CVE-2025-4000 to CVE-2025-4999
533 CVEs with public proof-of-concept exploits.
- CVE-2025-40001 PoCSeeyon Zhiyuan OA Web Application System ssoproxy.jsp cross site scripting
- CVE-2025-40041 PoCPHPGurukul COVID19 Testing Management System password-recovery.php sql injection
- CVE-2025-40051 PoCPHPGurukul COVID19 Testing Management System patient-report.php sql injection
- CVE-2025-40061 PoCyouyiio BeyongCms Document Management Page Upload.html unrestricted upload
- CVE-2025-40071 PoCTenda W12/i24 httpd modules cgidhcpsCfgSet stack-based overflow
- CVE-2025-40083 PoCsKEVArbitrary Command Injection in Smartbedded MeteoBridge
- CVE-2025-40091 PoCUnauthenticated Arbitrary Command Injection in Evertz SDVN
- CVE-2025-40121 PoCplayeduxyz PlayEdu 开源培训系统 User Avatar create server-side request forgery
- CVE-2025-40131 PoCPHPGurukul Art Gallery Management System aboutus.php sql injection
- CVE-2025-40141 PoCPHPGurukul Art Gallery Management System manage-art-medium.php sql injection
- CVE-2025-40151 PoC20120630 Novel-Plus SessionController.java list missing authentication
- CVE-2025-40161 PoC20120630 Novel-Plus LogController.java deleteIndex improper authorization
- CVE-2025-40171 PoC20120630 Novel-Plus LogController.java list improper authorization
- CVE-2025-40181 PoC20120630 Novel-Plus CrawlController.java addCrawlSource missing authentication
- CVE-2025-40191 PoC20120630 Novel-Plus GeneratorController.java genCode missing authentication
- CVE-2025-40201 PoCPHPGurukul Old Age Home Management System contact.php sql injection
- CVE-2025-40211 PoCcode-projects Patient Record Management System edit_spatient.php sql injection
- CVE-2025-40221 PoCweb-arena-x webarena evaluators.py HTMLContentEvaluator code injection
- CVE-2025-40231 PoCitsourcecode Placement Management System add_company.php sql injection
- CVE-2025-40241 PoCitsourcecode Placement Management System add_drive.php sql injection
- CVE-2025-40251 PoCitsourcecode Placement Management System registration.php sql injection
- CVE-2025-40261 PoCPHPGurukul Nipah Virus Testing Management System profile.php sql injection
- CVE-2025-40271 PoCPHPGurukul Old Age Home Management System rules.php sql injection
- CVE-2025-40281 PoCPHPGurukul COVID19 Testing Management System profile.php sql injection
- CVE-2025-40291 PoCcode-projects Personal Diary Management System New Record addrecord stack-based overflow
- CVE-2025-40301 PoCPHPGurukul COVID19 Testing Management System search-report-result.php sql injection
- CVE-2025-40311 PoCPHPGurukul Pre-School Enrollment System aboutus.php sql injection
- CVE-2025-40321 PoCinclusionAI AWorld shell_tool.py subprocess.Popen os command injection
- CVE-2025-40331 PoCPHPGurukul Nipah Virus Testing Management System patient-search-report.php sql injection
- CVE-2025-40341 PoCprojectworlds Online Examination System inser_doc_process.php sql injection
- CVE-2025-40361 PoC201206030 Novel Chapter AuthorController.java updateBookChapter access control
- CVE-2025-40371 PoCcode-projects ATM Banking moneyWithdraw logic error
- CVE-2025-40381 PoCcode-projects Train Ticket Reservation System reservation stack-based overflow
- CVE-2025-40391 PoCPHPGurukul Rail Pass Management System search-pass.php sql injection
- CVE-2025-40581 PoCProjectworlds Online Examination System Bloodgroop_process.php sql injection
- CVE-2025-40591 PoCcode-projects Prison Management System Prison_Mgmt_Sys addrecord stack-based overflow
- CVE-2025-40601 PoCPHPGurukul Notice Board System category.php sql injection
- CVE-2025-40611 PoCcode-projects Clothing Store Management System add_item stack-based overflow
- CVE-2025-40621 PoCcode-projects Theater Seat Booking System cancel stack-based overflow
- CVE-2025-40631 PoCcode-projects Student Information Management System cancel stack-based overflow
- CVE-2025-40641 PoCScriptAndTools Online-Travling-System viewenquiry.php access control
- CVE-2025-40651 PoCScriptAndTools Online-Travling-System addadvertisement.php access control
- CVE-2025-40661 PoCScriptAndTools Online-Travling-System addpackage.php access control
- CVE-2025-40671 PoCScriptAndTools Online-Travling-System viewpackage.php access control
- CVE-2025-40681 PoCcode-projects Simple Movie Ticket Booking System changeprize stack-based overflow
- CVE-2025-40691 PoCcode-projects Product Management System add_item stack-based overflow
- CVE-2025-40701 PoCPHPGurukul Rail Pass Management System changeimage.php sql injection
- CVE-2025-40711 PoCPHPGurukul COVID19 Testing Management System test-details.php sql injection
- CVE-2025-40721 PoCPHPGurukul Online Nurse Hiring System edit-nurse.php sql injection
- CVE-2025-40731 PoCPHPGurukul Student Record System change-password.php sql injection
- CVE-2025-40741 PoCPHPGurukul Curfew e-Pass Management System pass-bwdates-report.php sql injection
- CVE-2025-40761 PoCLB-LINK BL-AC3600 Password lighttpd.cgi easy_uci_set_option_string_0 command injection
- CVE-2025-40771 PoCcode-projects School Billing System searchrec stack-based overflow
- CVE-2025-40782 PoCsWangshen SecGate 3600 g=log_export_file path traversal
- CVE-2025-40791 PoCPCMan FTP Server RENAME Command buffer overflow
- CVE-2025-40801 PoCPHPGurukul Online Nurse Hiring System view-request.php sql injection
- CVE-2025-40944 PoCsDigits < 8.4.6.1 - Auth Bypass via OTP Bruteforcing
- CVE-2025-41081 PoCPHPGurukul Student Record System add-subject.php sql injection
- CVE-2025-41091 PoCPHPGurukul Pre-School Enrollment System edit-subadmin.php sql injection
- CVE-2025-41101 PoCPHPGurukul Pre-School Enrollment System edit-teacher.php sql injection
- CVE-2025-41111 PoCPHPGurukul Pre-School Enrollment System visitor-details.php sql injection
- CVE-2025-41121 PoCPHPGurukul Student Record System add-course.php sql injection
- CVE-2025-41131 PoCPHPGurukul Curfew e-Pass Management System edit-pass-detail.php sql injection
- CVE-2025-41181 PoCWeitong Mall Product History historyList access control
- CVE-2025-41191 PoCWeitong Mall Product Statistics queryTotal access control
