Vulnerabilities > Improper Neutralization of Special Elements in Output Used by a Downstream Component ('Injection')

DATE CVE VULNERABILITY TITLE RISK
2025-05-21 CVE-2025-20256 A vulnerability in the web-based management interface of Cisco Secure Network Analytics Manager and Cisco Secure Network Analytics Virtual Manager could allow an authenticated, remote attacker with valid administrative credentials to execute arbitrary commands as root on the underlying operating system. This vulnerability is due to insufficient input validation in specific fields of the web-based management interface.
network
low complexity
CWE-74
6.5
2025-05-21 CVE-2025-5032 Injection vulnerability in Campcodes Online Shopping Portal 1.0
A vulnerability classified as critical has been found in Campcodes Online Shopping Portal 1.0.
network
low complexity
campcodes CWE-74
critical
9.8
2025-05-20 CVE-2025-4999 A vulnerability was found in Linksys FGW3000-AH and FGW3000-HK up to 1.0.17.000000 and classified as critical.
network
low complexity
CWE-74
6.3
2025-05-20 CVE-2025-5000 A vulnerability was found in Linksys FGW3000-AH and FGW3000-HK up to 1.0.17.000000.
network
low complexity
CWE-74
6.3
2025-05-19 CVE-2025-4940 A vulnerability, which was classified as critical, has been found in 1000 Projects Daily College Class Work Report Book 1.0.
network
low complexity
CWE-74
7.3
2025-05-19 CVE-2025-4941 Injection vulnerability in PHPgurukul Credit Card Application Management System 1.0
A vulnerability, which was classified as critical, was found in PHPGurukul Credit Card Application Management System 1.0.
network
low complexity
phpgurukul CWE-74
critical
9.8
2025-05-19 CVE-2025-4938 Injection vulnerability in PHPgurukul Employee Record Management System 1.3
A vulnerability was found in PHPGurukul Employee Record Management System 1.3.
network
low complexity
phpgurukul CWE-74
critical
9.8
2025-05-19 CVE-2025-4936 Injection vulnerability in Projectworlds Online Food Ordering System 1.0
A vulnerability was found in projectworlds Online Food Ordering System 1.0.
network
low complexity
projectworlds CWE-74
critical
9.8
2025-05-19 CVE-2025-4937 Injection vulnerability in Oretnom23 Apartment Visitor Management System 1.0
A vulnerability was found in SourceCodester Apartment Visitor Management System 1.0.
network
low complexity
oretnom23 CWE-74
critical
9.8
2025-05-19 CVE-2025-4934 Injection vulnerability in PHPgurukul User Registration & Login and User Management System 3.3
A vulnerability has been found in PHPGurukul User Registration & Login and User Management System 3.3 and classified as critical.
network
low complexity
phpgurukul CWE-74
critical
9.8