Vulnerability index

Browse CVEs

11 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

HIGH 7.5 CVE-2023-53982 PMB 7.4.6 contains a SQL injection vulnerability in the storage parameter of the ajax.php endpoint that allows remote attackers to manipulate databas… Pmb No fix yet Fix from $1,9502025-12-23 CRITICAL 9.8 CVE-2025-61168 An issue in the cms_rest.php component of SIGB PMB v8.0.1.14 allows attackers to execute arbitrary code via unserializing an arbitrary file. Pmb Mitigation only Fix from $2,3002025-11-25 MEDIUM 6.5 CVE-2025-61167 SIGB PMB v8.0.1.14 was discovered to contain multiple SQL injection vulnerabilities in the /opac_css/ajax_selector.php component via the id and datas… Pmb Mitigation only Fix from $1,6002025-11-25 HIGH 7.5 CVE-2025-0473 Vulnerability in the PMB platform that allows an attacker to persist temporary files on the server, affecting versions 4.0.10 and above. This vulnera… Pmb Mitigation only Fix from $1,9502025-01-16 CRITICAL 9.8 CVE-2025-0471 Unrestricted file upload vulnerability in the PMB platform, affecting versions 4.0.10 and above. This vulnerability could allow an attacker to upload… Pmb Mitigation only Fix from $2,3002025-01-16 CRITICAL 9.8 CVE-2023-24734EPSS 21% An arbitrary file upload vulnerability in the camera_upload.php component of PMB v7.4.6 allows attackers to execute arbitrary code via a crafted imag… Pmb No fix yet Fix from $2,3002023-03-06 CRITICAL 9.8 CVE-2023-24736 PMB v7.4.6 was discovered to contain a remote code execution (RCE) vulnerability via the component /sauvegarde/restaure_act.php. Pmb No fix yet Fix from $2,3002023-03-06 MEDIUM 6.1 CVE-2023-24733 PMB v7.4.6 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the query parameter at /admin/convert/export_z3950_new.… Pmb No fix yet Fix from $1,6002023-03-06 MEDIUM 6.1 CVE-2023-24735 PMB v7.4.6 was discovered to contain an open redirect vulnerability via the component /opac_css/pmb.php. This vulnerability allows attackers to redir… Pmb No fix yet Fix from $1,6002023-03-06 MEDIUM 6.1 CVE-2023-24737 PMB v7.4.6 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the query parameter at /admin/convert/export_z3950.php. Pmb No fix yet Fix from $1,6002023-03-06 MEDIUM 6.1 CVE-2022-34328 PMB 7.3.10 allows reflected XSS via the id parameter in an lvl=author_see request to index.php. Pmb No fix yet Fix from $1,6002022-06-23