- CVE-2025-41238 PoCsA cross-site scripting (XSS) vulnerability exists in Grafana caused by combining a client path traversal and open redirect. This allows…
- CVE-2025-41261 PoCEG-Series <= 2.1.1 - Authenticated (Contributor+) Stored Cross-Site Scripting via Shortcode
- CVE-2025-41331 PoCBlog2Social: Social Media Auto Post & Scheduler < 8.4.0 - Contributor+ Stored XSS
- CVE-2025-41361 PoCWeitong Mall Sale Endpoint improper authorization
- CVE-2025-41385 PoCsBypassing extraction filter to create symlinks to arbitrary targets outside extraction directory
- CVE-2025-41511 PoCPHPGurukul Curfew e-Pass Management System pass-bwdates-reports-details.php sql injection
- CVE-2025-41521 PoCPHPGurukul Online Birth Certificate System bwdates-reports-details.php sql injection
- CVE-2025-41531 PoCPHPGurukul Park Ticketing Management System profile.php sql injection
- CVE-2025-41541 PoCPHPGurukul Pre-School Enrollment System enrollment-details.php sql injection
- CVE-2025-41551 PoCPHPGurukul Boat Booking System edit-boat.php sql injection
- CVE-2025-41561 PoCPHPGurukul Boat Booking System change-image.php sql injection
- CVE-2025-41571 PoCPHPGurukul Boat Booking System booking-details.php sql injection
- CVE-2025-41581 PoCPCMan FTP Server PROMPT Command buffer overflow
- CVE-2025-41591 PoCPCMan FTP Server GLOB Command buffer overflow
- CVE-2025-41601 PoCPCMan FTP Server LS Command buffer overflow
- CVE-2025-41611 PoCPCMan FTP Server VERBOSE Command buffer overflow
- CVE-2025-41621 PoCPCMan FTP Server ASCII Command buffer overflow
- CVE-2025-41631 PoCPHPGurukul Land Record System aboutus.php sql injection
- CVE-2025-41641 PoCPHPGurukul Employee Record Management System changepassword.php sql injection
- CVE-2025-41731 PoCSourceCodester Online Eyewear Shop Master.php delete_cart sql injection
- CVE-2025-41741 PoCPHPGurukul COVID19 Testing Management System login.php sql injection
- CVE-2025-41751 PoCAlanBinu007 Spring-Boot-Advanced-Projects Upload Profile API Endpoint UserProfileController.java uploadUserProfileImage path traversal
- CVE-2025-41761 PoCPHPGurukul Blood Bank & Donor Management System request-received-bydonar.php sql injection
- CVE-2025-41781 PoCxiaowei1118 java_server File Upload API FoodController.java path traversal
- CVE-2025-41801 PoCPCMan FTP Server TRACE Command buffer overflow
- CVE-2025-41811 PoCPCMan FTP Server SEND Command buffer overflow
- CVE-2025-41821 PoCPCMan FTP Server BELL Command buffer overflow
- CVE-2025-41831 PoCPCMan FTP Server RECV Command buffer overflow
- CVE-2025-41841 PoCPCMan FTP Server QUOTE Command buffer overflow
- CVE-2025-41851 PoCWangshen SecGate 3600 g=obj_area_export_save path traversal
- CVE-2025-41861 PoCWangshen SecGate 3600 g=route_ispinfo_export_save path traversal
- CVE-2025-41902 PoCsCSV Mass Importer <= 1.2 - Admin+ Arbitrary File Upload
- CVE-2025-41911 PoCPHPGurukul Employee Record Management System editmyeducation.php sql injection
- CVE-2025-41922 PoCsitsourcecode Restaurant Management System category_save.php sql injection
- CVE-2025-41932 PoCsitsourcecode Restaurant Management System category_update.php sql injection
- CVE-2025-41952 PoCsitsourcecode Gym Management System ajax.php sql injection
- CVE-2025-41961 PoCSourceCodester Patient Record Management System birthing.php sql injection
- CVE-2025-41971 PoCcode-projects Patient Record Management System edit_xpatient.php sql injection
- CVE-2025-42101 PoCCasdoor SCIM User Creation Endpoint scim.go HandleScim authorization
- CVE-2025-42131 PoCPHPGurukul Online Birth Certificate System search.php sql injection
- CVE-2025-42141 PoCPHPGuruku Online DJ Booking Management System booking-bwdates-reports-details.php sql injection
- CVE-2025-42151 PoCgorhill uBlock Origin UI 1p-filters.js currentStateChanged redos
- CVE-2025-42181 PoChandrew browserpilot gpt_selenium_agent.py GPTSeleniumAgent code injection
- CVE-2025-42251 PoCAllocation of Resources Without Limits or Throttling in GitLab
- CVE-2025-42261 PoCPHPGurukul/Campcodes Cyber Cafe Management System add-computer.php sql injection
- CVE-2025-42361 PoCPCMan FTP Server MDIR Command buffer overflow
- CVE-2025-42371 PoCPCMan FTP Server MDELETE Command buffer overflow
- CVE-2025-42381 PoCPCMan FTP Server MGET Command buffer overflow
- CVE-2025-42391 PoCPCMan FTP Server TYPE Command buffer overflow
- CVE-2025-42401 PoCPCMan FTP Server LCD Command buffer overflow
- CVE-2025-42411 PoCPHPGurukul Teacher Subject Allocation Management System search.php sql injection
- CVE-2025-42421 PoCPHPGurukul Online Birth Certificate System between-dates-report.php sql injection
- CVE-2025-42431 PoCcode-projects Online Bus Reservation System print.php sql injection
- CVE-2025-42441 PoCcode-projects Online Bus Reservation System seatlocation.php sql injection
- CVE-2025-42471 PoCSourceCodester Simple To-Do List System delete_task.php sql injection
- CVE-2025-42481 PoCSourceCodester Simple To-Do List System complete_task.php sql injection
- CVE-2025-42491 PoCPHPGurukul e-Diary Management System manage-categories.php sql injection
- CVE-2025-42501 PoCcode-projects Nero Social Networking Site index.php sql injection
- CVE-2025-42511 PoCPCMan FTP Server RMDIR Command buffer overflow
- CVE-2025-42521 PoCPCMan FTP Server APPEND Command buffer overflow
- CVE-2025-42531 PoCPCMan FTP Server HASH Command buffer overflow
- CVE-2025-42541 PoCPCMan FTP Server LIST Command buffer overflow
- CVE-2025-42552 PoCsPCMan FTP Server RMD Command buffer overflow
- CVE-2025-42561 PoCSeaCMS admin_paylog.php cross site scripting
- CVE-2025-42571 PoCSeaCMS admin_pay.php cross site scripting
- CVE-2025-42581 PoCzhangyanbo2007 youkefu MediaController.java upload unrestricted upload
- CVE-2025-42591 PoCnewbee-mall UploadController.java upload unrestricted upload
- CVE-2025-42601 PoCzhangyanbo2007 youkefu TemplateController.java impsave deserialization
- CVE-2025-42611 PoCGAIR-NLP factool tool.py run_single code injection
- CVE-2025-42621 PoCPHPGurukul Online DJ Booking Management System user-search.php sql injection
- CVE-2025-42631 PoCPHPGurukul Online DJ Booking Management System booking-search.php sql injection
