameter of /admin/baojia_list.php.
A successful attack can cause lost data, access restrictions, and/or external malware infections. The keyword parameter at /admin/baojia_list.php is prone to
CVE-2022-36365 Stored XSS vulnerabilities in WHA Crossword plugin = 1.1.10 at WordPress.
These issues can be exploited by hackers to execute arbitrary script code in user’s browser. A attacker can expose user’s data through a
CVE-2022-40026 The source code of the Managing System v1.0 had a SQL injection vulnerability.
Exploitation of this issue results in system takeover. Criticality of this issue was determined by the fact that system takeover bypasses authentication requirements. An attacker
CVE-2022-3255 An attacker can control a user's browser and perform actions within the application.
The attacker does not have to be fully aware of the application's internal workings to leverage these mechanisms. For example, an attacker could
CVE-2022-2315 Database Software Accreditation Tracking/Presentation Module has an unauthenticated SQL Injection vulnerability before version 2.
Software that is currently rated as “Most Likely to be Vulnerable” has an unauthenticated SQL Injection vulnerability. This is fixed in version 2.
Software that
Episode
00:00:00
00:00:00