Page 3 of 25 results (0.003 seconds)

CVSS: 6.1EPSS: 0%CPEs: 1EXPL: 2

The 'Your Name' field in the Submit Score section of Sourcecodester Math Game with Leaderboard v1.0 is vulnerable to Cross-Site Scripting (XSS) attacks. El campo 'Your Name' en la sección Submit Score de Sourcecodester Math Game con Leaderboard v1.0 es vulnerable a ataques de Cross-Site Scripting (XSS). • https://github.com/BurakSevben/CVE-2024-24136 https://github.com/BurakSevben/2024_Math_Game_XSS • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 7.2EPSS: 0%CPEs: 1EXPL: 2

Sourcecodester Login System with Email Verification 1.0 allows SQL Injection via the 'user' parameter. El sistema de inicio de sesión Sourcecodester Login System with Email Verification 1.0 permite la inyección SQL a través del parámetro 'user'. • https://github.com/BurakSevben/CVE-2024-24139 https://github.com/BurakSevben/Login_System_with_Email_Verification_SQL_Injection • CWE-89: Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') •

CVSS: 4.8EPSS: 0%CPEs: 1EXPL: 2

Sourcecodester Online Food Menu 1.0 is vulnerable to Cross Site Scripting (XSS) via the 'Menu Name' and 'Description' fields in the Update Menu section. Sourcecodester Online Food Menu 1.0 es vulnerable a Cross Site Scripting (XSS) a través de los campos 'Menu Name' y 'Description' en la sección Update Menu. • https://github.com/BurakSevben/CVE-2024-24134 https://github.com/BurakSevben/2024_Online_Food_Menu_XSS • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 6.1EPSS: 0%CPEs: 1EXPL: 2

Product Name and Product Code in the 'Add Product' section of Sourcecodester Product Inventory with Export to Excel 1.0 are vulnerable to XSS attacks. Product Name y Product Code en la sección 'Add Product' de Sourcecodester Product Inventory with Export to Excel 1.0 son vulnerables a ataques XSS. • https://github.com/BurakSevben/CVE-2024-24135 https://github.com/BurakSevben/2024_Product_Inventory_with_Export_to_Excel_XSS • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •

CVSS: 5.4EPSS: 0%CPEs: 1EXPL: 1

A vulnerability was found in SourceCodester School Visitor Log e-Book 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file log-book.php. The manipulation of the argument Full Name leads to cross site scripting. The attack may be launched remotely. • https://github.com/will121351/wenqin.webray.com.cn/blob/main/CVE-project/school-visitors-log-e-book.md https://vuldb.com/?ctiid.248750 https://vuldb.com/?id.248750 • CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') •