All CVEs — page 6 of 242
The complete archive, 25 per page, newest first. 6034 records. Search instead.
The flaw is a time-based blind SQL injection vulnerability in the 'reportType' parameter, allowing attackers to inject malicious SQL queries and potentially gain unauthorized access or manipulate data. This matters because it can lead to severe data breaches and system compromise.
This vulnerability allows unauthenticated attackers to export arbitrary database tables, posing a significant risk to data integrity and confidentiality.
The flaw allows an attacker to upload and execute arbitrary PHP files, leading to remote code execution.
The vulnerability allows an attacker to inject time-based SQL queries, potentially leading to data theft or system compromise.
This vulnerability allows an attacker to inject time-based SQL queries, potentially leading to data theft or system compromise.
This vulnerability allows an attacker to inject time-based SQL queries, potentially leading to data exfiltration or system compromise.
The Viidure Android application hardcodes plaintext cloud storage credentials, allowing unauthorized access to critical storage.