CVE-2026-23724
- EPSS 0.03%
- Veröffentlicht 16.01.2026 19:37:06
- Zuletzt bearbeitet 30.01.2026 18:29:45
WeGIA is a web manager for charitable institutions. Prior to 3.6.2, a Stored Cross-Site Scripting (XSS) vulnerability was identified in the html/atendido/cadastro_ocorrencia.php endpoint of the WeGIA application. The application does not sanitize use...
CVE-2026-23722
- EPSS 0.11%
- Veröffentlicht 16.01.2026 19:29:53
- Zuletzt bearbeitet 30.01.2026 18:27:52
WeGIA is a Web Manager for Charitable Institutions. Prior to 3.6.2, a Reflected Cross-Site Scripting (XSS) vulnerability was discovered in the WeGIA system, specifically within the html/memorando/insere_despacho.php file. The application fails to pro...
CVE-2026-23723
- EPSS 0.02%
- Veröffentlicht 16.01.2026 19:27:26
- Zuletzt bearbeitet 30.01.2026 18:28:51
WeGIA is a web manager for charitable institutions. Prior to 3.6.2, an authenticated SQL Injection vulnerability was identified in the Atendido_ocorrenciaControle endpoint via the id_memorando parameter. This flaw allows for full database exfiltratio...
CVE-2025-67501
- EPSS 0.07%
- Veröffentlicht 09.12.2025 23:49:41
- Zuletzt bearbeitet 18.12.2025 20:12:16
WeGIA is an open source Web Manager for Institutions with a focus on Portuguese language users. Versions 3.5.4 and below contain an SQL Injection vulnerability in the /html/matPat/editar_categoria.php endpoint. The application fails to properly valid...
CVE-2025-67496
- EPSS 0.04%
- Veröffentlicht 09.12.2025 22:43:55
- Zuletzt bearbeitet 18.12.2025 20:08:59
WeGIA is an open source Web Manager for Institutions with a focus on Portuguese language users. Versions 3.5.4 and below contain a Stored Cross-Site Scripting (XSS) vulnerability in the /WeGIA/html/geral/configurar_senhas.php endpoint. The applicatio...
CVE-2025-62598
- EPSS 0.07%
- Veröffentlicht 21.10.2025 16:34:57
- Zuletzt bearbeitet 22.10.2025 14:19:55
WeGIA is an open source Web Manager for Institutions with a focus on Portuguese language users. Prior to version 3.5.1, a reflected cross-site scripting (XSS) vulnerability was identified in the editar_info_pessoal.php endpoint of the WeGIA applicati...
CVE-2025-62597
- EPSS 0.07%
- Veröffentlicht 21.10.2025 16:34:19
- Zuletzt bearbeitet 24.10.2025 15:43:55
WeGIA is an open source Web Manager for Institutions with a focus on Portuguese language users. Prior to version 3.5.1, a reflected cross-site scripting (XSS) vulnerability was identified in the editar_info_pessoal.php endpoint of the WeGIA applicati...
CVE-2025-62361
- EPSS 0.05%
- Veröffentlicht 13.10.2025 21:27:38
- Zuletzt bearbeitet 20.10.2025 15:38:20
WeGIA is an open source Web Manager for Institutions with a focus on Portuguese language users. Prior to 3.5.0, an Open Redirect vulnerability was identified in the control.php endpoint of the WeGIA application, specifically in the nextPage parameter...
CVE-2025-62360
- EPSS 0.05%
- Veröffentlicht 13.10.2025 21:24:48
- Zuletzt bearbeitet 20.10.2025 16:04:04
WeGIA is an open source Web Manager for Institutions with a focus on Portuguese language users.Prior to 3.5.1, a SQL Injection vulnerability was identified in the /html/funcionario/dependente_documento.php endpoint, specifically in the id_dependente ...
CVE-2025-62359
- EPSS 0.06%
- Veröffentlicht 13.10.2025 21:21:48
- Zuletzt bearbeitet 20.10.2025 16:05:26
WeGIA is an open source Web Manager for Institutions with a focus on Portuguese language users. Prior to 3.5.0, a Reflected Cross-Site Scripting (XSS) vulnerability was identified in the /pet/profile_pet.php?id_pet= endpoint of the WeGIA application....