5.1

CVSS4.0

CVE-2026-3486 - itsourcecode College Management System student-fee.php sql injection

A vulnerability has been found in itsourcecode College Management System 1.0. This vulnerability affects unknown code of the file /admin/student-fee.php. Such manipulation of the argument roll_no leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to…

πŸ“… Published: March 3, 2026, 9:02 p.m. πŸ”„ Last Modified: April 16, 2026, 2 p.m.

9.3

CVSS4.0

CVE-2026-3485 - D-Link DIR-868L SSDP Service sub_1BF84 os command injection

A flaw has been found in D-Link DIR-868L 110b03. This affects the function sub_1BF84 of the component SSDP Service. This manipulation of the argument ST causes os command injection. It is possible to initiate the attack remotely. The exploit has been published and may be used. This vulnerability on…

πŸ“… Published: March 3, 2026, 9:02 p.m. πŸ”„ Last Modified: April 16, 2026, 2 p.m.

7.3

CVSS3.1

CVE-2026-25906 - Improper Link Resolution in Dell Optimizer Enables Local Privilege Escalation

Dell Optimizer, versions prior to 6.3.1, contain an Improper Link Resolution Before File Access ('Link Following') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of Privileges.

πŸ“… Published: March 3, 2026, 8:55 p.m. πŸ”„ Last Modified: April 16, 2026, 2 p.m.

6.3

CVSS3.1

CVE-2025-13686 - DataStage on Cloud Pak for Data is vulnerable to arbitrary code injection due to runtime environment

IBM DataStage on Cloud Pak for Data 5.1.2 through 5.3.0 could allow an authenticated user to execute arbitrary commands with normal user privileges on the system due to improper validation of user supplied input through the job subroutine component.

πŸ“… Published: March 3, 2026, 8:51 p.m. πŸ”„ Last Modified: March 4, 2026, 2:53 p.m.

6.3

CVSS3.1

CVE-2025-13687 - DataStage on Cloud Pak for Data is vulnerable to arbitrary code injection due to runtime environment

IBM DataStage on Cloud Pak for Data 5.1.2 through 5.3.0 could allow an authenticated user to execute arbitrary commands with normal user privileges on the system due to improper validation of user supplied input through the user-defined function component.

πŸ“… Published: March 3, 2026, 8:45 p.m. πŸ”„ Last Modified: March 4, 2026, 2:53 p.m.

6.3

CVSS3.1

CVE-2025-13688 - DataStage on Cloud Pak for Data is vulnerable to arbitrary code injection due to runtime environment

IBM DataStage on Cloud Pak for Data 5.1.2 through 5.3.0 could allow an authenticated user to execute arbitrary commands with normal user privileges on the system due to improper validation of user supplied input through the wrapped command component.

πŸ“… Published: March 3, 2026, 8:44 p.m. πŸ”„ Last Modified: March 4, 2026, 2:53 p.m.

8.8

CVSS3.1

CVE-2026-24502 - Local Privilege Escalation via Uncontrolled Search Path Element in Dell Commandβ€―|β€―Intel vPro Out of…

Dell Command | Intel vPro Out of Band, versions prior to 4.7.0, contain an Uncontrolled Search Path Element vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.

πŸ“… Published: March 3, 2026, 8:43 p.m. πŸ”„ Last Modified: April 16, 2026, 2 p.m.

5.9

CVSS3.1

CVE-2025-14456 - IBM MQ Appliance uses weaker than expected cryptographic algorithms

IBM MQ Appliance 9.4 CD through 9.4.4.0 to 9.4.4.1

πŸ“… Published: March 3, 2026, 8:42 p.m. πŸ”„ Last Modified: March 5, 2026, 9:09 p.m.

5.1

CVSS3.1

CVE-2025-14480 - IBM Aspera faspio Gateway 1.3.7 has addressed a vulnerability affected by weak cryptographic algori…

IBM Aspera faspio Gateway 1.3.6 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information

πŸ“… Published: March 3, 2026, 8:41 p.m. πŸ”„ Last Modified: March 5, 2026, 9:27 p.m.

7.1

CVSS3.1

CVE-2026-1567 - IBM InfoSphere Information Server is affected by an XML external entity injection (XXE) vulnerabili…

IBM InfoSphere Information Server 11.7.0.0 through 11.7.1.6 An XML External Entity (XXE) vulnerability in IBM InfoSphere Information Server could allow attackers to retrieve sensitive information from the server.

πŸ“… Published: March 3, 2026, 8:40 p.m. πŸ”„ Last Modified: April 16, 2026, 2 p.m.
Total resulsts: 349182
Page 1359 of 34,919
Β« previous page Β» next page
Filters