|
248561
|
5.4 |
MEDIUM
Network
|
hoosoft
|
hoo_addons_for_elementor
|
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Hoosoft Hoo Addons for Elementor allows DOM-Based XSS.This issue affects Hoo Addons for El…
|
CWE-79
Cross-site Scripting
|
CVE-2024-51590
|
2024-11-19 01:44 |
2024-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248562
|
7.2 |
HIGH
Network
|
lopalopa
|
e-learning_management_system
|
A SQL Injection vulnerability was found in /admin/add_content.php in kashipara E-learning Management System Project 1.0 via the title and content parameters.
|
CWE-89
SQL Injection
|
CVE-2024-50826
|
2024-11-19 01:39 |
2024-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248563
|
7.2 |
HIGH
Network
|
lopalopa
|
e-learning_management_system
|
A SQL Injection vulnerability was found in /admin/school_year.php in kashipara E-learning Management System Project 1.0 via the school_year parameter.
|
CWE-89
SQL Injection
|
CVE-2024-50825
|
2024-11-19 01:39 |
2024-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248564
|
7.2 |
HIGH
Network
|
lopalopa
|
e-learning_management_system
|
A SQL Injection vulnerability was found in /admin/class.php in kashipara E-learning Management System Project 1.0 via the class_name parameter.
|
CWE-89
SQL Injection
|
CVE-2024-50824
|
2024-11-19 01:39 |
2024-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248565
|
9.8 |
CRITICAL
Network
|
lopalopa
|
e-learning_management_system
|
A SQL Injection vulnerability was found in /admin/login.php in kashipara E-learning Management System Project 1.0 via the username and password parameters.
|
CWE-89
SQL Injection
|
CVE-2024-50823
|
2024-11-19 01:38 |
2024-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248566
|
7.2 |
HIGH
Network
|
lopalopa
|
e-learning_management_system
|
A SQL Injection vulnerability was found in /admin/edit_student.php in KASHIPARA E-learning Management System Project 1.0 via the cys, un, ln, fn, and id parameters.
|
CWE-89
SQL Injection
|
CVE-2024-50835
|
2024-11-19 01:38 |
2024-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248567
|
7.2 |
HIGH
Network
|
lopalopa
|
e-learning_management_system
|
A SQL Injection was found in /admin/teachers.php in KASHIPARA E-learning Management System Project 1.0 via the firstname and lastname parameters.
|
CWE-89
SQL Injection
|
CVE-2024-50834
|
2024-11-19 01:38 |
2024-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248568
|
9.8 |
CRITICAL
Network
|
lopalopa
|
e-learning_management_system
|
A SQL Injection vulnerability was found in /login.php in KASHIPARA E-learning Management System Project 1.0 via the username and password parameters.
|
CWE-89
SQL Injection
|
CVE-2024-50833
|
2024-11-19 01:38 |
2024-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248569
|
7.2 |
HIGH
Network
|
lopalopa
|
e-learning_management_system
|
A SQL Injection was found in /admin/admin_user.php in kashipara E-learning Management System Project 1.0 via the username and password parameters.
|
CWE-89
SQL Injection
|
CVE-2024-50831
|
2024-11-19 01:37 |
2024-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
248570
|
7.2 |
HIGH
Network
|
lopalopa
|
e-learning_management_system
|
A SQL Injection vulnerability was found in /admin/calendar_of_events.php in kashipara E-learning Management System Project 1.0 via the date_start, date_end, and title parameters.
|
CWE-89
SQL Injection
|
CVE-2024-50830
|
2024-11-19 01:37 |
2024-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|