Vulnerabilidades em LabRedesCefetRJ

176 resultados
CVE-2025-22599MEDIUMWeGIA has a Cross-Site Scripting (XSS) Reflected endpoint `home.php` parameter `msg_c`EPSS 0.4%CVE-2025-53530HIGHWeGIA allows Uncontrolled Resource Consumption via the errorstr parameterEPSS 0.4%CVE-2026-33991HIGHWeGIA has SQL Injection in deletar_tag.phpEPSS 0.4%CVE-2025-53531HIGHWeGIA allows Uncontrolled Resource Consumption via the fid parameterEPSS 0.4%CVE-2026-35395HIGHWeGIA has a SQL Injection in DespachoDAO.php via id_memorando parameterEPSS 0.4%CVE-2025-62179HIGHWeGIA SQL Injection via 'cpf' param at endpoint `/html/funcionario/cadastro_funcionario_pessoa_existente.php`EPSS 0.4%CVE-2025-61605CRITICALWeGIA: SQL Injection (Blind Time-Based) Vulnerability in /pet/profile_pet.php EndpointEPSS 0.4%CVE-2025-61603CRITICALWeGIA: SQL Injection (Blind Time-Based) Vulnerability in API `descricao` ParameterEPSS 0.4%CVE-2026-31895HIGHWeGIA has a SQL Injection via Direct Query Interpolation in restaurar_produto.phpEPSS 0.4%CVE-2025-55168CRITICALWeGIA SQL Injection via id_fichamedica at endpoint `GET /html/saude/aplicar_medicamento.php`EPSS 0.4%CVE-2026-23723HIGHWeGIA has a Critical SQL Injection in Atendido_ocorrenciaControle via id_memorando parameterEPSS 0.4%CVE-2025-53946CRITICALWeGIA vulnerable to SQL Injection in endpoint profile_paciente.php parameter id_fichamedicaEPSS 0.4%CVE-2025-54079CRITICALWeGIA vulnerable to SQL Injection (Blind Time-Based) in endpoint 'Profile_Atendido.php' parameter 'idatendido'EPSS 0.4%CVE-2026-31896CRITICALWeGIA has a Time-Based Blind SQL Injection in remover_produto_ocultar.phpEPSS 0.4%CVE-2025-59939HIGHWeGIA vulnerable to SQL Injection into method `excluir` of the `ProdutoControle` class in the parameter `id_produto`.EPSS 0.3%CVE-2025-22613MEDIUMWeGIA Cross-Site Scripting (XSS) Stored endpoint 'informacao_adicional.php' parameter 'descricao'EPSS 0.3%CVE-2025-22598HIGHWeGIA has a Cross-Site Scripting (XSS) Stored endpoint 'cadastrarSocio.php' parameter 'nome'EPSS 0.3%CVE-2025-22597HIGHWeGIA has a Cross-Site Scripting (XSS) Stored endpoint 'CobrancaController.php' parameter 'local_recepcao'EPSS 0.3%CVE-2025-58453HIGHWeGIA vulnerable to Blind Time-Based SQL Injection in endpoint 'exibe_anexo.php' parameter 'id_anexo'EPSS 0.3%CVE-2025-58454HIGHWeGIA vulnerable to Blind Time-Based SQL Injection in endpoint 'listar_despachos.php' parameter 'id_memorando'EPSS 0.3%