9.8

CVSS3.1

CVE-2025-60854 -

A vulnerability has been found in D-Link R15 (AX1500) 1.20.01 and below. By manipulating the model name parameter during a password change request in the web administrator page, it is possible to trigger a command injection in httpd.

๐Ÿ“… Published: Dec. 2, 2025, midnight ๐Ÿ”„ Last Modified: Dec. 6, 2025, midnight

3.2

CVSS3.1

CVE-2025-59696 -

Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, allow a physically proximate attacker to modify or erase tamper events via the Chassis management board.

๐Ÿ“… Published: Dec. 2, 2025, midnight ๐Ÿ”„ Last Modified: Dec. 8, 2025, 7:31 p.m.

9.8

CVSS3.1

CVE-2025-65358 -

Edoc-doctor-appointment-system v1.0.1 was discovered to contain SQl injection vulnerability via the 'docid' parameter at /admin/appointment.php.

๐Ÿ“… Published: Dec. 2, 2025, midnight ๐Ÿ”„ Last Modified: Dec. 4, 2025, 4:48 p.m.

6.1

CVSS3.1

CVE-2025-65215 -

Sourcecodester Web-based Pharmacy Product Management System v1.0 is vulnerable to Cross Site Scripting (XSS) in /product_expiry/add-supplier.php via the Supplier Name field.

๐Ÿ“… Published: Dec. 2, 2025, midnight ๐Ÿ”„ Last Modified: Dec. 5, 2025, 6:59 p.m.

9.8

CVSS3.1

CVE-2025-65656 -

dcat-admin v2.2.3-beta and before is vulnerable to file inclusion in admin/src/Extend/VersionManager.php.

๐Ÿ“… Published: Dec. 2, 2025, midnight ๐Ÿ”„ Last Modified: Dec. 4, 2025, 6:07 p.m.

5.4

CVSS3.1

CVE-2025-64070 -

Sourcecodester Student Grades Management System v1.0 is vulnerable to Cross Site Scripting (XSS) in the Add New Subject Description field.

๐Ÿ“… Published: Dec. 2, 2025, midnight ๐Ÿ”„ Last Modified: Dec. 3, 2025, 8:13 p.m.

6.1

CVSS3.1

CVE-2025-63872 -

DeepSeek V3.2 has a Cross Site Scripting (XSS) vulnerability, which allows JavaScript execution through model-generated SVG content.

๐Ÿ“… Published: Dec. 2, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 14, 2026, 7:21 p.m.

7.8

CVSS3.1

CVE-2025-59704 -

Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, allow an attacker to gain access the the BIOS menu because is has no password.

๐Ÿ“… Published: Dec. 2, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 6, 2026, 9:15 p.m.

5.8

CVSS3.1

CVE-2025-59700 -

Entrust nShield Connect XC, nShield 5c, and nShield HSMi through 13.6.11, or 13.7, allow a physically proximate attacker with root access to modify the Recovery Partition (because of a lack of integrity protection).

๐Ÿ“… Published: Dec. 2, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 6, 2026, 9:15 p.m.

9.8

CVSS3.1

CVE-2025-60736 -

code-projects Online Medicine Guide 1.0 is vulnerable to SQL Injection in /login.php via the upass parameter.

๐Ÿ“… Published: Dec. 2, 2025, midnight ๐Ÿ”„ Last Modified: Dec. 5, 2025, 6:56 p.m.
Total resulsts: 349182
Page 2860 of 34,919
ยซ previous page ยป next page
Filters