CVE & Exploit Intelligence Database

Updated 2h ago

Search and track vulnerabilities with real-time exploit intelligence. Cross-reference CVEs against public exploits from ExploitDB, Metasploit, GitHub, and Nuclei — with CVSS and EPSS scoring, CISA KEV monitoring, and AI-powered exploit analysis.

337,123 CVEs tracked 53,219 with exploits 4,686 exploited in wild 1,539 CISA KEV 3,912 Nuclei templates 37,757 vendors 42,422 researchers
14 results Clear all
CVE-2024-12938 6.3 MEDIUM EPSS 0.00
Code-projects Simple Admin Panel - Injection
A vulnerability has been found in code-projects Simple Admin Panel 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file updateOrderStatus.php. The manipulation of the argument record leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
CWE-74 Dec 26, 2024
CVE-2024-12937 6.3 MEDIUM EPSS 0.00
Code-projects Simple Admin Panel - Injection
A vulnerability, which was classified as critical, was found in code-projects Simple Admin Panel 1.0. Affected is an unknown function of the file addVariationController.php. The manipulation of the argument qty leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
CWE-74 Dec 26, 2024
CVE-2024-12936 6.3 MEDIUM EPSS 0.00
Code-projects Simple Admin Panel - Injection
A vulnerability, which was classified as critical, has been found in code-projects Simple Admin Panel 1.0. This issue affects some unknown processing of the file catDeleteController.php. The manipulation of the argument record leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.
CWE-74 Dec 26, 2024
CVE-2024-12935 6.3 MEDIUM EPSS 0.00
Code-projects Simple Admin Panel - Injection
A vulnerability classified as critical was found in code-projects Simple Admin Panel 1.0. This vulnerability affects unknown code of the file editItemForm.php. The manipulation of the argument record leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.
CWE-74 Dec 26, 2024
CVE-2024-12934 6.3 MEDIUM EPSS 0.00
Code-projects Simple Admin Panel - Injection
A vulnerability classified as critical has been found in code-projects Simple Admin Panel 1.0. This affects an unknown part of the file updateItemController.php. The manipulation of the argument p_desk leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
CWE-74 Dec 26, 2024
CVE-2024-12933 3.5 LOW EPSS 0.00
Code-projects Simple Admin Panel - Code Injection
A vulnerability was found in code-projects Simple Admin Panel 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file updateItemController.php. The manipulation of the argument p_name/p_desc leads to cross site scripting. The attack may be launched remotely.
CWE-94 Dec 26, 2024
CVE-2024-12932 3.5 LOW EPSS 0.00
Code-projects Simple Admin Panel - Code Injection
A vulnerability was found in code-projects Simple Admin Panel 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file addSizeController.php. The manipulation of the argument size leads to cross site scripting. The attack can be launched remotely.
CWE-94 Dec 26, 2024
CVE-2024-12931 6.3 MEDIUM EPSS 0.00
Code-projects Simple Admin Panel - Injection
A vulnerability was found in code-projects Simple Admin Panel 1.0. It has been classified as critical. Affected is an unknown function of the file /addCatController.php. The manipulation of the argument size leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
CWE-74 Dec 26, 2024
CVE-2024-12930 3.5 LOW EPSS 0.00
Code-projects Simple Admin Panel - Code Injection
A vulnerability was found in code-projects Simple Admin Panel 1.0 and classified as problematic. This issue affects some unknown processing of the file addCatController.php. The manipulation of the argument c_name leads to cross site scripting. The attack may be initiated remotely.
CWE-94 Dec 26, 2024
CVE-2024-12928 6.3 MEDIUM EPSS 0.00
Code-projects Simple Admin Panel - Injection
A vulnerability, which was classified as critical, was found in code-projects Simple Admin Panel 1.0. This affects an unknown part. The manipulation of the argument c_name leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.
CWE-74 Dec 26, 2024
CVE-2024-25226 6.1 MEDIUM 1 Writeup EPSS 0.00
Simple Admin Panel App v1.0 - XSS
A cross-site scripting (XSS) vulnerability in Simple Admin Panel App v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Category Name parameter under the Add Category function.
CWE-79 Feb 14, 2024
CVE-2024-25225 5.4 MEDIUM 1 Writeup EPSS 0.00
Simple Admin Panel App v1.0 - XSS
A cross-site scripting (XSS) vulnerability in Simple Admin Panel App v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Category Name parameter under the Add Category function.
CWE-79 Feb 14, 2024
CVE-2024-25224 5.4 MEDIUM 1 Writeup EPSS 0.00
Simple Admin Panel App v1.0 - XSS
A cross-site scripting (XSS) vulnerability in Simple Admin Panel App v1.0 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Size Number parameter under the Add Size function.
CWE-79 Feb 14, 2024
CVE-2024-25223 9.8 CRITICAL 1 Writeup EPSS 0.00
Simple Admin Panel App v1.0 - SQL Injection
Simple Admin Panel App v1.0 was discovered to contain a SQL injection vulnerability via the orderID parameter at /adminView/viewEachOrder.php.
CWE-89 Feb 14, 2024