NVD Vulnerabilities

Severity Distribution

Publication Trend

Vulnerability Database

CVE ID Description Published Base Score Attack Vector Severity Actions
CVE-2024-44648 PHPGurukul Small CRM 3.0 is vulnerable to SQL Injection via id and adminremark parameters in quote-details.php. 2025-11-17 6.5 NETWORK MEDIUM NVD
CVE-2024-44647 PHPGurukul Small CRM 3.0 is vulnerable to Cross Site Scripting (XSS) via the aremark parameter in manage-tickets.php. 2025-11-17 6.1 NETWORK MEDIUM NVD
CVE-2024-44644 PHPGurukul Small CRM 3.0 is vulnerable to SQL Injection via the frm_id and aremark parameters in manage-tickets.php. 2025-11-17 6.5 NETWORK MEDIUM NVD
CVE-2024-44641 PHPGurukul Small CRM 3.0 is vulnerable to SQL Injection via the oldpass parameter in change-password.php. 2025-11-17 6.5 NETWORK MEDIUM NVD
CVE-2025-65083 GoSign Desktop through 2.4.1 disables TLS certificate validation when configured to use a proxy server. This can be problematic if the GoSign Desktop ... 2025-11-17 3.2 LOCAL LOW NVD
CVE-2025-64046 OpenRapid RapidCMS 1.3.1 is vulnerable to Cross Site Scripting (XSS) in /system/update-run.php. 2025-11-17 6.1 NETWORK MEDIUM NVD
CVE-2025-63916 MyScreenTools v2.2.1.0 contains a critical OS command injection vulnerability in the GIF compression tool. The application fails to properly sanitize ... 2025-11-17 8.1 NETWORK HIGH NVD
CVE-2025-63748 QaTraq 6.9.2 allows authenticated users to upload arbitrary files via the "Add Attachment" feature in the "Test Script" module. The application fails ... 2025-11-17 8.8 NETWORK HIGH NVD
CVE-2025-63747 QaTraq 6.9.2 ships with administrative account credentials which are enabled in default installations and permit immediate login via the web applicati... 2025-11-17 9.8 NETWORK CRITICAL NVD
CVE-2025-63708 Cross-Site Scripting (XSS) vulnerability exists in SourceCodester AI Font Matcher (nid=18425, 2025-10-10) that allows remote attackers to execute arbi... 2025-11-17 6.1 NETWORK MEDIUM NVD
CVE-2025-13289 A vulnerability was detected in 1000projects Design & Development of Student Database Management System 1.0. Affected is an unknown function of the fi... 2025-11-17 6.3 NETWORK MEDIUM NVD
CVE-2025-13288 A security vulnerability has been detected in Tenda CH22 1.0.0.1. This impacts the function fromPptpUserSetting of the file /goform/PPTPUserSetting. T... 2025-11-17 8.8 NETWORK HIGH NVD
CVE-2025-4321 In a Bluetooth device, using RS9116-WiseConnect SDK experiences a Denial of Service, if it receives malformed L2CAP packets, only hard reset will brin... 2025-11-17 7.1 ADJACENT HIGH NVD
CVE-2025-13287 A weakness has been identified in itsourcecode Online Voting System 1.0. This affects an unknown function of the file /index.php?page=categories. Exec... 2025-11-17 6.3 NETWORK MEDIUM NVD
CVE-2025-13286 A security flaw has been discovered in itsourcecode Online Voting System 1.0. The impacted element is an unknown function of the file /ajax.php?action... 2025-11-17 6.3 NETWORK MEDIUM NVD