- CVE-2025-42641 PoCPHPGurukul Emergency Ambulance Hiring Portal edit-ambulance.php sql injection
- CVE-2025-42651 PoCPHPGurukul Emergency Ambulance Hiring Portal contact-us.php sql injection
- CVE-2025-42661 PoCPHPGurukul Notice Board System bwdates-reports-details.php sql injection
- CVE-2025-42671 PoCSourceCodester/oretnom23 Stock Management System Purchase Order Details Page view_po sql injection
- CVE-2025-42681 PoCTOTOLINK A720R cstecgi.cgi missing authentication
- CVE-2025-42691 PoCTOTOLINK A720R Log cstecgi.cgi access control
- CVE-2025-42701 PoCTOTOLINK A720R Config cstecgi.cgi information disclosure
- CVE-2025-42711 PoCTOTOLINK A720R cstecgi.cgi information disclosure
- CVE-2025-42721 PoCMechrevo Control Console GCUService csCAPI.dll uncontrolled search path
- CVE-2025-42781 PoCImproper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) in GitLab
- CVE-2025-42811 PoCShenzhen Sixun Software Sixun Shanghui Group Business Management System LoadData information disclosure
- CVE-2025-42821 PoCSourceCodester/oretnom23 Stock Management System Users.php cross-site request forgery
- CVE-2025-42831 PoCSourceCodester/oretnom23 Stock Management System Login.php sql injection
- CVE-2025-42861 PoCIntelbras InControl Dispositivos Edição Page credentials storage
- CVE-2025-42871 PoCPyTorch nccl.py torch.cuda.nccl.reduce denial of service
- CVE-2025-42882 PoCsPCMan FTP Server RNFR Command buffer overflow
- CVE-2025-42891 PoCPCMan FTP Server RNTO Command buffer overflow
- CVE-2025-42901 PoCPCMan FTP Server SMNT Command buffer overflow
- CVE-2025-42911 PoCIdeaCMS saveUpload unrestricted upload
- CVE-2025-42921 PoCMRCMS Edit User Page edit.do cross site scripting
- CVE-2025-42931 PoCMRCMS Group Edit Page edit.do cross site scripting
- CVE-2025-42971 PoCPHPGurukul Men Salon Management System change-password.php sql injection
- CVE-2025-42981 PoCTenda AC1206 setcfm formSetCfm buffer overflow
- CVE-2025-42991 PoCTenda AC1206 openSchedWifi setSchedWifi buffer overflow
- CVE-2025-43001 PoCitsourcecode Content Management System search_list.php sql injection
- CVE-2025-43011 PoCitsourcecode Content Management System search-notice.php sql injection
- CVE-2025-43022 PoCsStop User Enumeration < 1.7.3 - Protection Bypass
- CVE-2025-43031 PoCPHPGurukul Human Metapneumovirus Testing Management System add-phlebotomist.php sql injection
- CVE-2025-43041 PoCPHPGurukul Cyber Cafe Management System adminprofile.php sql injection
- CVE-2025-43051 PoCkefaming mayi File.php upload unrestricted upload
- CVE-2025-43061 PoCPHPGurukul Nipah Virus Testing Management System edit-phlebotomist.php sql injection
- CVE-2025-43071 PoCPHPGurukul Art Gallery Management System add-art-medium.php sql injection
- CVE-2025-43081 PoCPHPGurukul Art Gallery Management System add-art-type.php sql injection
- CVE-2025-43091 PoCPHPGurukul Art Gallery Management System add-art-type.php sql injection
- CVE-2025-43101 PoCitsourcecode Content Management System add_topic.php unrestricted upload
- CVE-2025-43111 PoCitsourcecode Content Management System update_main_topic_img.php sql injection
- CVE-2025-43121 PoCSourceCodester Advanced Web Store productdetail.php sql injection
- CVE-2025-43131 PoCSourceCodester Advanced Web Store admin_addnew_product.php sql injection
- CVE-2025-43141 PoCSourceCodester Advanced Web Store index.php sql injection
- CVE-2025-43224 PoCsMotors <= 5.6.67 - Unauthenticated Privilege Escalation via Password Update/Account Takeover
- CVE-2025-43231 PoCMRCMS Edit Article Page cross site scripting
- CVE-2025-43241 PoCMRCMS External Link Management Page edit.do cross site scripting
- CVE-2025-43251 PoCMRCMS Category Management Page add.do cross site scripting
- CVE-2025-43261 PoCMRCMS Add Fragment Page add.do cross site scripting
- CVE-2025-43271 PoCMRCMS cross-site request forgery
- CVE-2025-43281 PoCfp2952 spring-cloud-base HTTP Header MvcController.java sendBack redirect
- CVE-2025-43291 PoC74CMS index path traversal
- CVE-2025-43311 PoCSourceCodester Online Student Clearance System login.php sql injection
- CVE-2025-43322 PoCsPHPGurukul Company Visitor Management System visitor-detail.php sql injection
- CVE-2025-43331 PoCfeng_ha_ha/megagao ssm-erp/production_ssm FileServiceImpl.java uploadFile unrestricted upload
- CVE-2025-43344 PoCsSimple User Registration <= 6.3 - Unauthenticated Privilege Escalation
- CVE-2025-43362 PoCseMagicOne Store Manager for WooCommerce <= 1.2.5 - Unauthenticated Arbitrary File Upload via set_file()
- CVE-2025-43401 PoCD-Link DIR-890L/DIR-806A1 soap.cgi sub_175C8 command injection
- CVE-2025-43411 PoCD-Link DIR-880L Request Header ssdpcgi sub_16570 command injection
- CVE-2025-43521 PoCBrilliance Golden Link Secondary System tcEntrFlowSelect.htm sql injection
- CVE-2025-43531 PoCBrilliance Golden Link Secondary System queryTsDictionaryType.htm sql injection
- CVE-2025-43541 PoCTenda DAP-1520 storage check_dws_cookie stack-based overflow
- CVE-2025-43551 PoCTenda DAP-1520 api set_ws_action heap-based overflow
- CVE-2025-43561 PoCTenda DAP-1520 Authentication storage mod_graph_auth_uri_handler stack-based overflow
- CVE-2025-43571 PoCTenda RX3 telnet command injection
- CVE-2025-43581 PoCPHPGurukul Company Visitor Management System admin-profile.php sql injection
- CVE-2025-43591 PoCitsourcecode Gym Management System ajax.php sql injection
- CVE-2025-43601 PoCitsourcecode Gym Management System view_member.php sql injection
- CVE-2025-43611 PoCPHPGurukul Company Visitor Management System department.php sql injection
- CVE-2025-43621 PoCitsourcecode Gym Management System ajax.php sql injection
- CVE-2025-43631 PoCitsourcecode Gym Management System ajax.php sql injection
- CVE-2025-43681 PoCTenda AC8 MtuSetMacWan formGetRouterStatus buffer overflow
- CVE-2025-43802 PoCsAds Pro Plugin - Multi-Purpose WordPress Advertising Manager <= 4.89 - Unauthenticated Local File Inclusion
- CVE-2025-43881 PoCA reflected cross-site scripting (XSS) vulnerability in the Liferay Portal 7.4.0 through 7.4.3.131, and Liferay DXP 2024.Q4.0 through…
- CVE-2025-43891 PoCCrawlomatic Multipage Scraper Post Generator <= 2.6.8.1 - Unauthenticated Arbitrary File Upload
- CVE-2025-43962 PoCsRelevanssi <= 4.24.4 (Free) and <= 2.27.5 (Premium) - Unauthenticated SQL Injection
- CVE-2025-44031 PoCDrag and Drop Multiple File Upload for WooCommerce <= 1.1.6 - Unauthenticated Arbitrary File Upload via upload Function
- CVE-2025-44042 PoCsFreeipa: idm: privilege escalation from host to domain admin in freeipa
- CVE-2025-44277 PoCsKEVAuthentication Bypass
- CVE-2025-44285 PoCsKEVRemote Code Execution
- CVE-2025-44291 PoCWordPress Gearside Developer Dashboard <= 1.0.72 - Reflected XSS
- CVE-2025-44391 PoCImproper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in GitLab
- CVE-2025-44401 PoCH3C GR-1800AX aspForm EnableIpv6 buffer overflow
- CVE-2025-44551 PoCPatch My PC Home Updater System.IO uncontrolled search path
- CVE-2025-44561 PoCProject Worlds Car Rental Project signup.php sql injection
- CVE-2025-44571 PoCProject Worlds Car Rental Project approve.php sql injection
- CVE-2025-44581 PoCcode-projects Patient Record Management System edit_upatient.php sql injection
- CVE-2025-44591 PoCcode-projects Patient Record Management System fecalysis_form.php sql injection
- CVE-2025-44601 PoCTOTOLINK N150RT URL Filtering Page cross site scripting
- CVE-2025-44611 PoCTOTOLINK N150RT Virtual Server Page cross site scripting
- CVE-2025-44621 PoCTOTOLINK N150RT formWsc buffer overflow
- CVE-2025-44631 PoCitsourcecode Gym Management System ajax.php sql injection
- CVE-2025-44641 PoCitsourcecode Gym Management System ajax.php sql injection
- CVE-2025-44651 PoCitsourcecode Gym Management System ajax.php sql injection
- CVE-2025-44661 PoCitsourcecode Gym Management System ajax.php sql injection
- CVE-2025-44671 PoCSourceCodester Online Student Clearance System edit-admin.php sql injection
- CVE-2025-44681 PoCSourceCodester Online Student Clearance System edit-photo.php unrestricted upload
- CVE-2025-44691 PoCSourceCodester Online Student Clearance System add-admin.php cross site scripting
- CVE-2025-44701 PoCSourceCodester Online Student Clearance System add-student.php cross site scripting
- CVE-2025-44721 PoCcode-projects Departmental Store Management System bill stack-based overflow
- CVE-2025-44761 PoCLibsoup: null pointer dereference in libsoup may lead to denial of service
- CVE-2025-44801 PoCcode-projects Simple College Management System Add New Student input stack-based overflow
- CVE-2025-44811 PoCSourceCodester Apartment Visitor Management System search-result.php sql injection
- CVE-2025-44821 PoCProject Worlds Student Project Allocation System forgot_password_sql.php sql injection
- CVE-2025-44831 PoCitsourcecode Gym Management System view_pdetails.php sql injection
- CVE-2025-44841 PoCitsourcecode Gym Management System ajax.php sql injection
- CVE-2025-44851 PoCitsourcecode Gym Management System ajax.php sql injection
- CVE-2025-44861 PoCitsourcecode Gym Management System ajax.php sql injection
- CVE-2025-44871 PoCitsourcecode Gym Management System ajax.php sql injection
- CVE-2025-44881 PoCitsourcecode Gym Management System ajax.php sql injection
- CVE-2025-44891 PoCCampcodes Online Food Ordering System user-router.php sql injection
- CVE-2025-44901 PoCCampcodes Online Food Ordering System view-ticket-admin.php sql injection
- CVE-2025-44911 PoCCampcodes Online Food Ordering System ticket-status.php sql injection
- CVE-2025-44921 PoCCampcodes Online Food Ordering System ticket-message.php sql injection
- CVE-2025-44941 PoCJAdmin-JAVA JAdmin Admin Backend NoNeedLoginController.java toLogin improper authentication
- CVE-2025-44951 PoCJAdmin-JAVA JAdmin save cross site scripting
- CVE-2025-44961 PoCTOTOLINK T10/A3100R/A950RG/A800R/N600R/A3000RU/A810R cstecgi.cgi CloudACMunualUpdate buffer overflow
- CVE-2025-44971 PoCcode-projects Simple Banking System Sign In buffer overflow
- CVE-2025-44981 PoCcode-projects Simple Bus Reservation System Install Bus install stack-based overflow
- CVE-2025-44991 PoCcode-projects Simple Hospital Management System Add Information add stack-based overflow
- CVE-2025-45001 PoCcode-projects Hotel Management System Edit Room edit stack-based overflow
- CVE-2025-45011 PoCcode-projects Album Management System Search Albums searchalbum stack-based overflow
- CVE-2025-45021 PoCCampcodes Sales and Inventory System creditor_add.php sql injection
- CVE-2025-45031 PoCCampcodes Sales and Inventory System customer_update.php sql injection
- CVE-2025-45041 PoCSourceCodester Online College Library System index.php sql injection
- CVE-2025-45051 PoCPHPGurukul Apartment Visitors Management System category.php sql injection
- CVE-2025-45061 PoCCampcodes Online Food Ordering System menu-router.php sql injection
- CVE-2025-45071 PoCCampcodes Online Food Ordering System add-item.php sql injection
- CVE-2025-45081 PoCPHPGurukul e-Diary Management System my-profile.php sql injection
- CVE-2025-45091 PoCPHPGurukul e-Diary Management System manage-notes.php sql injection
- CVE-2025-45101 PoCChangjietong UFIDA CRM optntyday.php sql injection
- CVE-2025-45111 PoCvector4wang spring-boot-quick quick-img2txt Img2TxtController.java ResponseEntity path traversal
- CVE-2025-45121 PoCInetum IODAS app.jsp cross site scripting
- CVE-2025-45131 PoCCatalyst User Key Authentication Plugin Logout logout.php redirect
- CVE-2025-45141 PoCZhengzhou Jiuhua Electronic Technology mayicms javascript.php sql injection
- CVE-2025-45151 PoCZylon PrivateGPT settings.yaml cross-domain policy
- CVE-2025-45161 PoCUse-after-free in "unicode_escape" decoder with error handler
- CVE-2025-451711 PoCsArbitrary writes via tarfile realpath overflow
- CVE-2025-45243 PoCsMadara – Responsive and modern WordPress theme for manga sites <= 2.2.2 - Unauthenticated Local File Inclusion
- CVE-2025-45252 PoCsDiscord WINSTA.dll uncontrolled search path
- CVE-2025-45291 PoCSeeyon Zhiyuan OA Web Application System ZIP File M3CoreController.class download path traversal
- CVE-2025-45301 PoCfeng_ha_ha/megagao ssm-erp/production_ssm File FileController.java handleFileDownload path traversal
