6.7

CVSS3.1

CVE-2025-38738 -

SupportAssist for Home PCs Installer exe version(s) 4.8.2.29006 and prior, contain(s) an Incorrect Privilege Assignment vulnerability in the Installer. A low privileged attacker with local access could potentially exploit this vulnerability, leading to elevation of privileges.

๐Ÿ“… Published: Aug. 14, 2025, 2:36 p.m. ๐Ÿ”„ Last Modified: Aug. 14, 2025, 2:36 p.m.

4.8

CVSS4.0

CVE-2025-8962 - code-projects Hostel Management System Login Form hostel_manage.exe stack-based overflow

A vulnerability was found in code-projects Hostel Management System 1.0. Affected by this vulnerability is an unknown functionality of the file hostel_manage.exe of the component Login Form. The manipulation of the argument uname leads to stack-based buffer overflow. Local access is required to appโ€ฆ

๐Ÿ“… Published: Aug. 14, 2025, 2:32 p.m. ๐Ÿ”„ Last Modified: Aug. 14, 2025, 2:43 p.m.

4.8

CVSS3.1

CVE-2025-38745 -

Dell OpenManage Enterprise, versions 3.10, 4.0, 4.1, and 4.2, contains an Insertion of Sensitive Information into Log File vulnerability in the Backup and Restore. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Information exposure.

๐Ÿ“… Published: Aug. 14, 2025, 2:29 p.m. ๐Ÿ”„ Last Modified: Aug. 14, 2025, 2:29 p.m.

5.5

CVSS3.1

CVE-2025-26484 -

Dell CloudLink, versions 8.0 through 8.1.1, contains an Improper Restriction of XML External Entity Reference vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Denial of service.

๐Ÿ“… Published: Aug. 14, 2025, 2:24 p.m. ๐Ÿ”„ Last Modified: Aug. 14, 2025, 2:24 p.m.

8.7

CVSS4.0

CVE-2025-9042 - Rockwell Automation FLEX 5000 I/O - Module Fault

A security issue exists due to improper handling of CIP Class 32โ€™s request when a module is inhibited on the 5094-IY8 device. It causes the module to enter a fault state with the Module LED flashing red. Upon un-inhibiting, the module returns a connection fault (Code 16#0010), and the module cannotโ€ฆ

๐Ÿ“… Published: Aug. 14, 2025, 2:23 p.m. ๐Ÿ”„ Last Modified: Aug. 14, 2025, 2:23 p.m.

8.7

CVSS4.0

CVE-2025-9041 - Rockwell Automation FLEX 5000 I/O - Module Fault

A security issue exists due to improper handling of CIP Class 32โ€™s request when a module is inhibited on the 5094-IF8 device. It causes the module to enter a fault state with the Module LED flashing red. Upon un-inhibiting, the module returns a connection fault (Code 16#0010), and the module cannotโ€ฆ

๐Ÿ“… Published: Aug. 14, 2025, 2:17 p.m. ๐Ÿ”„ Last Modified: Aug. 14, 2025, 2:17 p.m.

3.8

CVSS3.1

CVE-2025-36581 -

Dell PowerEdge Platform version(s) 14G AMD BIOS v1.25.0 and prior, contain(s) an Access of Memory Location After End of Buffer vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Information exposure.

๐Ÿ“… Published: Aug. 14, 2025, 2 p.m. ๐Ÿ”„ Last Modified: Aug. 14, 2025, 2 p.m.

8.5

CVSS4.0

CVE-2025-7973 - Rockwell Automation FactoryTalkยฎ ViewPoint Privilege Escalation Vulnerability

A security issue exists in FactoryTalk ViewPoint version 14.0 or below due to improper handling of MSI repair operations. During a repair, attackers can hijack the cscript.exe console window, which runs with SYSTEM privileges. This can be exploited to spawn an elevated command prompt, enabling fullโ€ฆ

๐Ÿ“… Published: Aug. 14, 2025, 1:52 p.m. ๐Ÿ”„ Last Modified: Aug. 14, 2025, 1:52 p.m.

8.8

CVSS4.0

CVE-2025-7773 - Rockwell Automation ArmorBlock 5000 I/O โ€“ Web Server Vulnerabilities

A security issue exists within the 5032 16pt Digital Configurable moduleโ€™s web server. The web serverโ€™s session number increments at an interval that correlates to the last two consecutive sign in session interval, making it predictable.

๐Ÿ“… Published: Aug. 14, 2025, 1:52 p.m. ๐Ÿ”„ Last Modified: Aug. 14, 2025, 1:52 p.m.

8.8

CVSS4.0

CVE-2025-7774 - Rockwell Automation ArmorBlock 5000 I/O โ€“ Web Server Vulnerabilities

A security issue exists within the 5032 16pt Digital Configurable moduleโ€™s web server. Intercepted session credentials can be used within a 3-minute timeout window, allowing unauthorized users to perform privileged actions.

๐Ÿ“… Published: Aug. 14, 2025, 1:39 p.m. ๐Ÿ”„ Last Modified: Aug. 14, 2025, 1:51 p.m.
Total resulsts: 305754
Page 21 of 30,576
ยซ previous page ยป next page
Filters