8.5

CVSS3.1

CVE-2025-23267 - nvidia-container-toolkit: NVIDIA Container Toolkit Link Following Vulnerability

NVIDIA Container Toolkit for all platforms contains a vulnerability in the update-ldcache hook, where an attacker could cause a link following by using a specially crafted container image. A successful exploit of this vulnerability might lead to data tampering and denial of service.

πŸ“… Published: July 17, 2025, 7:32 p.m. πŸ”„ Last Modified: July 17, 2025, 9:15 p.m.

6.9

CVSS4.0

CVE-2025-7752 - code-projects Online Appointment Booking System deletedoctor.php sql injection

A vulnerability was found in code-projects Online Appointment Booking System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/deletedoctor.php. The manipulation of the argument did leads to sql injection. The attack may be launched remotely. Th…

πŸ“… Published: July 17, 2025, 7:32 p.m. πŸ”„ Last Modified: July 18, 2025, 6:25 p.m.

3.5

CVSS3.1

CVE-2024-42209 - HCL Connections is vulnerable to an information disclosure vulnerability

HCL Connections is vulnerable to an information disclosure vulnerability that could allow a user to obtain sensitive information they are not entitled to, which is caused by improper handling of request data.

πŸ“… Published: July 17, 2025, 7:24 p.m. πŸ”„ Last Modified: July 17, 2025, 9:15 p.m.

8.4

CVSS4.0

CVE-2025-4657 -

A buffer overflow vulnerability was reported in the Lenovo Protection Driver, prior to version 5.1.1110.4231, used in Lenovo PC Manager, Lenovo Browser, and Lenovo App Store could allow a local attacker with elevated privileges to execute arbitrary code.

πŸ“… Published: July 17, 2025, 7:22 p.m. πŸ”„ Last Modified: July 17, 2025, 9:15 p.m.

8.4

CVSS4.0

CVE-2025-6249 -

An authentication bypass vulnerability was reported in FileZ client application that could allow a local attacker with elevated permissions access to application data.

πŸ“… Published: July 17, 2025, 7:20 p.m. πŸ”„ Last Modified: July 17, 2025, 9:15 p.m.

7.1

CVSS4.0

CVE-2025-6248 -

A cross-site scripting (XSS) vulnerability was reported in the Lenovo Browser that could allow an attacker to obtain sensitive information if a user visits a web page with specially crafted content.

πŸ“… Published: July 17, 2025, 7:19 p.m. πŸ”„ Last Modified: July 17, 2025, 9:15 p.m.

8.5

CVSS4.0

CVE-2025-6232 -

An improper validation vulnerability was reported in Lenovo Vantage that under certain conditions could allow a local attacker to execute code with elevated permissions by modifying specific registry locations.

πŸ“… Published: July 17, 2025, 7:19 p.m. πŸ”„ Last Modified: July 17, 2025, 9:15 p.m.

8.5

CVSS4.0

CVE-2025-6231 -

An improper validation vulnerability was reported in Lenovo Vantage that under certain conditions could allow a local attacker to execute code with elevated permissions by modifying an application configuration file.

πŸ“… Published: July 17, 2025, 7:19 p.m. πŸ”„ Last Modified: July 17, 2025, 9:15 p.m.

4.8

CVSS4.0

CVE-2025-6230 -

A SQL injection vulnerability was reported in Lenovo Vantage that could allow a local attacker to modify the local SQLite database and execute code with elevated permissions.

πŸ“… Published: July 17, 2025, 7:19 p.m. πŸ”„ Last Modified: July 17, 2025, 9:15 p.m.

5.1

CVSS4.0

CVE-2025-2818 -

A vulnerability was reported in version 1.0 of the Bluetooth Transmission Alliance protocol adopted by Motorola Smart Connect Android Application that could allow a nearby attacker within the Bluetooth interaction range to intercept files when transferred to a device not paired in Smart Connect.

πŸ“… Published: July 17, 2025, 7:17 p.m. πŸ”„ Last Modified: July 17, 2025, 9:15 p.m.
Total resulsts: 302519
Page 25 of 30,252
Β« previous page Β» next page
Filters