7.1

CVSS3.1

CVE-2025-41747 - Reflected XSS vulnerability in pxc_vlanIntfCfg.php

An XSS vulnerability in pxc_vlanIntfCfg.php can be used by an unauthenticated remote attacker to trick an authenticated user to send a manipulated POST request to the device in order to change parameters available via web based management (WBM). The vulnerability does not provide access to system-l…

πŸ“… Published: Dec. 9, 2025, 8:09 a.m. πŸ”„ Last Modified: Dec. 19, 2025, 4:46 p.m.

7.1

CVSS3.1

CVE-2025-41748 - Reflected XSS vulnerability in pxc_Dot1xCfg.php

An XSS vulnerability in pxc_Dot1xCfg.php can be used by an unauthenticated remote attacker to trick an authenticated user to click on the link provided by the attacker in order to change parameters available via web based management (WBM). The vulnerability does not provide access to system-level r…

πŸ“… Published: Dec. 9, 2025, 8:09 a.m. πŸ”„ Last Modified: Dec. 19, 2025, 4:45 p.m.

7.1

CVSS3.1

CVE-2025-41749 - Reflected XSS vulnerability in port_util.php

An XSS vulnerability in port_util.php can be used by an unauthenticated remote attacker to trick an authenticated user to click on the link provided by the attacker in order to change parameters available via web based management (WBM). The vulnerability does not provide access to system-level reso…

πŸ“… Published: Dec. 9, 2025, 8:08 a.m. πŸ”„ Last Modified: Dec. 19, 2025, 4:46 p.m.

7.1

CVSS3.1

CVE-2025-41750 - Reflected XSS vulnerability in pxc_PortCfg.php

An XSS vulnerability in pxc_PortCfg.php can be used by an unauthenticated remote attacker to trick an authenticated user to click on the link provided by the attacker in order to change parameters available via web based management (WBM). The vulnerability does not provide access to system-level re…

πŸ“… Published: Dec. 9, 2025, 8:07 a.m. πŸ”„ Last Modified: Dec. 19, 2025, 4:45 p.m.

7.1

CVSS3.1

CVE-2025-41751 - Reflected XSS vulnerability in pxc_portCntr.php

An XSS vulnerability in pxc_portCntr.php can be used by an unauthenticated remote attacker to trick an authenticated user to click on the link provided by the attacker in order to change parameters available via web based management (WBM). The vulnerability does not provide access to system-level r…

πŸ“… Published: Dec. 9, 2025, 8:07 a.m. πŸ”„ Last Modified: Dec. 19, 2025, 4:45 p.m.

7.1

CVSS3.1

CVE-2025-41752 - Reflected XSS vulnerability in pxc_portSfp.php

An XSS vulnerability in pxc_portSfp.php can be used by an unauthenticated remote attacker to trick an authenticated user to click on the link provided by the attacker in order to change parameters available via web based management (WBM). The vulnerability does not provide access to system-level re…

πŸ“… Published: Dec. 9, 2025, 8:07 a.m. πŸ”„ Last Modified: Dec. 19, 2025, 4:45 p.m.

6.8

CVSS4.0

CVE-2025-14311 -

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in JMRI.This issue affects JMRI: before 5.13.3.

πŸ“… Published: Dec. 9, 2025, 7:56 a.m. πŸ”„ Last Modified: Dec. 9, 2025, 6:37 p.m.

9.3

CVSS4.0

CVE-2025-14310 -

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in rethinkdb.This issue affects rethinkdb: before 2.4.4.

πŸ“… Published: Dec. 9, 2025, 7:54 a.m. πŸ”„ Last Modified: Dec. 10, 2025, 9:33 p.m.

7.5

CVSS3.1

CVE-2025-14309 -

NULL Pointer Dereference vulnerability in ravynsoft ravynos.This issue affects ravynos: through 0.5.2.

πŸ“… Published: Dec. 9, 2025, 7:49 a.m. πŸ”„ Last Modified: Dec. 10, 2025, 9:33 p.m.

10

CVSS4.0

CVE-2025-14308 - Integer Overflow in Robocode's Buffer Write Method

An integer overflow vulnerability exists in the write method of the Buffer class in Robocode version 1.9.3.6. The method fails to properly validate the length of data being written, allowing attackers to cause an overflow, potentially leading to buffer overflows and arbitrary code execution. This v…

πŸ“… Published: Dec. 9, 2025, 7:44 a.m. πŸ”„ Last Modified: Jan. 5, 2026, 4:20 p.m.
Total resulsts: 343975
Page 2225 of 34,398
Β« previous page Β» next page
Filters