Vulnerability index

Browse CVEs

9 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Derbynet HIGH 8.1
CVE-2024-30928

SQL Injection vulnerability in DerbyNet v9.0 and below allows attackers to execute arbitrary SQL commands via 'classids' Parameter in ajax/query.slid…

Fix: after 9.0
Fix from $1,950 2024-04-18
Derbynet HIGH 8.0
CVE-2024-30929

Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows attackers to execute arbitrary code via the 'back' Parameter in playlist.php

Fix: after 9.0
Fix from $1,950 2024-04-18
Derbynet MEDIUM 6.5
CVE-2024-30925

Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows attackers to execute arbitrary code via the photo-thumbs.php component.

Fix: after 9.0
Fix from $1,600 2024-04-18
Derbynet MEDIUM 6.3
CVE-2024-30927

Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows attackers to execute arbitrary code via the racer-results.php component.

Fix: after 9.0
Fix from $1,600 2024-04-18
Derbynet CRITICAL 9.8
CVE-2024-30922

SQL Injection vulnerability in DerbyNet v9.0 allows a remote attacker to execute arbitrary code via the where Clause in Award Document Rendering.

Fix: after 9.0
Fix from $2,300 2024-04-18
Derbynet CRITICAL 9.8
CVE-2024-30923

SQL Injection vulnerability in DerbyNet v9.0 and below allows a remote attacker to execute arbitrary code via the where Clause in Racer Document Rend…

Fix: after 9.0
Fix from $2,300 2024-04-18
Derbynet HIGH 7.4
CVE-2024-30920

Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows a remote attacker to execute arbitrary code via the render-document.php componen…

Fix: after 9.0
Fix from $1,950 2024-04-18
Derbynet MEDIUM 5.4
CVE-2024-30921

Cross Site Scripting vulnerability in DerbyNet v9.0 and below allows a remote attacker to execute arbitrary code via the photo.php component.

Fix: after 9.0
Fix from $1,600 2024-04-18
Derbynet CRITICAL 9.8
CVE-2024-31818

Directory Traversal vulnerability in DerbyNet v.9.0 allows a remote attacker to execute arbitrary code via the page parameter of the kiosk.php compon…

No fix yet
Fix from $2,300 2024-04-12