10

CVSS3.1

CVE-2025-52694 - Execution of arbitrary SQL commands

Successful exploitation of the SQL injection vulnerability could allow an unauthenticated remote attacker to execute arbitrary SQL commands on the vulnerable service when it is exposed to the Internet.

πŸ“… Published: Jan. 12, 2026, 2:27 a.m. πŸ”„ Last Modified: Jan. 12, 2026, 3:16 p.m.

6.9

CVSS4.0

CVE-2026-0852 - code-projects Online Music Site AdminUpdateUser.php sql injection

A security flaw has been discovered in code-projects Online Music Site 1.0. The impacted element is an unknown function of the file /Administrator/PHP/AdminUpdateUser.php. The manipulation of the argument ID results in sql injection. The attack can be executed remotely. The exploit has been release…

πŸ“… Published: Jan. 12, 2026, 12:02 a.m. πŸ”„ Last Modified: Jan. 12, 2026, 12:02 a.m.

0.0

CVE-2025-46070 -

An issue in Automai BotManager v.25.2.0 allows a remote attacker to execute arbitrary code via the BotManager.exe component

πŸ“… Published: Jan. 12, 2026, midnight πŸ”„ Last Modified: Jan. 12, 2026, 4:31 p.m.

0.0

CVE-2025-63314 -

A static password reset token in the password reset function of DDSN Interactive Acora CMS v10.7.1 allows attackers to arbitrarily reset the user password and execute a full account takeover via a replay attack.

πŸ“… Published: Jan. 12, 2026, midnight πŸ”„ Last Modified: Jan. 12, 2026, 5:06 p.m.

0.0

CVE-2025-66939 -

Cross Site Scripting vulnerability in 66biolinks by AltumCode v.61.0.1 allows an attacker to execute arbitrary code via a crafted favicon file

πŸ“… Published: Jan. 12, 2026, midnight πŸ”„ Last Modified: Jan. 12, 2026, 4:16 p.m.

0.0

CVE-2025-65552 -

D3D Wi-Fi Home Security System ZX-G12 v2.1.1 is vulnerable to RF replay attacks on the 433 MHz sensor communication channel. The system does not implement rolling codes, message authentication, or anti-replay protection, allowing an attacker within RF range to record valid alarm/control frames and …

πŸ“… Published: Jan. 12, 2026, midnight πŸ”„ Last Modified: Jan. 12, 2026, 3:16 p.m.

0.0

CVE-2025-65553 -

D3D Wi-Fi Home Security System ZX-G12 v2.1.17 is susceptible to RF jamming on the 433 MHz alarm sensor channel. An attacker within RF range can transmit continuous interference to block sensor transmissions, resulting in missed alarms and loss of security monitoring. The device lacks jamming detect…

πŸ“… Published: Jan. 12, 2026, midnight πŸ”„ Last Modified: Jan. 12, 2026, 3:16 p.m.

0.0

CVE-2025-67813 -

Quest KACE Desktop Authority through 11.3.1 has Insecure Permissions on the Named Pipes used for inter-process communication

πŸ“… Published: Jan. 12, 2026, midnight πŸ”„ Last Modified: Jan. 12, 2026, 4:16 p.m.

0.0

CVE-2025-46067 -

An issue in Automai Director v.25.2.0 allows a remote attacker to escalate privileges and obtain sensitive information via a crafted js file

πŸ“… Published: Jan. 12, 2026, midnight πŸ”„ Last Modified: Jan. 12, 2026, 4:21 p.m.

0.0

CVE-2023-36331 -

Incorrect access control in the /member/orderList API of xmall v1.1 allows attackers to arbitrarily access other users' order details via manipulation of the query parameter userId.

πŸ“… Published: Jan. 12, 2026, midnight πŸ”„ Last Modified: Jan. 12, 2026, 7:47 p.m.
Total resulsts: 327160
Page 14 of 32,716
Β« previous page Β» next page
Filters