Export limit exceeded: 352406 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Export limit exceeded: 352406 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.
Search
Search Results (46122 CVEs found)
| CVE | Vendors | Products | Updated | CVSS v3.1 |
|---|---|---|---|---|
| CVE-2024-30929 | 1 Derbynet | 1 Derbynet | 2025-11-04 | 8.0 High |
| Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows attackers to execute arbitrary code via the 'back' Parameter in playlist.php | ||||
| CVE-2024-30927 | 1 Derbynet | 1 Derbynet | 2025-11-04 | 6.3 Medium |
| Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows attackers to execute arbitrary code via the racer-results.php component. | ||||
| CVE-2024-30926 | 1 Derbynet | 1 Derbynet | 2025-11-04 | 4.6 Medium |
| Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows attackers to execute arbitrary code via the ./inc/kiosks.inc component. | ||||
| CVE-2024-30925 | 1 Derbynet | 1 Derbynet | 2025-11-04 | 6.5 Medium |
| Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows attackers to execute arbitrary code via the photo-thumbs.php component. | ||||
| CVE-2024-30921 | 1 Derbynet | 1 Derbynet | 2025-11-04 | 5.4 Medium |
| Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows a remote attacker to execute arbitrary code via the photo.php component. | ||||
| CVE-2024-30920 | 1 Derbynet | 1 Derbynet | 2025-11-04 | 7.4 High |
| Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows a remote attacker to execute arbitrary code via the render-document.php component. | ||||
| CVE-2024-24681 | 1 Yealink | 1 Configuration Encryption Tool | 2025-11-04 | 9.8 Critical |
| An issue was discovered in Yealink Configuration Encrypt Tool (AES version) and Yealink Configuration Encrypt Tool (RSA version before 1.2). There is a single hardcoded key (used to encrypt provisioning documents) across customers' installations. | ||||
| CVE-2023-51338 | 1 Phpjabbers | 1 Meeting Room Booking System | 2025-11-04 | 5.4 Medium |
| PHPJabbers Meeting Room Booking System v1.0 is vulnerable to Multiple Stored Cross-Site Scripting (XSS) in the "title, name" parameters of index.php page. | ||||
| CVE-2023-51337 | 1 Phpjabbers | 1 Event Ticketing System | 2025-11-04 | 5.4 Medium |
| PHPJabbers Event Ticketing System v1.0 is vulnerable to Reflected Cross-Site Scripting (XSS) in "lid" parameter in index. | ||||
| CVE-2023-51335 | 1 Phpjabbers | 1 Cinema Booking System | 2025-11-04 | 6.5 Medium |
| PHPJabbers Cinema Booking System v1.0 is vulnerable to Multiple Stored Cross-Site Scripting (XSS) in the "title, name" parameters. | ||||
| CVE-2023-51330 | 1 Phpjabbers | 1 Cinema Booking System | 2025-11-04 | 5.4 Medium |
| PHPJabbers Cinema Booking System v1.0 is vulnerable to Reflected Cross-Site Scripting (XSS) in Now Showing menu "date" parameter. | ||||
| CVE-2023-51328 | 1 Phpjabbers | 1 Cleaning Business Software | 2025-11-04 | 5.4 Medium |
| PHPJabbers Cleaning Business Software v1.0 is vulnerable to Multiple Stored Cross-Site Scripting (XSS) in the "c_name, name" parameters. | ||||
| CVE-2023-51325 | 1 Phpjabbers | 1 Shared Asset Booking System | 2025-11-04 | 5.4 Medium |
| PHPJabbers Shared Asset Booking System v1.0 is vulnerable to Multiple Stored Cross-Site Scripting (XSS) in the "title, name" parameters. | ||||
| CVE-2023-51318 | 1 Phpjabbers | 1 Bus Reservation System | 2025-11-04 | 5.4 Medium |
| PHPJabbers Bus Reservation System v1.1 is vulnerable to Multiple Stored Cross-Site Scripting (XSS) in the "title, name" parameters. | ||||
| CVE-2023-51315 | 1 Phpjabbers | 1 Restaurant Booking System | 2025-11-04 | 5.4 Medium |
| PHPJabbers Restaurant Booking System v3.0 is vulnerable to Multiple Stored Cross-Site Scripting (XSS) in the "seat_name, plugin_sms_api_key, plugin_sms_country_code, title, name" parameters. | ||||
| CVE-2023-51312 | 1 Phpjabbers | 1 Restaurant Booking System | 2025-11-04 | 5.4 Medium |
| PHPJabbers Restaurant Booking System v3.0 is vulnerable to Reflected Cross-Site Scripting (XSS) in Reservations menu, Schedule section date parameter. | ||||
| CVE-2023-51306 | 1 Phpjabbers | 1 Event Ticketing System | 2025-11-04 | 5.4 Medium |
| PHPJabbers Event Ticketing System v1.0 is vulnerable to Multiple Stored Cross-Site Scripting (XSS) in the "name, title" parameters. | ||||
| CVE-2023-51303 | 1 Phpjabbers | 1 Event Ticketing System | 2025-11-04 | 6.1 Medium |
| PHPJabbers Event Ticketing System v1.0 is vulnerable to Multiple HTML Injection in the "lid, name, plugin_sms_api_key, plugin_sms_country_code, title, plugin_sms_api_key, title" parameters. | ||||
| CVE-2023-51300 | 1 Phpjabbers | 1 Hotel Booking System | 2025-11-04 | 6.1 Medium |
| PHPJabbers Hotel Booking System v4.0 is vulnerable to Cross-Site Scripting (XSS) vulnerabilities in the "name, plugin_sms_api_key, plugin_sms_country_code, title, plugin_sms_api_key" parameters. | ||||
| CVE-2023-51299 | 1 Phpjabbers | 1 Hotel Booking System | 2025-11-04 | 6.1 Medium |
| PHPJabbers Hotel Booking System v4.0 is vulnerable to HTML Injection in the "name, plugin_sms_api_key, plugin_sms_country_code, title, plugin_sms_api_key, title" parameters. | ||||