5.8

CVSS3.1

CVE-2025-49493 -

Akamai CloudTest before 60 2025.06.02 (12988) allows file inclusion via XML External Entity (XXE) injection.

๐Ÿ“… Published: June 30, 2025, midnight ๐Ÿ”„ Last Modified: June 30, 2025, 8:23 p.m.

9.3

CVSS3.1

CVE-2025-32463 - sudo: LPE via chroot option

Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled directory is used with the --chroot option.

๐Ÿ“… Published: June 30, 2025, midnight ๐Ÿ”„ Last Modified: June 30, 2025, 9:15 p.m.

7.5

CVSS3.1

CVE-2024-53621 -

A buffer overflow in the formSetCfm() function of Tenda AC1206 1200M 11ac US_AC1206V1.0RTL_V15.03.06.23_multi_TD01 allows attackers to cause a Denial of Service (DoS) via a crafted POST request.

๐Ÿ“… Published: June 30, 2025, midnight ๐Ÿ”„ Last Modified: June 30, 2025, 8:15 p.m.

6.5

CVSS3.1

CVE-2023-47310 -

A misconfiguration in the default settings of MikroTik RouterOS 7 and fixed in v7.14 allows incoming IPv6 UDP traceroute packets.

๐Ÿ“… Published: June 30, 2025, midnight ๐Ÿ”„ Last Modified: June 30, 2025, 8:15 p.m.

5.8

CVSS3.1

CVE-2025-52491 -

Akamai CloudTest before 60 2025.06.09 (12989) allows SSRF.

๐Ÿ“… Published: June 30, 2025, midnight ๐Ÿ”„ Last Modified: June 30, 2025, 8:24 p.m.

9.8

CVSS3.1

CVE-2025-45931 -

An issue D-Link DIR-816-A2 DIR-816A2_FWv1.10CNB05_R1B011D88210 allows a remote attacker to execute arbitrary code via system() function in the bin/goahead file

๐Ÿ“… Published: June 30, 2025, midnight ๐Ÿ”„ Last Modified: June 30, 2025, 7:15 p.m.

7

CVSS3.1

CVE-2025-45143 -

string-math v1.2.2 was discovered to contain a Regex Denial of Service (ReDoS) which is exploited via a crafted input.

๐Ÿ“… Published: June 30, 2025, midnight ๐Ÿ”„ Last Modified: June 30, 2025, 7:15 p.m.

9.8

CVSS3.1

CVE-2025-26074 -

Orkes Conductor v3.21.11 allows remote attackers to execute arbitrary OS commands through unrestricted access to Java classes.

๐Ÿ“… Published: June 30, 2025, midnight ๐Ÿ”„ Last Modified: June 30, 2025, 7:15 p.m.

8.8

CVSS3.1

CVE-2025-46014 -

Several services in Honor Device Co., Ltd Honor PC Manager v16.0.0.118 was discovered to connect services to the named pipe iMateBookAssistant with default or overly permissive security attributes, leading to a privilege escalation.

๐Ÿ“… Published: June 30, 2025, midnight ๐Ÿ”„ Last Modified: June 30, 2025, 6:38 p.m.

5.3

CVSS3.1

CVE-2025-6920 - ai-inference-server: Authentication Bypass via Unprotected Inference Endpoint in API

No description is available for this CVE.

๐Ÿ“… Published: June 30, 2025, midnight ๐Ÿ”„ Last Modified: June 30, 2025, midnight
Total resulsts: 299963
Page 11 of 29,997
ยซ previous page ยป next page
Filters