6.7
CVE-2025-38738 -
SupportAssist for Home PCs Installer exe version(s) 4.8.2.29006 and prior, contain(s) an Incorrect Privilege Assignment vulnerability in the Installer. A low privileged attacker with local access could potentially exploit this vulnerability, leading to elevation of privileges.
4.8
CVE-2025-8962 - code-projects Hostel Management System Login Form hostel_manage.exe stack-based overflow
A vulnerability was found in code-projects Hostel Management System 1.0. Affected by this vulnerability is an unknown functionality of the file hostel_manage.exe of the component Login Form. The manipulation of the argument uname leads to stack-based buffer overflow. Local access is required to appโฆ
4.8
CVE-2025-38745 -
Dell OpenManage Enterprise, versions 3.10, 4.0, 4.1, and 4.2, contains an Insertion of Sensitive Information into Log File vulnerability in the Backup and Restore. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information exposure.
5.5
CVE-2025-26484 -
Dell CloudLink, versions 8.0 through 8.1.1, contains an Improper Restriction of XML External Entity Reference vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Denial of service.
8.7
CVE-2025-9042 - Rockwell Automation FLEX 5000 I/O - Module Fault
A security issue exists due to improper handling of CIP Class 32โs request when a module is inhibited on the 5094-IY8 device. It causes the module to enter a fault state with the Module LED flashing red. Upon un-inhibiting, the module returns a connection fault (Code 16#0010), and the module cannotโฆ
8.7
CVE-2025-9041 - Rockwell Automation FLEX 5000 I/O - Module Fault
A security issue exists due to improper handling of CIP Class 32โs request when a module is inhibited on the 5094-IF8 device. It causes the module to enter a fault state with the Module LED flashing red. Upon un-inhibiting, the module returns a connection fault (Code 16#0010), and the module cannotโฆ
3.8
CVE-2025-36581 -
Dell PowerEdge Platform version(s) 14G AMD BIOS v1.25.0 and prior, contain(s) an Access of Memory Location After End of Buffer vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information exposure.
8.5
CVE-2025-7973 - Rockwell Automation FactoryTalkยฎ ViewPoint Privilege Escalation Vulnerability
A security issue exists in FactoryTalk ViewPoint version 14.0 or below due to improper handling of MSI repair operations. During a repair, attackers can hijack the cscript.exe console window, which runs with SYSTEM privileges. This can be exploited to spawn an elevated command prompt, enabling fullโฆ
8.8
CVE-2025-7773 - Rockwell Automation ArmorBlock 5000 I/O โ Web Server Vulnerabilities
A security issue exists within the 5032 16pt Digital Configurable moduleโs web server. The web serverโs session number increments at an interval that correlates to the last two consecutive sign in session interval, making it predictable.
8.8
CVE-2025-7774 - Rockwell Automation ArmorBlock 5000 I/O โ Web Server Vulnerabilities
A security issue exists within the 5032 16pt Digital Configurable moduleโs web server. Intercepted session credentials can be used within a 3-minute timeout window, allowing unauthorized users to perform privileged actions.