Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

WeGIA — Vulnerabilities & Security Advisories 181

All 181 CVE vulnerabilities found in WeGIA, with AI-generated Chinese analysis, references, and POCs.

This page aggregates Common Weakness Enumeration (CWE) and Common Vulnerabilities and Exposures (CVE) data specifically for the WeGIA product managed by its respective vendor. It serves as a comprehensive repository for security researchers and system administrators seeking to understand the threat landscape associated with this specific software environment. The content collected here spans from the initial release of the product through the most recent security advisories, ensuring a chronological view of all documented flaws. Visitors can utilize this resource to track the vendor’s public security advisories over time, gaining insight into how quickly and effectively the developer addresses emerging threats. Furthermore, users can delve into specific weakness classes to understand the underlying technical nature of the bugs, such as buffer overflows or logic errors, rather than just their symptoms. The page also allows for a deep dive into the product’s vulnerability history, enabling analysts to correlate security incidents with specific software versions or updates. By centralizing this information, the page facilitates better risk assessment and informed decision-making for maintenance teams. It provides a structured overview that helps distinguish between minor configuration issues and critical exploits affecting system integrity. This aggregation aims to provide transparency and clarity regarding the security posture of WeGIA without overwhelming the reader with raw, unorganized data points.

Vendor: nilsonLazarin

CVE IDTitleCVSSSeverityPublished
CVE-2025-53931 WeGIA vulnerable to Stored Cross-Site Scripting via endpoint `adicionar_raca.php` parameter `raca` CWE-79 5.4AIMediumAI2025-07-16
CVE-2025-53930 WeGIA vulnerable to Stored Cross-Site Scripting (XSS) via endpoint 'adicionar_especie.php' parameter 'especie' CWE-79 5.4AIMediumAI2025-07-16
CVE-2025-53929 WeGIA vulnerable to Stored Cross-Site Scripting (XSS) via endpoint `adicionar_cor.php` parameter `cor` CWE-79 5.4AIMediumAI2025-07-16
CVE-2025-53824 WeGIA ReflectedCross-Site Scripting (XSS) vulnerability in endpoint 'cadastro_pet.php' parameter 'msg' CWE-79 6.1AIMediumAI2025-07-14
CVE-2025-53823 WeGIA vulnerable to SQL Injection (Blind Time-Based) in `processa_deletar_socio.php` parameter `id_socio` CWE-89 9.8AICriticalAI2025-07-14
CVE-2025-53822 WeGIA vulnerable to Reflected Cross-Site Scripting in endpoint 'relatorio_geracao.php' parameter 'tipo_relatorio' CWE-79 6.5 Medium2025-07-14
CVE-2025-53821 WeGIA vulnerable to Open Redirect in endpoint 'control.php' parameter 'nextPage' CWE-601 4.7 Medium2025-07-14
CVE-2025-53820 WeGIA vulnerable to Cross-Site Scripting (XSS) Reflected via endpoint 'index.php' parameter 'erro' CWE-79 6.5 Medium2025-07-14
CVE-2025-53531 WeGIA allows Uncontrolled Resource Consumption via the fid parameter CWE-770 7.5AIHighAI2025-07-07
CVE-2025-53530 WeGIA allows Uncontrolled Resource Consumption via the errorstr parameter CWE-770 7.5AIHighAI2025-07-07
CVE-2025-53529 WeGIA allows SQL Injection in html/funcionario/profile_funcionario.php (id_funcionario parameter) CWE-89 9.8 Critical2025-07-07
CVE-2025-53527 WeGIA allows Time-Based Blind SQL Injection in the relatorio_geracao.php endpoint CWE-89 9.8AICriticalAI2025-07-07
CVE-2025-53526 WeGIA allows Stored XSS attacks in novo_memorando.php CWE-79 6.1AIMediumAI2025-07-07
CVE-2025-53525 WebGia allows Cross-Site Scripting (XSS) in profile_familiar.php via the id_dependente parameter CWE-79 6.1AIMediumAI2025-07-07
CVE-2025-53377 WebGia allows Cross-Site Scripting (XSS) in cadastro_dependente_pessoa_nova.php via the id_funcionario parameter CWE-79 6.1AIMediumAI2025-07-07
CVE-2025-53091 WeGIA has Unauthenticated Time-Based Blind SQL Injection in almox Parameter CWE-89 9.8AICriticalAI2025-06-27
CVE-2025-6699 LabRedesCefetRJ WeGIA Cadastro de Funcionário cadastro_funcionario.php cross site scripting CWE-79 3.5 Low2025-06-26
CVE-2025-6698 LabRedesCefetRJ WeGIA Adicionar tipo adicionar_tipoSaida.php cross site scripting CWE-79 3.5 Low2025-06-26
CVE-2025-6697 LabRedesCefetRJ WeGIA Adicionar tipo adicionar_tipoEntrada.php cross site scripting CWE-79 3.5 Low2025-06-26
CVE-2025-6696 LabRedesCefetRJ WeGIA Cadastro de Atendio Cadastro_Atendido.php cross site scripting CWE-79 3.5 Low2025-06-26
CVE-2025-6695 LabRedesCefetRJ WeGIA Additional Categoria adicionar_categoria.php cross site scripting CWE-79 3.5 Low2025-06-26
CVE-2025-6694 LabRedesCefetRJ WeGIA Adicionar Unidade adicionar_unidade.php cross site scripting CWE-79 3.5 Low2025-06-26
CVE-2025-52474 WeGIA SQL Injection Vulnerability in id Parameter on control.php Endpoint CWE-89 9.1AICriticalAI2025-06-19
CVE-2025-50201 WeGIA OS Command Injection in debug_info.php parameter 'branch' CWE-78 9.8 Critical2025-06-19
CVE-2025-46828 Unauthenticated SQL Injection on get_socios.php endpoint CWE-89 9.8AICriticalAI2025-05-07
CVE-2025-30367 WeGIA SQL Injection Vulnerability in nextPage Parameter on control.php Endpoint CWE-89 9.1AICriticalAI2025-03-27
CVE-2025-30366 WeGIA vulnerable to Stored XSS in personalizacao.php CWE-79 5.4AIMediumAI2025-03-27
CVE-2025-30365 SQL Injection in query_geracao_auto.php CWE-89 9.8AICriticalAI2025-03-27
CVE-2025-30364 WeGIA vulnerable to SQL Injection (Blind Time-Based) in remuneracao.php parameter id_funcionario CWE-89 9.8AICriticalAI2025-03-27
CVE-2025-30363 WeGIA vulnerable to Stored XSS in documentos_funcionario.php parameter dados_addInfo CWE-79 5.4AIMediumAI2025-03-27

All 181 known CVE vulnerabilities affecting WeGIA with full Chinese analysis, references, and POCs where available.