0.0

CVE-2025-52492 -

A vulnerability has been discovered in the firmware of Paxton Paxton10 before 4.6 SR6. The firmware file, rootfs.tar.gz, contains hard-coded credentials for the Twilio API. A remote attacker who obtains a copy of the firmware can extract these credentials. This could allow the attacker to gain unau…

πŸ“… Published: July 7, 2025, midnight πŸ”„ Last Modified: July 7, 2025, 4:15 p.m.

6.3

CVSS4.0

CVE-2025-7099 - BoyunCMS Installation install2.php deserialization

A vulnerability has been found in BoyunCMS up to 1.21 on PHP7 and classified as critical. Affected by this vulnerability is an unknown functionality of the file install/install2.php of the component Installation Handler. The manipulation of the argument db_host leads to deserialization. The attack …

πŸ“… Published: July 6, 2025, 11:32 p.m. πŸ”„ Last Modified: July 7, 2025, 4:15 p.m.

6.3

CVSS4.0

CVE-2025-7098 - Comodo Internet Security Premium File Name path traversal

A vulnerability, which was classified as critical, was found in Comodo Internet Security Premium 12.3.4.8162. Affected is an unknown function of the component File Name Handler. The manipulation of the argument name/folder leads to path traversal. It is possible to launch the attack remotely. The c…

πŸ“… Published: July 6, 2025, 11:02 p.m. πŸ”„ Last Modified: July 7, 2025, 4:15 p.m.

5

CVSS3.0

CVE-2025-3108 - Unsafe Deserialization in JsonPickleSerializer Enables Remote Code Execution in run-llama/llama_ind…

A critical deserialization vulnerability exists in the run-llama/llama_index library's JsonPickleSerializer component, affecting versions v0.12.27 through v0.12.40. This vulnerability allows remote code execution due to an insecure fallback to Python's pickle module. JsonPickleSerializer prioritize…

πŸ“… Published: July 6, 2025, 10:47 p.m. πŸ”„ Last Modified: July 7, 2025, 1:43 p.m.

9.2

CVSS4.0

CVE-2025-7097 - Comodo Internet Security Premium Manifest File cis_update_x64.xml os command injection

A vulnerability, which was classified as critical, has been found in Comodo Internet Security Premium 12.3.4.8162. This issue affects some unknown processing of the file cis_update_x64.xml of the component Manifest File Handler. The manipulation of the argument binary/params leads to os command inj…

πŸ“… Published: July 6, 2025, 10:32 p.m. πŸ”„ Last Modified: July 7, 2025, 4:15 p.m.

9.2

CVSS4.0

CVE-2025-7096 - Comodo Internet Security Premium Manifest File cis_update_x64.xml integrity check

A vulnerability classified as critical was found in Comodo Internet Security Premium 12.3.4.8162. This vulnerability affects unknown code of the file cis_update_x64.xml of the component Manifest File Handler. The manipulation leads to improper validation of integrity check value. The attack can be …

πŸ“… Published: July 6, 2025, 10:02 p.m. πŸ”„ Last Modified: July 7, 2025, 4:15 p.m.

6.3

CVSS4.0

CVE-2025-7095 - Comodo Internet Security Premium Update certificate validation

A vulnerability classified as critical has been found in Comodo Internet Security Premium 12.3.4.8162. This affects an unknown part of the component Update Handler. The manipulation leads to improper certificate validation. It is possible to initiate the attack remotely. The complexity of an attack…

πŸ“… Published: July 6, 2025, 9:32 p.m. πŸ”„ Last Modified: July 7, 2025, 4:15 p.m.

8.7

CVSS4.0

CVE-2025-7094 - Belkin F9K1122 webs formBSSetSitesurvey stack-based overflow

A vulnerability was found in Belkin F9K1122 1.00.33. It has been rated as critical. Affected by this issue is the function formBSSetSitesurvey of the file /goform/formBSSetSitesurvey of the component webs. The manipulation of the argument submit-url-ok leads to stack-based buffer overflow. The atta…

πŸ“… Published: July 6, 2025, 9:02 p.m. πŸ”„ Last Modified: July 7, 2025, 4:15 p.m.

8.7

CVSS4.0

CVE-2025-7093 - Belkin F9K1122 webs formSetLanguage stack-based overflow

A vulnerability was found in Belkin F9K1122 1.00.33. It has been declared as critical. Affected by this vulnerability is the function formSetLanguage of the file /goform/formSetLanguage of the component webs. The manipulation of the argument webpage leads to stack-based buffer overflow. The attack …

πŸ“… Published: July 6, 2025, 8:32 p.m. πŸ”„ Last Modified: July 7, 2025, 4:15 p.m.

8.7

CVSS4.0

CVE-2025-7092 - Belkin F9K1122 webs formWlanSetupWPS stack-based overflow

A vulnerability has been found in Belkin F9K1122 1.00.33 and classified as critical. This vulnerability affects the function formWlanSetupWPS of the file /goform/formWlanSetupWPS of the component webs. The manipulation of the argument wps_enrolee_pin/webpage leads to stack-based buffer overflow. Th…

πŸ“… Published: July 6, 2025, 8:02 p.m. πŸ”„ Last Modified: July 7, 2025, 4:15 p.m.
Total resulsts: 300706
Page 16 of 30,071
Β« previous page Β» next page
Filters