Autore: Angelo Barbosa

CVE-2024-46226 | HelpDeskZ up to 2.0.1 Administration Panel cross site scripting (Exploit 52068)

A vulnerability classified as problematic has been found in HelpDeskZ up to 2.0.1. This affects an unknown part of the component Administration Panel. The manipulation leads to cross site scripting. This vulnerability is uniquely identified as CVE-2024-46226. It is possible to initiate the attack remotely. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2025-25462 | PHPGurukul Land Record System 1.0 POST Request Parameter propertytype sql injection

A vulnerability was found in PHPGurukul Land Record System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the component POST Request Parameter Handler. The manipulation of the argument propertytype leads to sql injection. This vulnerability is handled as CVE-2025-25462. The attack may be launched remotely. There is no exploit...

Per saperne di più

CVE-2025-25825 | Emlog Pro 2.5.4 Article Category Section Title cross site scripting

A vulnerability was found in Emlog Pro 2.5.4. It has been classified as problematic. Affected is an unknown function of the component Article Category Section. The manipulation of the argument Title leads to cross site scripting. This vulnerability is traded as CVE-2025-25825. It is possible to launch the attack remotely. There is no exploit...

Per saperne di più

CVE-2024-52925 | OPSWAT MetaDefender Kiosk up to 4.6.x code injection

A vulnerability was found in OPSWAT MetaDefender Kiosk up to 4.6.x and classified as critical. This issue affects some unknown processing. The manipulation leads to code injection. The identification of this vulnerability is CVE-2024-52925. It is possible to launch the attack on the physical device. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più