CVE |
Vendors |
Products |
Updated |
CVSS v3.1 |
SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability |
SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability |
SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability |
SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability |
SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability |
SQL Server Native Client OLE DB Provider Remote Code Execution Vulnerability |
Windows iSCSI Service Denial of Service Vulnerability |
.NET and Visual Studio Remote Code Execution Vulnerability |
Windows NTLM Spoofing Vulnerability |
Secure Boot Security Feature Bypass Vulnerability |
Windows Text Services Framework Elevation of Privilege Vulnerability |
Microsoft Dynamics 365 (On-Premises) Information Disclosure Vulnerability |
The Plus Addons for Elementor WordPress plugin before 6.3.16 does not sanitize SVG file contents, which could allow users with minimum role access as Author to perform Stored Cross-Site Scripting attacks. |
The Kiwire Captive Portal contains an open redirection issue via the login-url parameter, allowing an attacker to redirect users to an attacker controlled website. |
The Kiwire Captive Portal contains a reflected cross-site scripting (XSS) vulnerability within the login-url parameter, allowing for Javascript execution. |
The Kiwire Captive Portal contains a blind SQL injection in the nas-id parameter, allowing for SQL commands to be issued and to compromise the corresponding database. |
Reflected Cross-Site Scripting (XSS) vulnerability in Bookgy. This vulnerability allows an attacker to execute JavaScript code in the victim's browser by sending a malicious URL through the "TEXTO" parameter in /api/api_ajustes.php. |
Reflected Cross-Site Scripting (XSS) vulnerability in Bookgy. This vulnerability allows an attacker to execute JavaScript code in the victim's browser by sending a malicious URL through the "IDRESERVA" parameter in /bkg_imprimir_comprobante.php. |
SQL injection vulnerability in Bookgy. This vulnerability could allow an attacker to retrieve, create, update and delete databases by sending an HTTP request through the "IDTIPO", "IDPISTA" and "IDSOCIO" parameters in /bkg_seleccionar_hora_ajax.php. |
SQL injection vulnerability in Bookgy. This vulnerability could allow an attacker to retrieve, create, update and delete databases by sending an HTTP request through the "IDRESERVA" parameter in /bkg_imprimir_comprobante.php |