Vulnerabilities > Egavilanmedia
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-06-02 | CVE-2021-44096 | SQL Injection vulnerability in Egavilanmedia User Registration and Login System With Admin Panel 1.0 EGavilan Media User-Registration-and-Login-System-With-Admin-Panel 1.0 is vulnerable to SQL Injection via profile_action - update_user. | 9.8 |
2022-06-02 | CVE-2021-44098 | SQL Injection vulnerability in Egavilanmedia Expense Management System 1.0 EGavilan Media Expense-Management-System 1.0 is vulnerable to SQL Injection via /expense_action.php. | 9.8 |
2021-01-28 | CVE-2020-36115 | Cross-site Scripting vulnerability in Egavilanmedia PHPcrud 1.0 Stored Cross Site Scripting (XSS) vulnerability in EGavilan Media CRUD Operation with PHP, MySQL, Bootstrap, and Dompdf via First Name or Last Name parameter in the 'Add New Record Feature'. | 5.4 |
2021-01-26 | CVE-2020-35263 | SQL Injection vulnerability in Egavilanmedia User Registration and Login System With Admin Panel 1.0 EgavilanMedia User Registration & Login System 1.0 is affected by SQL injection to the admin panel, which may allow arbitrary code execution. | 9.8 |
2020-12-30 | CVE-2020-29231 | Cross-site Scripting vulnerability in Egavilanmedia User Registration and Login System With Admin Panel 1.0 EGavilanMedia User Registration and Login System With Admin Panel 1.0 is affected by cross-site scripting (XSS) in the Admin Profile Page. | 5.4 |
2020-12-30 | CVE-2020-29230 | Cross-site Scripting vulnerability in Egavilanmedia User Registration and Login System With Admin Panel 1.0 EGavilanMedia User Registration and Login System With Admin Panel 1.0 is affected by cross-site scripting (XSS) in the Admin Panel - Manage User tab using the Full Name of the user. | 6.1 |
2020-12-30 | CVE-2020-29228 | SQL Injection vulnerability in Egavilanmedia User Registration and Login System With Admin Panel 1.0 EGavilanMedia User Registration and Login System With Admin Panel 1.0 is affected by SQL injection in the User Login Page. | 7.5 |
2020-12-24 | CVE-2020-29474 | SQL Injection vulnerability in Egavilanmedia EGM Address Book 1.0 EGavilan Media EGM Address Book 1.0 contains a SQL injection vulnerability. | 9.8 |
2020-12-24 | CVE-2020-29472 | SQL Injection vulnerability in Egavilanmedia Under Construction Page With Cpanel 1.0 EGavilan Media Under Construction page with cPanel 1.0 contains a SQL injection vulnerability. | 9.8 |
2020-12-23 | CVE-2020-35252 | Cross-site Scripting vulnerability in Egavilanmedia User Registration and Login System With Admin Panel 1.0 Cross Site Scripting (XSS) vulnerability via the 'Full Name' parameter in the User Registration section of User Registration & Login System with Admin Panel 1.0. | 6.1 |