GabrielPintoSouza
61 exploits
Active since Dec 2024
WeGIA 3.2.0 - Missing Authorization for Password Change
CVSS 7.5
WeGIA < 3.2.8 - Unrestricted Upload of File with Dangerous Type via controla_xlsx.php Endpoint
CVSS 9.9
WeGIA < 3.2.6 - Stored Cross-Site Scripting via informacao_adicional.php descricao Parameter
CVSS 5.4
WeGIA < 3.2.6 - Stored Cross-Site Scripting via dependente_editarInfoPessoal.php Parameters
CVSS 5.4
WeGIA < 3.2.6 - Reflected Cross-Site Scripting via CPF Parameter in Cadastro_Atendido.php
CVSS 6.1
WeGIA < 3.2.6 - Stored Cross-Site Scripting via dependente_parentesco_adicionar.php descricao Parameter
CVSS 5.4
WeGIA < 3.2.7 - Reflected Cross-Site Scripting via socio Parameter
CVSS 6.1
WeGIA < 3.2.6 - Stored Cross-Site Scripting via Cargo Parameter in adicionar_cargo.php
CVSS 5.4
WeGIA < 3.2.6 - Reflected Cross-Site Scripting via msg_c Parameter
CVSS 6.1
WeGIA < 3.2.6 - Reflected Cross-Site Scripting via CPF Parameter
CVSS 6.1
WeGIA < 3.2.6 - Stored Cross-Site Scripting via adicionar_alergia.php nome Parameter
CVSS 5.4
WeGIA < 3.2.6 - Stored Cross-Site Scripting via escala Parameter in adicionar_escala.php
CVSS 5.4
WeGIA < 3.2.6 - Stored Cross-Site Scripting via adicionar_situacao.php situacao Parameter
CVSS 5.4
WeGIA < 3.2.6 - Reflected Cross-Site Scripting via msg_e Parameter
CVSS 6.1
WeGIA < 3.2.6 - Stored Cross-Site Scripting via tipo Parameter in adicionar_tipo_quadro_horario.php
CVSS 5.4
WeGIA < 3.2.7 - Reflected Cross-Site Scripting via msg_e Parameter
CVSS 5.4
WeGIA < 3.2.6 - Stored Cross-Site Scripting via control.php cargo Parameter
CVSS 5.4
WeGIA < 3.2.6 - Stored Cross-Site Scripting via remuneracao.php descricao Parameter
CVSS 5.4
WeGIA < 3.2.10 - SQL Injection via adicionar_especie.php Endpoint
CVSS 9.8
WeGIA < 3.2.10 - SQL Injection via adicionar_cor.php Endpoint
CVSS 9.8
WeGIA < 3.2.10 - SQL Injection via adicionar_raca.php Endpoint
CVSS 9.8
WeGIA <= 3.2.10 - Open Redirect via control.php nextPage Parameter
CVSS 6.1
WeGIA < 3.2.12 - Authenticated SQL Injection via salvar_cargo.php Endpoint
CVSS 8.8
WeGIA < 3.2.15 - Authenticated SQL Injection via adicionar_tipo_exame.php Endpoint
CVSS 8.8
WeGIA < 3.2.15 - OS Command Injection via importar_dump.php Endpoint
CVSS 9.8