0.0

CVE-2025-29032 -

Tenda AC9 v15.03.05.19(6318) was discovered to contain a buffer overflow via the formWifiWpsOOB function.

๐Ÿ“… Published: March 14, 2025, midnight ๐Ÿ”„ Last Modified: March 14, 2025, 2:15 p.m.

0.0

CVE-2025-29031 -

Tenda AC6 v15.03.05.16 was discovered to contain a buffer overflow via the fromAddressNat function.

๐Ÿ“… Published: March 14, 2025, midnight ๐Ÿ”„ Last Modified: March 14, 2025, 2:15 p.m.

0.0

CVE-2025-29030 -

Tenda AC6 v15.03.05.16 was discovered to contain a buffer overflow via the formWifiWpsOOB function.

๐Ÿ“… Published: March 14, 2025, midnight ๐Ÿ”„ Last Modified: March 14, 2025, 2:15 p.m.

0.0

CVE-2025-29029 -

Tenda AC6 v15.03.05.16 was discovered to contain a buffer overflow via the formSetSpeedWan function.

๐Ÿ“… Published: March 14, 2025, midnight ๐Ÿ”„ Last Modified: March 14, 2025, 2:15 p.m.

0.0

CVE-2025-30022 -

CM Soluces Informatica Ltda Auto Atendimento 1.x.x was discovered to contain a SQL injection via the DATANASC parameter.

๐Ÿ“… Published: March 14, 2025, midnight ๐Ÿ”„ Last Modified: March 14, 2025, 3:15 a.m.

0.0

CVE-2025-26163 -

CM Soluces Informatica Ltda Auto Atendimento 1.x.x was discovered to contain a SQL injection via the CPF parameter.

๐Ÿ“… Published: March 14, 2025, midnight ๐Ÿ”„ Last Modified: March 14, 2025, 3:15 a.m.

7.8

CVSS3.1

CVE-2025-24855 - libxslt: Use-After-Free in libxslt numbers.c

numbers.c in libxslt before 1.1.43 has a use-after-free because, in nested XPath evaluations, an XPath context node can be modified but never restored. This is related to xsltNumberFormatGetValue, xsltEvalXPathPredicate, xsltEvalXPathStringNs, and xsltComputeSortResultInternal.

๐Ÿ“… Published: March 14, 2025, midnight ๐Ÿ”„ Last Modified: March 14, 2025, 7:01 p.m.

3.3

CVSS3.1

CVE-2025-27496 - Snowflake JDBC Driver client-side encryption key in DEBUG logs

Snowflake, a platform for using artificial intelligence in the context of cloud computing, has a vulnerability in the Snowflake JDBC driver ("Driver") in versions 3.0.13 through 3.23.0 of the driver. When the logging level was set to DEBUG, the Driver would log locally the client-side encryption maโ€ฆ

๐Ÿ“… Published: March 13, 2025, 7:01 p.m. ๐Ÿ”„ Last Modified: March 13, 2025, 7:51 p.m.

8.5

CVSS4.0

CVE-2025-2229 - Philips Intellispace Cardiovascular (ISCV) Use of Weak Credentials

A token is created using the username, current date/time, and a fixed AES-128 encryption key, which is the same across all installations.

๐Ÿ“… Published: March 13, 2025, 6:17 p.m. ๐Ÿ”„ Last Modified: March 13, 2025, 7:30 p.m.

8.5

CVSS4.0

CVE-2025-2230 - Philips Intellispace Cardiovascular (ISCV) Improper Authentication

A flaw exists in the Windows login flow where an AuthContext token can be exploited for replay attacks and authentication bypass.

๐Ÿ“… Published: March 13, 2025, 6:14 p.m. ๐Ÿ”„ Last Modified: March 13, 2025, 7:34 p.m.
Total resulsts: 285323
Page 11 of 28,533
ยซ previous page ยป next page
Filters