Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2025-01-19 CVE-2025-0563 SQL Injection vulnerability in Anisha Fantasy-Cricket 1.0
A vulnerability was found in code-projects Fantasy-Cricket 1.0.
network
low complexity
anisha CWE-89
critical
9.8
2025-01-19 CVE-2025-0561 SQL Injection vulnerability in Angeljudesuarez Farm Management System 1.0
A vulnerability has been found in itsourcecode Farm Management System 1.0 and classified as critical.
network
low complexity
angeljudesuarez CWE-89
critical
9.8
2025-01-18 CVE-2024-45662 IBM Safer Payments 6.4.0.00 through 6.4.2.07, 6.5.0.00 through 6.5.0.05, and 6.6.0.00 through 6.6.0.03 could allow a remote attacker to cause a denial of service due to improper allocation of resources.
network
low complexity
CWE-770
7.5
2025-01-18 CVE-2024-47106 IBM Jazz for Service Management 1.1.3 through 1.1.3.22 could allow a remote attacker to obtain sensitive information from improper access restrictions that could aid in further attacks against the system.
network
low complexity
CWE-552
5.3
2025-01-18 CVE-2024-47113 IBM ICP - Voice Gateway 1.0.2, 1.0.2.4, 1.0.3, 1.0.4, 1.0.5, 1.0.6.
network
low complexity
CWE-91
8.1
2025-01-18 CVE-2024-49354 IBM Concert 1.0.0, 1.0.1, and 1.0.2 is vulnerable to sensitive information disclosure through specially crafted API Calls.
network
low complexity
CWE-213
5.3
2025-01-18 CVE-2024-49824 IBM Robotic Process Automation 21.0.0 through 21.0.7.18 and 23.0.0 through 23.0.18 and IBM Robotic Process Automation for Cloud Pak 21.0.0 through 21.0.7.18 and 23.0.0 through 23.0.18 could allow an authenticated user to perform unauthorized actions as a privileged user due to improper validation of client-side security enforcement.
network
low complexity
CWE-602
6.5
2025-01-18 CVE-2024-49338 IBM App Connect Enterprise 12.0.1.0 through 12.0.7.0and 13.0.1.0 under certain configurations could allow a privileged user to obtain JMS credentials.
network
high complexity
4.4
2025-01-18 CVE-2024-51448 Insecure Inherited Permissions vulnerability in IBM Robotic Process Automation
IBM Robotic Process Automation 21.0.0 through 21.0.7.17 and 23.0.0 through 23.0.18 could allow a local user to escalate their privileges.
local
low complexity
ibm CWE-277
6.7
2025-01-18 CVE-2025-0560 Cross-site Scripting vulnerability in Campcodes School Management Software 1.0
A vulnerability, which was classified as problematic, was found in CampCodes School Management Software 1.0.
network
low complexity
campcodes CWE-79
4.8