NVD Vulnerabilities

Severity Distribution

Publication Trend

Vulnerability Database

CVE ID Description Published Base Score Attack Vector Severity Actions
CVE-2025-64446 A relative path traversal vulnerability in Fortinet FortiWeb 8.0.0 through 8.0.1, FortiWeb 7.6.0 through 7.6.4, FortiWeb 7.4.0 through 7.4.9, FortiWeb... 2025-11-14 9.8 NETWORK CRITICAL NVD
CVE-2025-13170 A vulnerability was detected in code-projects Simple Online Hotel Reservation System 1.0. This issue affects some unknown processing of the file /admi... 2025-11-14 7.3 NETWORK HIGH NVD
CVE-2025-13169 A security vulnerability has been detected in code-projects Simple Online Hotel Reservation System 1.0. This vulnerability affects unknown code of the... 2025-11-14 7.3 NETWORK HIGH NVD
CVE-2024-55016 PHPGurukul Student Record Management System 3.20 is vulnerable to SQL Injection via the id and password parameters in login.php. 2025-11-14 6.5 NETWORK MEDIUM NVD
CVE-2024-44640 PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the course-short, course-full, and cdate parameters in add-course.php. 2025-11-14 6.5 NETWORK MEDIUM NVD
CVE-2024-44639 PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the sub1, sub2, sub3, sub4, and course-short parameters in add-subject.php. 2025-11-14 6.5 NETWORK MEDIUM NVD
CVE-2024-44636 PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the adminname and aemailid parameters in /admin-profile.php. 2025-11-14 6.5 NETWORK MEDIUM NVD
CVE-2024-44635 PHPGurukul Student Record System 3.20 is vulnerable to Cross Site Scripting (XSS) via adminname and aemailid parameters in /admin-profile.php. 2025-11-14 6.1 NETWORK MEDIUM NVD
CVE-2024-44633 PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the currentpassword parameter in change-password.php. 2025-11-14 6.5 NETWORK MEDIUM NVD
CVE-2024-44632 PHPGurukul Student Record System 3.20 is vulnerable to SQL Injection via the id and emailid parameters in password-recovery.php. 2025-11-14 6.5 NETWORK MEDIUM NVD
CVE-2024-44630 Multiple parameters in register.php in PHPGurukul Student Record System 3.20 are vulnerable to SQL injection. These include: c-full, fname, mname,lnam... 2025-11-14 6.5 NETWORK MEDIUM NVD
CVE-2024-42749 Cross Site Scripting vulnerability in Alto CMS v.1.1.13 allows a local attacker to execute arbitrary code via a crafted script. 2025-11-14 6.1 NETWORK MEDIUM NVD