- CVE-2025-45311 PoCSeeyon Zhiyuan OA Web Application System Beetl Template EhrSalaryPayrollServiceImpl.class postData code injection
- CVE-2025-45321 PoCShanghai Bairui Information Technology SunloginClient sunlogin_guard.exe uncontrolled search path
- CVE-2025-45331 PoCJeecgBoot Document Library Upload zip unzipFile resource consumption
- CVE-2025-45341 PoCSunGrow Logger1000 weak password
- CVE-2025-45351 PoCGosuncn Technology Group Audio-Visual Integrated Management Platform Configuration File config.properties information disclosure
- CVE-2025-45361 PoCGosuncn Technology Group Audio-Visual Integrated Management Platform listByPage information disclosure
- CVE-2025-45371 PoCyangzongzhuan RuoYi-Vue Password login.vue sensitive information in a cookie
- CVE-2025-45381 PoCkkFileView fileUpload unrestricted upload
- CVE-2025-45391 PoCHainan ToDesk DLL File Parser profapi.dll uncontrolled search path
- CVE-2025-45401 PoCMTSoftware C-Lodop CLodopPrintService unquoted search path
- CVE-2025-45411 PoCLmxCMS POST Request ZtAction.class.php manageZt sql injection
- CVE-2025-45421 PoCFreeebird Hotel 酒店管理系统 API SessionInterceptor.java cross-domain policy
- CVE-2025-45431 PoCLyLme Spage ajax_link.php sql injection
- CVE-2025-45441 PoCD-Link DI-8100 jhttpd ddos.asp stack-based overflow
- CVE-2025-45451 PoCCTCMS Content Management System File Tpl.php del path traversal
- CVE-2025-45461 PoC1Panel-dev MaxKB Knowledge Base Module csv injection
- CVE-2025-45471 PoCSourceCodester Web-based Pharmacy Product Management System Add User Page cross site scripting
- CVE-2025-45481 PoCCampcodes Online Food Ordering System router.php sql injection
- CVE-2025-45491 PoCCampcodes Online Food Ordering System register-router.php sql injection
- CVE-2025-45501 PoCPHPGurukul Apartment Visitors Management System pass-details.php sql injection
- CVE-2025-45511 PoCContiNew Admin file cross site scripting
- CVE-2025-45521 PoCContiNew Admin password unverified password change
- CVE-2025-45531 PoCPHPGurukul Apartment Visitors Management System bwdates-reports-details.php sql injection
- CVE-2025-45541 PoCPHPGurukul Apartment Visitors Management System bwdates-passreports-details.php sql injection
- CVE-2025-45671 PoCPost Slider and Carousel with Widget < 3.2.10 - Admin+ Stored XSS
- CVE-2025-45761 PoCA reflected cross-site scripting (XSS) vulnerability in the Liferay Portal 7.4.0 through 7.4.3.133, and Liferay DXP 2025.Q1.0 through…
- CVE-2025-45782 PoCsFile Provider <= 1.2.3 - Unauthenticated SQLi
- CVE-2025-45801 PoCFile Provider <= 1.2.3 - Item Deletion via CSRF
- CVE-2025-45981 PoCSystemd-coredump: race condition that allows a local attacker to crash a suid program and gain read access to the resulting core dump
- CVE-2025-46011 PoCRH - Real Estate WordPress Theme <= 4.4.0 - Authenticated (Subscriber+) Privilege Escalation
- CVE-2025-46022 PoCseMagicOne Store Manager for WooCommerce <= 1.2.5 - Unauthenticated Arbitrary File Read
- CVE-2025-46032 PoCseMagicOne Store Manager for WooCommerce <= 1.2.5 - Unauthenticated Arbitrary File Deletion
- CVE-2025-46062 PoCsSala - Startup & SaaS WordPress Theme <= 1.1.4 - Unauthenticated Privilege Escalation via Password Reset/Account Takeover
- CVE-2025-46111 PoCSlim SEO <= 4.5.3 - Authenticated (Contributor+) Stored Cross-Site Scripting via slim_seo_breadcrumbs Shortcode
- CVE-2025-46131 PoCClient side RCE in Google Web Designer App
- CVE-2025-46151 PoCPAN-OS: Improper Neutralization of Input in the Management Web Interface
- CVE-2025-46311 PoCProfitori 2.0.6.0 - 2.1.1.3 - Missing Authorization to Unauthenticated Privilege Escalation via stocktend_object Endpoint
- CVE-2025-46323 PoCsKEVImproper limitation of a pathname to a restricted directory vulnerability in Samsung MagicINFO 9 Server version before 21.1052 allows…
- CVE-2025-46431 PoCLack of JWT Expiration after Log Out in PayloadCMS
- CVE-2025-46441 PoCUser Session Fixation after Account Removal in PayloadCMS
- CVE-2025-46522 PoCsBroadstreet < 1.51.8 - Reflected XSS
- CVE-2025-46531 PoCRemote Code Execution leads to Command Injection
- CVE-2025-46601 PoCRemote Code Execution in Windows Secure Connector/ HPS Inspection Engine via Insecure Named Pipe Access
- CVE-2025-46642 PoCsInsufficient policy enforcement in Loader in Google Chrome prior to 136.0.7103.113 allowed a remote attacker to leak cross-origin data via…
- CVE-2025-46881 PoCSQLi in BGS Interactive's SINAV.LINK Exam Result Module
- CVE-2025-46901 PoCAngularJS 'linky' filter ReDoS
- CVE-2025-46951 PoCPHPGurukul/Campcodes Cyber Cafe Management System add-users.php sql injection
- CVE-2025-46961 PoCPHPGurukul/Campcodes Cyber Cafe Management System search.php sql injection
- CVE-2025-46971 PoCPHPGurukul Directory Management System edit-directory.php sql injection
- CVE-2025-46981 PoCPHPGurukul Directory Management System forget-password.php sql injection
- CVE-2025-46991 PoCPHPGurukul Apartment Visitors Management System visitors-form.php sql injection
- CVE-2025-47001 PoCImproper Neutralization of Input During Web Page Generation ('Cross-site Scripting') in GitLab
- CVE-2025-47021 PoCPHPGurukul Vehicle Parking Management System add-category.php sql injection
- CVE-2025-47031 PoCPHPGurukul Vehicle Parking Management System admin-profile.php sql injection
- CVE-2025-47041 PoCPHPGurukul Vehicle Parking Management System edit-category.php sql injection
- CVE-2025-47051 PoCPHPGurukul Vehicle Parking Management System view-incomingvehicle-detail.php sql injection
- CVE-2025-47061 PoCprojectworlds Online Examination System Procedure3b_yearwiseVisit.php sql injection
- CVE-2025-47071 PoCCampcodes Sales and Inventory System transaction_add.php sql injection
- CVE-2025-47081 PoCCampcodes Sales and Inventory System sales_add.php sql injection
- CVE-2025-47091 PoCCampcodes Sales and Inventory System transaction_del.php sql injection
- CVE-2025-47101 PoCCampcodes Sales and Inventory System transaction.php sql injection
- CVE-2025-47111 PoCCampcodes Sales and Inventory System stockin_add.php sql injection
