Vulnerability index

Browse CVEs

24 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.5 CVE-2025-45818 Slims (Senayan Library Management Systems) 9 Bulian 9.6.1 is vulnerable to SQL Injection in admin/modules/master_file/item_status.php. Senayan Library Management System Bulian No fix yet Fix from $1,6002025-05-08 MEDIUM 6.5 CVE-2025-45819 Slims (Senayan Library Management Systems) 9 Bulian 9.6.1 is vulnerable to SQL Injection in admin/modules/master_file/author.php. Senayan Library Management System Bulian No fix yet Fix from $1,6002025-05-08 MEDIUM 6.5 CVE-2025-45820 Slims (Senayan Library Management Systems) 9 Bulian 9.6.1 is vulnerable to SQL Injection in admin/modules/bibliography/pop_author_edit.php. Senayan Library Management System Bulian No fix yet Fix from $1,6002025-05-08 HIGH 7.2 CVE-2025-26200 SQL injection in SLIMS v.9.6.1 allows a remote attacker to escalate privileges via the month parameter in the visitor_report_day.php component. Senayan Library Management System No fix yet Fix from $1,9502025-02-24 MEDIUM 6.7 CVE-2025-22980 A SQL Injection vulnerability exists in Senayan Library Management System SLiMS 9 Bulian 9.6.1 via the tempLoanID parameter in the loan form on /admi… Senayan Library Management System Bulian No fix yet Fix from $1,6002025-01-22 HIGH 8.8 CVE-2023-48813 Senayan Library Management Systems (Slims) 9 Bulian v9.6.1 is vulnerable to SQL Injection via admin/modules/reporting/customs/fines_report.php. Senayan Library Management System Bulian No fix yet Fix from $1,9502023-12-01 HIGH 8.8 CVE-2023-48893 SLiMS (aka SENAYAN Library Management System) through 9.6.1 allows admin/modules/reporting/customs/staff_act.php SQL Injection via startDate or until… Senayan Library Management System Bulian No fix yet Fix from $1,9502023-12-01 HIGH 8.8 CVE-2023-45996 SQL injection vulnerability in Senayan Library Management Systems Slims v.9 and Bulian v.9.6.1 allows a remote attacker to obtain sensitive informati… Senayan Library Management System No fix yet Fix from $1,9502023-10-31 HIGH 8.8 CVE-2023-3744 Server-Side Request Forgery vulnerability in SLims version 9.6.0. This vulnerability could allow an authenticated attacker to send requests to intern… Senayan Library Management System Mitigation only Fix from $1,9502023-10-02 HIGH 8.8 CVE-2023-40970 Senayan Library Management Systems SLIMS 9 Bulian v 9.6.1 is vulnerable to SQL Injection via admin/modules/circulation/loan_rules.php. Senayan Library Management System No fix yet Fix from $1,9502023-09-01 MEDIUM 6.1 CVE-2023-40969 Senayan Library Management Systems SLIMS 9 Bulian v9.6.1 is vulnerable to Server Side Request Forgery (SSRF) via admin/modules/bibliography/pop_p2p.p… Senayan Library Management System No fix yet Fix from $1,6002023-09-01 HIGH 7.5 CVE-2023-29850 SENAYAN Library Management System (SLiMS) Bulian v9.5.2 does not strip exif data from uploaded images. This allows attackers to obtain information su… Senayan Library Management System No fix yet Fix from $1,9502023-04-14 HIGH 7.5 CVE-2022-45019 SLiMS 9 Bulian v9.5.0 was discovered to contain a SQL injection vulnerability via the keywords parameter. Senayan Library Management System No fix yet Fix from $1,9502022-12-05 HIGH 7.2 CVE-2022-43362 Senayan Library Management System v9.4.2 was discovered to contain a SQL injection vulnerability via the collType parameter at loan_by_class.php. Senayan Library Management System No fix yet Fix from $1,9502022-11-01 CRITICAL 9.8 CVE-2022-38292 SLiMS Senayan Library Management System v9.4.2 was discovered to contain multiple Server-Side Request Forgeries via the components /bibliography/marc… Senayan Library Management System No fix yet Fix from $2,3002022-09-12 MEDIUM 6.1 CVE-2022-38291 SLiMS Senayan Library Management System v9.4.2 was discovered to contain a cross-site scripting (XSS) vulnerability via the Search function. This vul… Senayan Library Management System No fix yet Fix from $1,6002022-09-12 HIGH 7.5 CVE-2021-45793 Slims9 Bulian 9.4.2 is affected by SQL injection in lib/comment.inc.php. User data can be obtained. Senayan Library Management System No fix yet Fix from $1,9502022-03-17 HIGH 7.5 CVE-2021-45794 Slims9 Bulian 9.4.2 is affected by SQL injection in /admin/modules/system/backup.php. User data can be obtained. Senayan Library Management System No fix yet Fix from $1,9502022-03-17 HIGH 8.8 CVE-2021-45791 Slims8 Akasia 8.3.1 is affected by SQL injection in /admin/modules/bibliography/index.php, /admin/modules/membership/member_type.php, /admin/modules/… Senayan Library Management System No fix yet Fix from $1,9502022-03-17 HIGH 8.8 CVE-2017-12584 There is no CSRF mitigation in SLiMS 8 Akasia through 8.3.1. Also, an entire user profile (including the password) can be updated without sending the… Senayan Library Management System after 8.3.1 Fix from $1,9502017-08-06 HIGH 8.8 CVE-2017-12585 SLiMS 8 Akasia through 8.3.1 has SQL injection in admin/AJAX_lookup_handler.php (tableName and tableFields parameters), admin/AJAX_check_id.php, and … Akasia No fix yet Fix from $1,9502017-08-06 MEDIUM 6.5 CVE-2017-12586 SLiMS 8 Akasia through 8.3.1 has an arbitrary file reading issue because of directory traversal in the url parameter to admin/help.php. It can be exp… Akasia No fix yet Fix from $1,6002017-08-06 MEDIUM 6.1 CVE-2017-7242 Multiple Cross-Site Scripting (XSS) were discovered in admin/modules components in SLiMS 7 Cendana through 2017-03-23: the keywords parameter to bibl… Slims7 Cendana after 2017-03-23 Fix from $1,6002017-03-23 MEDIUM 6.1 CVE-2017-7202 Multiple Cross-Site Scripting (XSS) were discovered in SLiMS 7 Cendana before 2017-03-16. The vulnerabilities exist due to insufficient filtration of… Slims7 Cendana after 62b8ee8b51be89fc65e0d59b01c3724737f9da20 Fix from $1,6002017-03-21