CVE-2025-53531
- EPSS 0.15%
- Veröffentlicht 07.07.2025 17:15:30
- Zuletzt bearbeitet 10.07.2025 20:49:40
WeGIA is a web manager for charitable institutions. The Wegia server has a vulnerability that allows excessively long HTTP GET requests to a specific URL. This issue arises from the lack of validation for the length of the fid parameter. Tests confir...
CVE-2025-53529
- EPSS 0.17%
- Veröffentlicht 07.07.2025 16:51:03
- Zuletzt bearbeitet 10.07.2025 21:16:36
WeGIA is a web manager for charitable institutions. An SQL Injection vulnerability was identified in the /html/funcionario/profile_funcionario.php endpoint. The id_funcionario parameter is not properly sanitized or validated before being used in a SQ...
CVE-2025-53527
- EPSS 0.05%
- Veröffentlicht 07.07.2025 16:47:04
- Zuletzt bearbeitet 10.07.2025 21:16:47
WeGIA is a web manager for charitable institutions. A Time-Based Blind SQL Injection vulnerability was discovered in the almox parameter of the /controle/relatorio_geracao.php endpoint. This issue allows attacker to inject arbitrary SQL queries, pote...
CVE-2025-53526
- EPSS 0.04%
- Veröffentlicht 07.07.2025 16:36:45
- Zuletzt bearbeitet 10.07.2025 21:17:00
WeGIA is a web manager for charitable institutions. An XSS Injection vulnerability was identified in novo_memorando.php. After the memo was submitted, the vulnerability was confirmed by accessing listar_memorandos_antigos.php. Upon loading this page,...
CVE-2025-53525
- EPSS 0.04%
- Veröffentlicht 07.07.2025 16:30:25
- Zuletzt bearbeitet 10.07.2025 21:17:53
WeGIA is a web manager for charitable institutions. A Reflected Cross-Site Scripting (XSS) vulnerability was identified in the profile_familiar.php endpoint of the WeGIA application. This vulnerability allows attackers to inject malicious scripts in ...
CVE-2025-53377
- EPSS 0.04%
- Veröffentlicht 07.07.2025 16:19:56
- Zuletzt bearbeitet 10.07.2025 14:56:26
WeGIA is a web manager for charitable institutions. A Reflected Cross-Site Scripting (XSS) vulnerability was identified in the cadastro_dependente_pessoa_nova.php endpoint of the WeGIA application. This vulnerability allows attackers to inject malici...
CVE-2025-53091
- EPSS 0.26%
- Veröffentlicht 27.06.2025 15:15:25
- Zuletzt bearbeitet 08.07.2025 14:48:01
WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions. A Time-Based Blind SQL Injection vulnerability was discovered in version 3.3.3 the almox parameter of the `/controle/getProdutosPorAlmox.php` end...
CVE-2025-6699
- EPSS 0.05%
- Veröffentlicht 26.06.2025 15:31:12
- Zuletzt bearbeitet 01.07.2025 15:42:08
A vulnerability classified as problematic has been found in LabRedesCefetRJ WeGIA 3.4.0. This affects an unknown part of the file /html/funcionario/cadastro_funcionario.php of the component Cadastro de Funcionário. The manipulation of the argument No...
CVE-2025-6698
- EPSS 0.05%
- Veröffentlicht 26.06.2025 15:15:25
- Zuletzt bearbeitet 01.07.2025 17:46:03
A vulnerability was found in LabRedesCefetRJ WeGIA 3.4.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /html/matPat/adicionar_tipoSaida.php of the component Adicionar tipo. The manipulation of the...
CVE-2025-6697
- EPSS 0.05%
- Veröffentlicht 26.06.2025 15:15:24
- Zuletzt bearbeitet 01.07.2025 17:57:54
A vulnerability was found in LabRedesCefetRJ WeGIA 3.4.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /html/matPat/adicionar_tipoEntrada.php of the component Adicionar tipo. The manipula...