Autore: Angelo Barbosa

CVE-2024-57033 | WeGIA up to 3.1.x documentos_funcionario.php dados_addInfo cross site scripting

A vulnerability was found in WeGIA up to 3.1.x. It has been classified as problematic. Affected is an unknown function of the file documentos_funcionario.php. The manipulation of the argument dados_addInfo leads to cross site scripting. This vulnerability is traded as CVE-2024-57033. It is possible to launch the attack remotely. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2025-21606 | exelban stats up to 2.11.20 XPC Service data authenticity

A vulnerability was found in exelban stats up to 2.11.20 and classified as very critical. This issue affects some unknown processing of the component XPC Service. The manipulation leads to insufficient verification of data authenticity. The identification of this vulnerability is CVE-2025-21606. The attack may be initiated remotely. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2024-13026 | Roche Diagnostics Algorithm Suite up to 2.1.1 Algo Edge inadequate encryption

A vulnerability has been found in Roche Diagnostics Algorithm Suite up to 2.1.1 and classified as problematic. This vulnerability affects unknown code of the component Algo Edge. The manipulation leads to inadequate encryption strength. This vulnerability only affects products that are no longer supported by the maintainer. This vulnerability was named CVE-2024-13026. Access to the local network is required for this attack. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2024-57034 | WeGIA up to 3.1.x query_geracao_auto.php query sql injection

A vulnerability, which was classified as critical, was found in WeGIA up to 3.1.x. This affects an unknown part of the file query_geracao_auto.php. The manipulation of the argument query leads to sql injection. This vulnerability is uniquely identified as CVE-2024-57034. It is possible to initiate the attack remotely. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2024-57031 | WeGIA up to 3.1.x remuneracao.php id_funcionario sql injection

A vulnerability, which was classified as critical, has been found in WeGIA up to 3.1.x. Affected by this issue is some unknown functionality of the file /funcionario/remuneracao.php. The manipulation of the argument id_funcionario leads to sql injection. This vulnerability is handled as CVE-2024-57031. The attack may be launched remotely. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più