Cybersecurity & Regolamentazione UE

News & Sicurezza

Aggiornamenti da ENISA, NVD e le principali fonti di cybersecurity europee. Tutto quello che un Responsabile Tecnico deve sapere.

33401 risultati

VulnerabilitàAlta
CVE-2018-25420 - AiOPMSD Final 1.0.0 SQL Injection via watch.php

CVE ID :CVE-2018-25420 Published : May 30, 2026, 4:17 p.m. | 8 hours, 15 minutes ago Description :AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the 'id' parameter. Attackers can send GET requests to watch.php with crafted SQL payloads to extract sensitive database information including usernames, database names, and version details. Severity: 8.2 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE30 mag 2026
VulnerabilitàAlta
CVE-2018-25425 - Yot CMS 3.3.1 SQL Injection via aid and cid Parameters

CVE ID :CVE-2018-25425 Published : May 30, 2026, 4:17 p.m. | 10 hours, 15 minutes ago Description :Yot CMS 3.3.1 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the aid and cid parameters. Attackers can send GET requests to index.php with crafted SQL payloads in the aid or cid parameters to extract database information including table and column names. Severity: 8.2 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE30 mag 2026
VulnerabilitàAlta
CVE-2018-25419 (CVSS 8.2)

AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the genre parameter. Attackers can send GET requests to genre.php with crafted SQL payloads in the genre parameter to extract sensitive database information including usernames, database names, and version details.

NVD (NIST)30 mag 2026
VulnerabilitàAlta
CVE-2018-25418 (CVSS 8.2)

AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the year parameter. Attackers can send GET requests to year.php with crafted SQL payloads in the year parameter to extract sensitive database information including usernames, database names, and version details.

NVD (NIST)30 mag 2026
VulnerabilitàAlta
CVE-2018-25417 (CVSS 8.2)

AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the quality parameter. Attackers can send GET requests to quality.php with crafted SQL payloads in the quality parameter to extract sensitive database information including usernames, database names, and version details.

NVD (NIST)30 mag 2026
VulnerabilitàAlta
CVE-2018-25416 (CVSS 8.2)

AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the country parameter. Attackers can send GET requests to country.php with crafted SQL payloads in the country parameter to extract sensitive database information including usernames, database names, and version details.

NVD (NIST)30 mag 2026
VulnerabilitàAlta
CVE-2018-25415 (CVSS 8.2)

AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the director parameter. Attackers can send GET requests to director.php with crafted SQL payloads in the director parameter to extract sensitive database information including usernames, database names, and version details.

NVD (NIST)30 mag 2026
VulnerabilitàAlta
CVE-2018-25414 (CVSS 8.2)

AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the actor parameter. Attackers can send GET requests to actor.php with crafted SQL payloads in the actor parameter to extract sensitive database information including usernames, database names, and version details.

NVD (NIST)30 mag 2026
VulnerabilitàAlta
CVE-2018-25413 (CVSS 8.2)

AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the 'q' parameter. Attackers can send GET requests to search.php with crafted SQL payloads to extract sensitive database information including usernames, database names, and version details.

NVD (NIST)30 mag 2026
VulnerabilitàAlta
CVE-2018-25413 - AiOPMSD Final 1.0.0 SQL Injection via search.php

CVE ID :CVE-2018-25413 Published : May 30, 2026, 4:17 p.m. | 6 hours, 15 minutes ago Description :AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the 'q' parameter. Attackers can send GET requests to search.php with crafted SQL payloads to extract sensitive database information including usernames, database names, and version details. Severity: 8.2 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE30 mag 2026
VulnerabilitàAlta
CVE-2018-25419 - AiOPMSD Final 1.0.0 SQL Injection via genre.php

CVE ID :CVE-2018-25419 Published : May 30, 2026, 4:17 p.m. | 8 hours, 15 minutes ago Description :AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the genre parameter. Attackers can send GET requests to genre.php with crafted SQL payloads in the genre parameter to extract sensitive database information including usernames, database names, and version details. Severity: 8.2 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE30 mag 2026
VulnerabilitàAlta
CVE-2018-25416 - AiOPMSD Final 1.0.0 SQL Injection via country.php

CVE ID :CVE-2018-25416 Published : May 30, 2026, 4:17 p.m. | 8 hours, 15 minutes ago Description :AiOPMSD Final 1.0.0 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the country parameter. Attackers can send GET requests to country.php with crafted SQL payloads in the country parameter to extract sensitive database information including usernames, database names, and version details. Severity: 8.2 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE30 mag 2026

Pagina 1183 di 2784

Resta aggiornato sulla cybersecurity

Iscriviti a CodersRegistry per ricevere gli aggiornamenti più importanti su regolamentazione EU e vulnerabilità critiche.