- CVE-2025-47121 PoCCampcodes Sales and Inventory System account_summary.php sql injection
- CVE-2025-47131 PoCCampcodes Sales and Inventory System print.php sql injection
- CVE-2025-47141 PoCCampcodes Sales and Inventory System reprint.php sql injection
- CVE-2025-47151 PoCCampcodes Sales and Inventory System view_application.php sql injection
- CVE-2025-47161 PoCCampcodes Sales and Inventory System credit_transaction_add.php sql injection
- CVE-2025-47171 PoCPHPGurukul Company Visitor Management System visitors-form.php sql injection
- CVE-2025-47181 PoCCampcodes Sales and Inventory System customer_add.php sql injection
- CVE-2025-47191 PoCCampcodes Sales and Inventory System cash_transaction.php sql injection
- CVE-2025-47201 PoCSourceCodester Student Result Management System drop_student.php path traversal
- CVE-2025-47211 PoCitsourcecode Placement Management System drive.php sql injection
- CVE-2025-47221 PoCitsourcecode Placement Management System edit_profile.php sql injection
- CVE-2025-47231 PoCitsourcecode Placement Management System all_student.php sql injection
- CVE-2025-47241 PoCitsourcecode Placement Management System student_profile.php sql injection
- CVE-2025-47251 PoCitsourcecode Placement Management System view_drive.php sql injection
- CVE-2025-47261 PoCitsourcecode Placement Management System view_student.php sql injection
- CVE-2025-47281 PoCSourceCodester Best Online News Portal search.php sql injection
- CVE-2025-47291 PoCTOTOLINK A3002R/A3002RU HTTP POST Request formMapDelDevice command injection
- CVE-2025-47301 PoCTOTOLINK A3002R/A3002RU HTTP POST Request formMapDel buffer overflow
- CVE-2025-47311 PoCTOTOLINK A3002R/A3002RU HTTP POST Request formPortFw buffer overflow
- CVE-2025-47321 PoCTOTOLINK A3002R/A3002RU HTTP POST Request formFilter buffer overflow
- CVE-2025-47331 PoCTOTOLINK A3002R/A3002RU HTTP POST Request formIpQoS buffer overflow
- CVE-2025-47341 PoCCampcodes Sales and Inventory System ci_update.php sql injection
- CVE-2025-47351 PoCCampcodes Sales and Inventory System product.php unrestricted upload
- CVE-2025-47361 PoCPHPGurukul Daily Expense Tracker register.php sql injection
- CVE-2025-47391 PoCprojectworlds Hospital Database Management System medicines_info.php sql injection
- CVE-2025-47401 PoCBeamCtrl Airiana coef deserialization
- CVE-2025-47411 PoCCampcodes Sales and Inventory System purchase_add.php sql injection
- CVE-2025-47431 PoCcode-projects Employee Record System getData.php sql injection
- CVE-2025-47441 PoCcode-projects Employee Record System edit_employee.php cross site scripting
- CVE-2025-47451 PoCcode-projects Employee Record System current_employees.php cross site scripting
- CVE-2025-47461 PoCCampcodes Sales and Inventory System purchase_delete.php sql injection
- CVE-2025-47471 PoCBohua NetDragon Firewall ip_status.php command injection
- CVE-2025-47491 PoCD-Link DI-7003GV2 Factory Reset backup.asp sub_4983B0 denial of service
- CVE-2025-47501 PoCD-Link DI-7003GV2 Configuration get_version.data information disclosure
- CVE-2025-47511 PoCD-Link DI-7003GV2 index.data information disclosure
- CVE-2025-47521 PoCD-Link DI-7003GV2 install_base.data information disclosure
- CVE-2025-47531 PoCD-Link DI-7003GV2 login.data information disclosure
- CVE-2025-47551 PoCD-Link DI-7003GV2 netconfig.asp sub_497DE4 improper authentication
- CVE-2025-47561 PoCD-Link DI-7003GV2 restart.asp denial of service
- CVE-2025-47571 PoCPHPGurukul Beauty Parlour Management System forgot-password.php sql injection
- CVE-2025-47581 PoCPHPGurukul Beauty Parlour Management System contact.php sql injection
- CVE-2025-47611 PoCPHPGurukul Complaint Management System admin-profile.php sql injection
- CVE-2025-47651 PoCPHPGurukul Zoo Management System contactus.php sql injection
- CVE-2025-47661 PoCPHPGurukul Zoo Management System profile.php sql injection
- CVE-2025-47671 PoCdefog-ai introspect Test Endpoint integration_routes.py test_custom_tool code injection
- CVE-2025-47681 PoCfeng_ha_ha/megagao ssm-erp/production_ssm PictureServiceImpl.java uploadPicture unrestricted upload
- CVE-2025-47701 PoCPHPGurukul Park Ticketing Management System view-normal-ticket.php sql injection
- CVE-2025-47711 PoCPHPGurukul Online Course Registration course.php sql injection
- CVE-2025-47721 PoCPHPGurukul Online Course Registration department.php sql injection
- CVE-2025-47731 PoCPHPGurukul Online Course Registration level.php sql injection
- CVE-2025-47771 PoCPHPGurukul Park Ticketing Management System view-foreigner-ticket.php sql injection
- CVE-2025-47781 PoCPHPGurukul Park Ticketing Management System normal-search.php sql injection
- CVE-2025-47801 PoCPHPGurukul Park Ticketing Management System foreigner-search.php sql injection
- CVE-2025-47811 PoCPHPGurukul Park Ticketing Management System forgot-password.php sql injection
- CVE-2025-47821 PoCSourceCodester/oretnom23 Stock Management System view_receiving sql injection
- CVE-2025-47851 PoCPHPGurukul Daily Expense Tracker System user-profile.php sql injection
- CVE-2025-47861 PoCSourceCodester/oretnom23 Stock Management System view_return sql injection
- CVE-2025-47871 PoCSourceCodester/oretnom23 Stock Management System view_sale sql injection
- CVE-2025-47881 PoCFreeFloat FTP Server DELETE Command buffer overflow
- CVE-2025-47891 PoCFreeFloat FTP Server LCD Command buffer overflow
- CVE-2025-47901 PoCFreeFloat FTP Server GLOB Command buffer overflow
- CVE-2025-47911 PoCFreeFloat FTP Server HASH Command buffer overflow
- CVE-2025-47921 PoCFreeFloat FTP Server MDELETE Command buffer overflow
- CVE-2025-47931 PoCPHPGurukul Online Course Registration edit-student-profile.php sql injection
- CVE-2025-47941 PoCPHPGurukul Online Course Registration news.php sql injection
- CVE-2025-47951 PoCgongfuxiang schoolcms index.php SaveInfo sql injection
- CVE-2025-47962 PoCsEventin <= 4.0.34 - Authenticated (Contributor+) Privilege Escalation via User Email Change/Account Takeover
- CVE-2025-48021 PoCUntrusted LD_LIBRARY_PATH environment variable vulnerability in the GNU C Library version 2.27 to 2.38 allows attacker controlled loading…
