7.8

CVSS3.1

CVE-2025-54276 - Substance3D - Modeler | Out-of-bounds Read (CWE-125)

Substance3D - Modeler versions 1.22.3 and earlier are affected by an out-of-bounds read vulnerability when parsing a crafted file, which could result in a read past the end of an allocated memory structure. An attacker could leverage this vulnerability to execute code in the context of the current …

πŸ“… Published: Oct. 14, 2025, 7:13 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 4:57 p.m.

7.6

CVSS3.1

CVE-2025-33182 -

NVIDIA Jetson Linux contains a vulnerability in UEFI, where improper authentication may allow a privileged user to cause corruption of the Linux Device Tree. A successful exploitation of this vulnerability might lead to data tampering, denial of service.

πŸ“… Published: Oct. 14, 2025, 7:09 p.m. πŸ”„ Last Modified: Oct. 21, 2025, 9:41 a.m.

7.8

CVSS3.1

CVE-2025-54274 - Substance3D - Viewer | Stack-based Buffer Overflow (CWE-121)

Substance3D - Viewer versions 0.25.2 and earlier are affected by a Stack-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

πŸ“… Published: Oct. 14, 2025, 7:07 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 4:57 p.m.

7.8

CVSS3.1

CVE-2025-54273 - Substance3D - Viewer | Out-of-bounds Write (CWE-787)

Substance3D - Viewer versions 0.25.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

πŸ“… Published: Oct. 14, 2025, 7:07 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 4:58 p.m.

5.5

CVSS3.1

CVE-2025-54275 - Substance3D - Viewer | Out-of-bounds Write (CWE-787)

Substance3D - Viewer versions 0.25.2 and earlier are affected by an out-of-bounds write vulnerability that could lead to application denial-of-service. An attacker could leverage this vulnerability to crash the application or make it unavailable. Exploitation of this issue requires user interaction…

πŸ“… Published: Oct. 14, 2025, 7:07 p.m. πŸ”„ Last Modified: Oct. 14, 2025, 8:21 p.m.

7.8

CVSS3.1

CVE-2025-54280 - Substance3D - Viewer | Out-of-bounds Write (CWE-787)

Substance3D - Viewer versions 0.25.2 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.

πŸ“… Published: Oct. 14, 2025, 7:07 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 4:58 p.m.

8.4

CVSS3.1

CVE-2025-23356 -

NVIDIA Isaac Lab contains a vulnerability in SB3 configuration parsing. A successful exploit of this vulnerability might lead to code execution, denial of service, escalation of privileges, information disclosure, or data tampering.

πŸ“… Published: Oct. 14, 2025, 5:39 p.m. πŸ”„ Last Modified: Oct. 21, 2025, 9:41 a.m.

6.9

CVSS4.0

CVE-2025-11736 - itsourcecode Online Examination System index.php sql injection

A flaw has been found in itsourcecode Online Examination System 1.0. Affected by this issue is some unknown functionality of the file /index.php. This manipulation of the argument Username causes sql injection. It is possible to initiate the attack remotely. The exploit has been published and may b…

πŸ“… Published: Oct. 14, 2025, 5:32 p.m. πŸ”„ Last Modified: Oct. 21, 2025, 9:41 a.m.

7.7

CVSS3.1

CVE-2025-8459 - A user with low privileges can inject XSS in the Monitoring Recurrent downtimes page

Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Centreon Infra Monitoring (Monitoring recurrent downtime scheduler modules) allows Stored XSS.This issue affects Infra Monitoring: from 24.10.0 before 24.10.13, from 24.04.0 before 24.04.18,…

πŸ“… Published: Oct. 14, 2025, 5:11 p.m. πŸ”„ Last Modified: Oct. 22, 2025, 2:09 p.m.

4.9

CVSS3.1

CVE-2025-37145 - Authenticated Arbitrary File Download Vulnerabilities in a Low-Level Interface Library Affecting AO…

Arbitrary file download vulnerabilities exist in a low-level interface library in AOS-10 GW and AOS-8 Controller/Mobility Conductor operating systems. Successful exploitation could allow an authenticated malicious actor to download arbitrary files through carefully constructed exploits.

πŸ“… Published: Oct. 14, 2025, 5:02 p.m. πŸ”„ Last Modified: Nov. 12, 2025, 5:37 p.m.
Total resulsts: 343168
Page 2821 of 34,317
Β« previous page Β» next page
Filters