Autore: Angelo Barbosa

CVE-2024-3085 | PHPGurukul Emergency Ambulance Hiring Portal 1.0 Admin Login Page /admin/login.php username sql injection

A vulnerability classified as critical has been found in PHPGurukul Emergency Ambulance Hiring Portal 1.0. Affected is an unknown function of the file /admin/login.php of the component Admin Login Page. The manipulation of the argument username leads to sql injection. This vulnerability is traded as CVE-2024-3085. It is possible to launch the attack remotely. Furthermore, there is an exploit...

Per saperne di più

CVE-2024-3084 | PHPGurukul Emergency Ambulance Hiring Portal 1.0 Hire an Ambulance Page cross site scripting

A vulnerability was found in PHPGurukul Emergency Ambulance Hiring Portal 1.0. It has been rated as problematic. This issue affects some unknown processing of the component Hire an Ambulance Page. The manipulation of the argument Patient Name/Relative Name/Relative Phone Number/City/State/Message leads to cross site scripting. The identification of this vulnerability is CVE-2024-3084. The attack may be initiated remotely. Furthermore, there is an exploit...

Per saperne di più

CVE-2024-2513 | WP Chat App Plugin up to 3.6.2 on WordPress Block Image Attribute cross site scripting

A vulnerability was found in WP Chat App Plugin up to 3.6.2 on WordPress. It has been declared as problematic. This vulnerability affects unknown code of the component Block Image Attribute Handler. The manipulation leads to cross site scripting. This vulnerability was named CVE-2024-2513. The attack can be initiated remotely. There is no exploit...

Per saperne di più

CVE-2024-30423 | BetterAddons Better Elementor Addons Plugin up to 1.3.7 on WordPress cross site scripting

A vulnerability was found in BetterAddons Better Elementor Addons Plugin up to 1.3.7 on WordPress. It has been classified as problematic. This affects an unknown part. The manipulation leads to cross site scripting. This vulnerability is uniquely identified as CVE-2024-30423. It is possible to initiate the attack remotely. There is no exploit...

Per saperne di più