63 vulnerabilidades · Database Orden: CVSS EPSS Año ID
CVE-2026-7783
Perfex CRM Web Database
5.3
MEDIUM
EPSS
0.0%
2026 CWE-89 1 PoC

A flaw has been found in CodeCanyon Perfex CRM up to 3.4.1. This vulnerability affects the function AbstractKanban::applySortQuery of the file application/services/AbstractKanban.php of the component Admin Kanban Endpoint. This manipulation of the argument this causes sql injection. It is possible to initiate the attack remotely. The exploit has been published and may be used.

CVE-2026-6007
Construction Management System Web Database
5.3
MEDIUM
EPSS
0.0%
2026 CWE-89 1 PoC

A vulnerability was found in itsourcecode Construction Management System 1.0. This affects an unknown function of the file /del.php. The manipulation of the argument equipname results in sql injection. The attack can be launched remotely. The exploit has been made public and could be used.

CVE-2026-2179
Hospital Management System Web Database
5.1
MEDIUM
EPSS
0.1%
2026 CWE-89 1 PoC

A vulnerability was determined in PHPGurukul Hospital Management System 4.0. This impacts an unknown function of the file /admin/manage-users.php. This manipulation of the argument ID causes sql injection. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized.