CVE-2026-23730
- EPSS 0.01%
- Veröffentlicht 16.01.2026 19:48:23
- Zuletzt bearbeitet 30.01.2026 18:30:19
WeGIA is a web manager for charitable institutions. Prior to 3.6.2, an Open Redirect vulnerability was identified in the /WeGIA/controle/control.php endpoint of the WeGIA application, specifically through the nextPage parameter when combined with met...
CVE-2026-23729
- EPSS 0.01%
- Veröffentlicht 16.01.2026 19:47:10
- Zuletzt bearbeitet 30.01.2026 18:30:09
WeGIA is a web manager for charitable institutions. Prior to 3.6.2, an Open Redirect vulnerability was identified in the /WeGIA/controle/control.php endpoint of the WeGIA application, specifically through the nextPage parameter when combined with met...
CVE-2026-23728
- EPSS 0.01%
- Veröffentlicht 16.01.2026 19:46:07
- Zuletzt bearbeitet 30.01.2026 18:29:58
WeGIA is a web manager for charitable institutions. Prior to 3.6.2, an Open Redirect vulnerability was identified in the /WeGIA/controle/control.php endpoint of the WeGIA application, specifically through the nextPage parameter when combined with met...
CVE-2026-23727
- EPSS 0.04%
- Veröffentlicht 16.01.2026 19:41:46
- Zuletzt bearbeitet 30.01.2026 18:29:51
WeGIA is a web manager for charitable institutions. Prior to 3.6.2, an Open Redirect vulnerability was identified in the /WeGIA/controle/control.php endpoint of the WeGIA application, specifically through the nextPage parameter when combined with met...
CVE-2026-23726
- EPSS 0.01%
- Veröffentlicht 16.01.2026 19:40:05
- Zuletzt bearbeitet 30.01.2026 18:29:14
WeGIA is a web manager for charitable institutions. Prior to 3.6.2, An Open Redirect vulnerability was identified in the /WeGIA/controle/control.php endpoint of the WeGIA application, specifically through the nextPage parameter when combined with met...
CVE-2026-23725
- EPSS 0.01%
- Veröffentlicht 16.01.2026 19:38:27
- Zuletzt bearbeitet 30.01.2026 18:29:24
WeGIA is a web manager for charitable institutions. Prior to 3.6.2, a Stored Cross-Site Scripting (XSS) vulnerability was identified in the html/pet/adotantes/cadastro_adotante.php and html/pet/adotantes/informacao_adotantes.php endpoint of the WeGIA...
CVE-2026-23724
- EPSS 0.04%
- Veröffentlicht 16.01.2026 19:37:06
- Zuletzt bearbeitet 30.01.2026 18:29:45
WeGIA is a web manager for charitable institutions. Prior to 3.6.2, a Stored Cross-Site Scripting (XSS) vulnerability was identified in the html/atendido/cadastro_ocorrencia.php endpoint of the WeGIA application. The application does not sanitize use...
CVE-2026-23722
- EPSS 0.12%
- Veröffentlicht 16.01.2026 19:29:53
- Zuletzt bearbeitet 30.01.2026 18:27:52
WeGIA is a Web Manager for Charitable Institutions. Prior to 3.6.2, a Reflected Cross-Site Scripting (XSS) vulnerability was discovered in the WeGIA system, specifically within the html/memorando/insere_despacho.php file. The application fails to pro...
CVE-2026-23723
- EPSS 0.02%
- Veröffentlicht 16.01.2026 19:27:26
- Zuletzt bearbeitet 30.01.2026 18:28:51
WeGIA is a web manager for charitable institutions. Prior to 3.6.2, an authenticated SQL Injection vulnerability was identified in the Atendido_ocorrenciaControle endpoint via the id_memorando parameter. This flaw allows for full database exfiltratio...
CVE-2025-67501
- EPSS 0.09%
- Veröffentlicht 09.12.2025 23:49:41
- Zuletzt bearbeitet 18.12.2025 20:12:16
WeGIA is an open source Web Manager for Institutions with a focus on Portuguese language users. Versions 3.5.4 and below contain an SQL Injection vulnerability in the /html/matPat/editar_categoria.php endpoint. The application fails to properly valid...