- CVE-2025-48061 PoCSourceCodester/oretnom23 Stock Management System view_bo sql injection
- CVE-2025-48071 PoCSourceCodester Online Student Clearance System exposure of information through directory listing
- CVE-2025-48081 PoCPHPGurukul Park Ticketing Management System add-normal-ticket.php sql injection
- CVE-2025-48091 PoCTenda AC7 setMacFilterCfg fromSafeSetMacFilter stack-based overflow
- CVE-2025-48101 PoCTenda AC7 SetRebootTimer formSetRebootTimer stack-based overflow
- CVE-2025-48111 PoCCodeAstro Pharmacy Management System Login index.php sql injection
- CVE-2025-48121 PoCPHPGurukul Human Metapneumovirus Testing Management System profile.php sql injection
- CVE-2025-48131 PoCPHPGurukul Human Metapneumovirus Testing Management System edit-phlebotomist.php sql injection
- CVE-2025-48141 PoCCampcodes Sales and Inventory System supplier_add.php sql injection
- CVE-2025-48151 PoCCampcodes Sales and Inventory System supplier_update.php sql injection
- CVE-2025-48161 PoCSourceCodester Doctor's Appointment System GET Parameter appointment.php sql injection
- CVE-2025-48171 PoCSourcecodester Doctor's Appointment System GET Parameter delete-appointment.php sql injection
- CVE-2025-48181 PoCSourceCodester Doctor's Appointment System GET Parameter delete-doctor.php sql injection
- CVE-2025-48191 PoCy_project RuoYi Offline Logout batchForceLogout improper authorization
- CVE-2025-48221 PoCSQLi in Bayraktar Solar Energies' ScadaWatt Otopilot
- CVE-2025-48231 PoCTOTOLINK A702R/A3002R/A3002RU HTTP POST Request formReflashClientTbl submit-url buffer overflow
- CVE-2025-48241 PoCTOTOLINK A702R/A3002R/A3002RU HTTP POST Request formWsc buffer overflow
- CVE-2025-48251 PoCTOTOLINK A702R/A3002R/A3002RU HTTP POST Request formDMZ buffer overflow
- CVE-2025-48261 PoCTOTOLINK A702R/A3002R/A3002RU HTTP POST Request formWirelessTbl buffer overflow
- CVE-2025-48271 PoCTOTOLINK A702R/A3002R/A3002RU HTTP POST Request formSaveConfig buffer overflow
- CVE-2025-48291 PoCTOTOLINK A702R/A3002R/A3002RU HTTP POST Request formStats sub_40BE30 buffer overflow
- CVE-2025-48301 PoCTOTOLINK A702R/A3002R/A3002RU HTTP POST Request formSysCmd buffer overflow
- CVE-2025-48311 PoCTOTOLINK A702R/A3002R/A3002RU HTTP POST Request formSiteSurveyProfile buffer overflow
- CVE-2025-48321 PoCTOTOLINK A702R/A3002R/A3002RU HTTP POST Request formDosCfg buffer overflow
- CVE-2025-48331 PoCTOTOLINK A702R/A3002R/A3002RU HTTP POST Request formNtp buffer overflow
- CVE-2025-48341 PoCTOTOLINK A702R/A3002R/A3002RU HTTP POST Request formSetLg buffer overflow
- CVE-2025-48351 PoCTOTOLINK A702R/A3002R/A3002RU HTTP POST Request formWlanRedirect buffer overflow
- CVE-2025-48361 PoCProjectworlds Life Insurance Management System deleteAgent.php sql injection
- CVE-2025-48371 PoCprojectworlds Student Project Allocation System make_group_sql.php sql injection
- CVE-2025-48381 PoCkanwangzjm Funiture Login LoginServlet.java doPost redirect
- CVE-2025-48391 PoCitwanger paicoding CrossUtil.java cross-domain policy
- CVE-2025-48402 PoCsLikes and Dislikes Plugin <= 1.0.0 - Unauthenticated SQL Injection
- CVE-2025-48411 PoCD-Link DCS-932L gpio sub_404780 stack-based overflow
- CVE-2025-48421 PoCD-Link DCS-932L ucp isUCPCameraNameChanged stack-based overflow
- CVE-2025-48431 PoCD-Link DCS-932L udev SubUPnPCSInit stack-based overflow
- CVE-2025-48441 PoCFreeFloat FTP Server CD Command buffer overflow
- CVE-2025-48451 PoCFreeFloat FTP Server TRACE Command buffer overflow
- CVE-2025-48461 PoCFreeFloat FTP Server MPUT Command buffer overflow
- CVE-2025-48471 PoCFreeFloat FTP Server MLS Command buffer overflow
- CVE-2025-48481 PoCFreeFloat FTP Server RECV Command buffer overflow
- CVE-2025-48491 PoCTOTOLINK N300RH cstecgi.cgi CloudACMunualUpdateUserdata command injection
- CVE-2025-48501 PoCTOTOLINK N300RH cstecgi.cgi setUnloadUserData command injection
- CVE-2025-48511 PoCTOTOLINK N300RH cstecgi.cgi setUploadUserData command injection
- CVE-2025-48521 PoCTOTOLINK A3002R VPN Page cross site scripting
- CVE-2025-48581 PoCD-Link DAP-2695 ARP Spoofing Prevention Page adv_arpspoofing.php cross site scripting
- CVE-2025-48591 PoCD-Link DAP-2695 MAC Bypass Settings Page adv_macbypass.php cross site scripting
- CVE-2025-48601 PoCD-Link DAP-2695 Static Pool Settings Page adv_dhcps.php cross site scripting
- CVE-2025-48611 PoCPHPGurukul Beauty Parlour Management System admin-profile.php sql injection
- CVE-2025-48621 PoCPHPGurukul Directory Management System searchdata.php cross site scripting
- CVE-2025-48631 PoCAdvaya Softech GEMS ERP Portal studentLogin.action sql injection
- CVE-2025-48641 PoCitsourcecode Restaurant Management System finished.php sql injection
- CVE-2025-48651 PoCitsourcecode Restaurant Management System member_save.php sql injection
- CVE-2025-48662 PoCsweibocom rill-flow Management Console code injection
- CVE-2025-48671 PoCTenda A15 ArpNerworkSet formArpNerworkSet denial of service
- CVE-2025-48681 PoCmerikbest ecommerce-spring-reactjs File Upload Endpoint admin path traversal
- CVE-2025-48691 PoCitsourcecode Restaurant Management System member_update.php sql injection
- CVE-2025-48701 PoCitsourcecode Restaurant Management System menu_save.php sql injection
- CVE-2025-48712 PoCsPCMan FTP Server REST Command buffer overflow
- CVE-2025-48721 PoCFreeFloat FTP Server CCC Command buffer overflow
- CVE-2025-48731 PoCPHPGurukul News Portal Login index.php sql injection
- CVE-2025-48741 PoCPHPGurukul News Portal Project contactus.php sql injection
- CVE-2025-48751 PoCCampcodes Online Shopping Portal forgot-password.php sql injection
- CVE-2025-48801 PoCPHPGurukul News Portal aboutus.php sql injection
- CVE-2025-48811 PoCitsourcecode Restaurant Management System user_save.php sql injection
- CVE-2025-48821 PoCitsourcecode Restaurant Management System team_update.php sql injection
- CVE-2025-48831 PoCD-Link DI-8100 Connection Limit Page ctxz.asp ctxz_asp stack-based overflow
- CVE-2025-48841 PoCitsourcecode Restaurant Management System assign_save.php sql injection
