Latest CVE Feed
-
7.5
HIGHCVE-2025-50490
Improper session invalidation in the component /elms/emp-changepassword.php of PHPGurukul Student Result Management System v2.0 allows attackers to execute a session hijacking attack.... Read more
Affected Products : student_result_management_system- Published: Jul. 28, 2025
- Modified: Jul. 29, 2025
-
7.1
HIGHCVE-2025-50486
Improper session invalidation in the component /carrental/update-password.php of PHPGurukul Car Rental Project v3.0 allows attackers to execute a session hijacking attack.... Read more
Affected Products : e-diary_management_system- Published: Jul. 28, 2025
- Modified: Jul. 29, 2025
-
7.1
HIGHCVE-2025-50485
Improper session invalidation in the component /crm/change-password.php of PHPGurukul Online Course Registration v3.1 allows attackers to execute a session hijacking attack.... Read more
Affected Products : online_course_registration- Published: Jul. 28, 2025
- Modified: Jul. 29, 2025
-
7.1
HIGHCVE-2025-50487
Improper session invalidation in the component /bbdms/change-password.php of PHPGurukul Blood Bank & Donor Management System v2.4 allows attackers to execute a session hijacking attack.... Read more
Affected Products : blood_bank_\&_donor_management_system- Published: Jul. 28, 2025
- Modified: Jul. 29, 2025
-
9.0
HIGHCVE-2025-8242
A vulnerability has been found in TOTOLINK X15 1.0.0-B20230714.1105 and classified as critical. This vulnerability affects unknown code of the file /boafrm/formFilter of the component HTTP POST Request Handler. The manipulation of the argument ip6addr/url... Read more
- Published: Jul. 27, 2025
- Modified: Jul. 29, 2025
-
9.0
HIGHCVE-2025-8246
A vulnerability was found in TOTOLINK X15 1.0.0-B20230714.1105. It has been rated as critical. Affected by this issue is some unknown functionality of the file /boafrm/formRoute of the component HTTP POST Request Handler. The manipulation of the argument ... Read more
- Published: Jul. 27, 2025
- Modified: Jul. 29, 2025
-
9.0
HIGHCVE-2025-8245
A vulnerability was found in TOTOLINK X15 1.0.0-B20230714.1105. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /boafrm/formMultiAPVLAN of the component HTTP POST Request Handler. The manipulation o... Read more
- Published: Jul. 27, 2025
- Modified: Jul. 29, 2025
-
9.8
CRITICALCVE-2025-8244
A vulnerability was found in TOTOLINK X15 1.0.0-B20230714.1105. It has been classified as critical. Affected is an unknown function of the file /boafrm/formMapDelDevice of the component HTTP POST Request Handler. The manipulation of the argument macstr le... Read more
- Published: Jul. 27, 2025
- Modified: Jul. 29, 2025
-
9.0
HIGHCVE-2025-8243
A vulnerability was found in TOTOLINK X15 1.0.0-B20230714.1105 and classified as critical. This issue affects some unknown processing of the file /boafrm/formMapDel of the component HTTP POST Request Handler. The manipulation of the argument devicemac1 le... Read more
- Published: Jul. 27, 2025
- Modified: Jul. 29, 2025
-
8.8
HIGHCVE-2025-8018
A vulnerability was found in code-projects Food Ordering Review System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /user/reservation_page.php. The manipulation of the argument reg_Id leads ... Read more
Affected Products : food_ordering_review_system- Published: Jul. 22, 2025
- Modified: Jul. 29, 2025
-
9.8
CRITICALCVE-2025-7764
A vulnerability classified as critical has been found in code-projects Online Appointment Booking System 1.0. Affected is an unknown function of the file /admin/deletedoctorclinic.php. The manipulation of the argument clinic leads to sql injection. It is ... Read more
Affected Products : online_appointment_booking_system- Published: Jul. 17, 2025
- Modified: Jul. 29, 2025
-
9.8
CRITICALCVE-2025-7765
A vulnerability classified as critical was found in code-projects Online Appointment Booking System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/addmanagerclinic.php. The manipulation of the argument clinic leads to s... Read more
Affected Products : online_appointment_booking_system- Published: Jul. 17, 2025
- Modified: Jul. 29, 2025
-
9.8
CRITICALCVE-2025-7814
A vulnerability classified as critical was found in code-projects Food Ordering Review System 1.0. This vulnerability affects unknown code of the file /pages/signup_function.php. The manipulation of the argument fname leads to sql injection. The attack ca... Read more
Affected Products : food_ordering_review_system- Published: Jul. 18, 2025
- Modified: Jul. 29, 2025
-
9.8
CRITICALCVE-2025-7829
A vulnerability was found in code-projects Church Donation System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /login.php. The manipulation of the argument Username leads to sql injection. T... Read more
Affected Products : church_donation_system- Published: Jul. 19, 2025
- Modified: Jul. 29, 2025
-
9.8
CRITICALCVE-2025-7830
A vulnerability was found in code-projects Church Donation System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /reg.php. The manipulation of the argument mobile leads to sql injection. The attack may... Read more
Affected Products : church_donation_system- Published: Jul. 19, 2025
- Modified: Jul. 29, 2025
-
9.8
CRITICALCVE-2025-7831
A vulnerability classified as critical has been found in code-projects Church Donation System 1.0. This affects an unknown part of the file /members/Tithes.php. The manipulation of the argument trcode leads to sql injection. It is possible to initiate the... Read more
Affected Products : church_donation_system- Published: Jul. 19, 2025
- Modified: Jul. 29, 2025
-
9.8
CRITICALCVE-2025-7832
A vulnerability classified as critical was found in code-projects Church Donation System 1.0. This vulnerability affects unknown code of the file /members/offering.php. The manipulation of the argument trcode leads to sql injection. The attack can be init... Read more
Affected Products : church_donation_system- Published: Jul. 19, 2025
- Modified: Jul. 29, 2025
-
9.8
CRITICALCVE-2025-7833
A vulnerability, which was classified as critical, has been found in code-projects Church Donation System 1.0. This issue affects some unknown processing of the file /members/giving.php. The manipulation of the argument Amount leads to sql injection. The ... Read more
Affected Products : church_donation_system- Published: Jul. 19, 2025
- Modified: Jul. 29, 2025
-
9.8
CRITICALCVE-2025-7928
A vulnerability was found in code-projects Church Donation System 1.0 and classified as critical. This issue affects some unknown processing of the file /members/edit_user.php. The manipulation of the argument firstname leads to sql injection. The attack ... Read more
Affected Products : church_donation_system- Published: Jul. 21, 2025
- Modified: Jul. 29, 2025
-
9.8
CRITICALCVE-2025-7929
A vulnerability was found in code-projects Church Donation System 1.0. It has been classified as critical. Affected is an unknown function of the file /members/edit_Members.php. The manipulation of the argument fname leads to sql injection. It is possible... Read more
Affected Products : church_donation_system- Published: Jul. 21, 2025
- Modified: Jul. 29, 2025