7.7

CVSS3.1

CVE-2025-52970 -

A improper handling of parameters in Fortinet FortiWeb versions 7.6.3 and below, versions 7.4.7 and below, versions 7.2.10 and below, and 7.0.10 and below may allow an unauthenticated remote attacker with non-public information pertaining to the device and targeted user to gain admin privileges on …

πŸ“… Published: Aug. 12, 2025, 6:59 p.m. πŸ”„ Last Modified: Aug. 13, 2025, 5:33 p.m.

6.8

CVSS3.1

CVE-2025-53744 -

An incorrect privilege assignment vulnerability [CWE-266] in FortiOS Security Fabric version 7.6.0 through 7.6.2, 7.4.0 through 7.4.7, 7.2 all versions, 7.0 all versions, 6.4 all versions, may allow a remote authenticated attacker with high privileges to escalate their privileges to super-admin via…

πŸ“… Published: Aug. 12, 2025, 6:59 p.m. πŸ”„ Last Modified: Aug. 13, 2025, 5:33 p.m.

6.6

CVSS3.1

CVE-2025-49813 -

An improper neutralization of special elements used in an OS Command ("OS Command Injection") vulnerability [CWE-78] in Fortinet FortiADC version 7.2.0 and before 7.1.1 allows a remote and authenticated attacker with low privilege to execute unauthorized code via specifically crafted HTTP parameter…

πŸ“… Published: Aug. 12, 2025, 6:59 p.m. πŸ”„ Last Modified: Aug. 13, 2025, 5:33 p.m.

6.3

CVSS3.1

CVE-2025-32766 -

A stack-based buffer overflow vulnerability [CWE-121] in Fortinet FortiWeb CLI version 7.6.0 through 7.6.3 and before 7.4.8 allows a privileged attacker to execute arbitrary code or commands via crafted CLI commands

πŸ“… Published: Aug. 12, 2025, 6:59 p.m. πŸ”„ Last Modified: Aug. 13, 2025, 5:33 p.m.

9.8

CVSS3.1

CVE-2025-25256 -

An improper neutralization of special elements used in an OS command ('OS Command Injection') vulnerability [CWE-78] in Fortinet FortiSIEM version 7.3.0 through 7.3.1, 7.2.0 through 7.2.5, 7.1.0 through 7.1.7, 7.0.0 through 7.0.3 and before 6.7.9 allows an unauthenticated attacker to execute unauth…

πŸ“… Published: Aug. 12, 2025, 6:59 p.m. πŸ”„ Last Modified: Aug. 13, 2025, 8:23 p.m.

4.2

CVSS3.1

CVE-2024-40588 -

Multiple relative path traversal vulnerabilities [CWE-23] in Fortinet FortiMail version 7.6.0 through 7.6.1 and before 7.4.3, FortiVoice version 7.0.0 through 7.0.5 and before 7.4.9, FortiRecorder version 7.2.0 through 7.2.1 and before 7.0.4, FortiCamera & FortiNDR version 7.6.0 and before 7.4.6 m…

πŸ“… Published: Aug. 12, 2025, 6:59 p.m. πŸ”„ Last Modified: Aug. 13, 2025, 5:33 p.m.

9.4

CVSS4.0

CVE-2025-55168 - WeGIA SQL Injection via id_fichamedica at endpoint `GET /html/saude/aplicar_medicamento.php`

WeGIA is an open source web manager with a focus on the Portuguese language and charitable institutions. Prior to version 3.4.8, a SQL Injection vulnerability was identified in the /html/saude/aplicar_medicamento.php endpoint, specifically in the id_fichamedica parameter. This vulnerability allows …

πŸ“… Published: Aug. 12, 2025, 6:56 p.m. πŸ”„ Last Modified: Aug. 13, 2025, 5:33 p.m.

5.1

CVSS4.0

CVE-2025-43734 -

A reflected cross-site scripting (XSS) vulnerability in the Liferay Portal 7.4.0 through 7.4.3.132, and Liferay DXP 2025.Q1.0 through 2025.Q1.10, 2024.Q4.0 through 2024.Q4.7, 2024.Q3.1 through 2024.Q3.13, 2024.Q2.1 through 2024.Q2.13, 2024.Q1.1 through 2024.Q1.16 and 7.4 GA through update 92 allows…

πŸ“… Published: Aug. 12, 2025, 6:51 p.m. πŸ”„ Last Modified: Aug. 13, 2025, 5:33 p.m.

5.9

CVSS3.1

CVE-2025-36124 - IBM WebSphere Application Server Liberty bypass security

IBM WebSphere Application Server Liberty 17.0.0.3 through 25.0.0.8 could allow a remote attacker to bypass security restrictions caused by a failure to honor JMS messaging configuration

πŸ“… Published: Aug. 12, 2025, 6:45 p.m. πŸ”„ Last Modified: Aug. 13, 2025, 5:33 p.m.

7.5

CVSS3.1

CVE-2025-49556 - Adobe Commerce | Incorrect Authorization (CWE-863)

Adobe Commerce versions 2.4.9-alpha1, 2.4.8-p1, 2.4.7-p6, 2.4.6-p11, 2.4.5-p13, 2.4.4-p14 and earlier are affected by an Incorrect Authorization vulnerability that could result in a security feature bypass. An attacker could leverage this vulnerability to bypass security measures and gain unauthori…

πŸ“… Published: Aug. 12, 2025, 5:55 p.m. πŸ”„ Last Modified: Aug. 13, 2025, 8:14 p.m.
Total resulsts: 305322
Page 20 of 30,533
Β« previous page Β» next page
Filters