- CVE-2025-48851 PoCitsourcecode Sales and Inventory System product_add.php sql injection
- CVE-2025-48861 PoCitsourcecode Sales and Inventory System product_update.php sql injection
- CVE-2025-48871 PoCSourceCodester Online Student Clearance System cross-site request forgery
- CVE-2025-48881 PoCcode-projects Pharmacy Management System Add Order Details take_order buffer overflow
- CVE-2025-48891 PoCcode-projects Tourism Management System User Registration AddUser buffer overflow
- CVE-2025-48901 PoCcode-projects Tourism Management System Login User LoginUser stack-based overflow
- CVE-2025-48911 PoCcode-projects Police Station Management System Display Record source.cpp display buffer overflow
- CVE-2025-48921 PoCcode-projects Police Station Management System Delete Record source.cpp remove stack-based overflow
- CVE-2025-48931 PoCjammy928 CoinExchange_CryptoExchange_Java File Upload Endpoint UploadFileUtil.java uploadLocalImage path traversal
- CVE-2025-48951 PoCSourceCodester Doctors Appointment System delete-session.php sql injection
- CVE-2025-48961 PoCTenda AC10 UserCongratulationsExec buffer overflow
- CVE-2025-48971 PoCTenda A15 HTTP POST Request multimodalAdd buffer overflow
- CVE-2025-48981 PoCSourceCodester Student Result Management System Logo File update_system.php unlink path traversal
- CVE-2025-48991 PoCCampcodes Sales and Inventory System transaction_update.php sql injection
- CVE-2025-49001 PoCCampcodes Sales and Inventory System payment.php sql injection
- CVE-2025-49011 PoCD-Link DI-7003GV2 HTTP Endpoint state_view.data sub_41E304 information disclosure
- CVE-2025-49021 PoCD-Link DI-7003GV2 versionupdate.data sub_48F4F0 information disclosure
- CVE-2025-49031 PoCD-Link DI-7003GV2 webgl.asp sub_41F4F0 unverified password change
- CVE-2025-49041 PoCD-Link DI-7003GV2 webgl.data sub_41F0FC information disclosure
- CVE-2025-49051 PoCiop-apl-uw basestation3 QC.py load_qc_pickl deserialization
- CVE-2025-49061 PoCPHPGurukul Notice Board System login.php sql injection
- CVE-2025-49071 PoCPHPGurukul Daily Expense Tracker System forgot-password.php sql injection
- CVE-2025-49081 PoCPHPGurukul Daily Expense Tracker System expense-datewise-reports-detailed.php sql injection
- CVE-2025-49091 PoCSourceCodester Client Database Management System exposure of information through directory listing
- CVE-2025-49101 PoCPHPGurukul Zoo Management System edit-animal-details.php sql injection
- CVE-2025-49111 PoCPHPGurukul Zoo Management System view-foreigner-ticket.php sql injection
- CVE-2025-49121 PoCSourceCodester Student Result Management System Image File update_student.php path traversal
- CVE-2025-49131 PoCPHPGurukul Auto Taxi Stand Management System index.php sql injection
- CVE-2025-49141 PoCPHPGurukul Auto Taxi Stand Management System forgot-password.php sql injection
- CVE-2025-49151 PoCPHPGurukul Auto Taxi Stand Management System auto-taxi-entry-detail.php sql injection
- CVE-2025-49161 PoCPHPGurukul Auto Taxi Stand Management System admin-profile.php sql injection
- CVE-2025-49171 PoCPHPGurukul Auto Taxi Stand Management System new-autoortaxi-entry-form.php sql injection
- CVE-2025-49182 PoCsOut-of-bounds access when resolving Promise objects
- CVE-2025-49231 PoCSourceCodester Client Database Management System user_delivery_update.php unrestricted upload
- CVE-2025-49241 PoCSourceCodester Client Database Management System user_void_transaction.php sql injection
- CVE-2025-49251 PoCPHPGurukul Daily Expense Tracker System expense-monthwise-reports-detailed.php sql injection
- CVE-2025-49261 PoCPHPGurukul Car Rental Project post-avehical.php unrestricted upload
- CVE-2025-49271 PoCPHPGurukul Online Marriage Registration System between-dates-application-report.php sql injection
- CVE-2025-49281 PoCprojectworlds Online Lawyer Management System save_lawyer_edit_profile.php sql injection
- CVE-2025-49291 PoCCampcodes Online Shopping Portal my-account.php sql injection
- CVE-2025-49301 PoCCampcodes Online Shopping Portal my-cart.php sql injection
- CVE-2025-49311 PoCprojectworlds Online Lawyer Management System user_registation.php sql injection
- CVE-2025-49321 PoCprojectworlds Online Lawyer Management System lawyer_registation.php sql injection
- CVE-2025-49331 PoCponaravindb Hospital-Management-System doctor-panel.php sql injection
- CVE-2025-49341 PoCPHPGurukul User Registration & Login and User Management System edit-profile.php sql injection
- CVE-2025-49351 PoCSourceCodester Stock Management System changePassword.php sql injection
- CVE-2025-49361 PoCprojectworlds Online Food Ordering System admin-page.php sql injection
- CVE-2025-49371 PoCSourceCodester Apartment Visitor Management System profile.php sql injection
- CVE-2025-49381 PoCPHPGurukul Employee Record Management System registererms.php sql injection
- CVE-2025-49391 PoCPHPGurukul Credit Card Application Management System new-ccapplication.php cross site scripting
- CVE-2025-49401 PoC1000 Projects Daily College Class Work Report Book admin_info.php sql injection
- CVE-2025-49411 PoCPHPGurukul Credit Card Application Management System index.php sql injection
- CVE-2025-49541 PoCAxle Demo Importer <= 1.0.3 - Author+ Arbitrary File Upload
- CVE-2025-49551 PoCtarteaucitron.io < 1.9.5 - Contributor+ Stored XSS
- CVE-2025-49711 PoCBroadcom Automic Automation Agent Unix privilege escalation
- CVE-2025-49721 PoCIncorrect Authorization in GitLab
- CVE-2025-49761 PoCExposure of Sensitive Information Due to Incompatible Policies in GitLab
- CVE-2025-49771 PoCNetgear DGND3700 BRS_top.html information disclosure
- CVE-2025-49781 PoCNetgear DGND3700 Basic Authentication BRS_top.html improper authentication
- CVE-2025-49801 PoCNetgear DGND3700 mini_http currentsetting.htm information disclosure
- CVE-2025-49971 PoCH3C R2+ProG HTTP POST Request aspForm SetAPInfoById denial of service
- CVE-2025-49981 PoCH3C Magic R200G HTTP POST Request aspForm EditWlanMacList denial of service
- CVE-2025-49991 PoCLinksys FGW3000-AH/FGW3000-HK HTTP POST Request sysconf.cgi sub_4153FC command injection