8.5

CVSS3.1

CVE-2025-20148 - Cisco Secure Firewall Management Center HTML Injection Vulnerability

A vulnerability in the web-based management interface of Cisco Secure Firewall Management Center (FMC) Software could allow an authenticated, remote attacker to inject arbitrary HTML content into a device-generated document. This vulnerability is due to improper validation of user-supplied data.…

📅 Published: Aug. 14, 2025, 4:28 p.m. 🔄 Last Modified: Aug. 14, 2025, 4:28 p.m.

8.6

CVSS3.1

CVE-2025-20136 - Cisco Adaptive Security Appliance and Firepower Threat Defense Software Network Address Translation…

A vulnerability in the function that performs IPv4 and IPv6 Network Address Translation (NAT) DNS inspection for Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the devi…

📅 Published: Aug. 14, 2025, 4:28 p.m. 🔄 Last Modified: Aug. 14, 2025, 4:28 p.m.

4.3

CVSS3.1

CVE-2025-20135 - Cisco Adaptive Security Appliance and Firepower Threat Defense Software DHCP Denial of Service Vuln…

A vulnerability in the DHCP client functionality of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, adjacent attacker to exhaust available memory. This vulnerability is due to improper valida…

📅 Published: Aug. 14, 2025, 4:28 p.m. 🔄 Last Modified: Aug. 14, 2025, 4:28 p.m.

7.7

CVSS3.1

CVE-2025-20127 - Cisco Adaptive Security Appliance Software and Firepower Threat Defense Software for Firepower 3100…

A vulnerability in the TLS 1.3 implementation for a specific cipher for Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software for Cisco Firepower 3100 and 4200 Series devices could allow an authenticated, remote attacker to consume …

📅 Published: Aug. 14, 2025, 4:28 p.m. 🔄 Last Modified: Aug. 16, 2025, 9:41 p.m.

8.6

CVSS3.1

CVE-2025-20133 - Cisco Secure Firewall Adaptive Security Appliance and Secure Firewall Threat Defense Software Remot…

A vulnerability in the management and VPN web servers of the Remote Access SSL VPN feature of Cisco Secure Firewall ASA Software and Secure FTD Software could allow an unauthenticated, remote attacker to cause the device to unexpectedly stop responding, resulting in a DoS condition. This vulnera…

📅 Published: Aug. 14, 2025, 4:28 p.m. 🔄 Last Modified: Aug. 14, 2025, 4:28 p.m.

8.6

CVSS3.1

CVE-2025-20134 - Cisco Adaptive Security Appliance and Firepower Threat Defense Software SSL/TLS Certificate Denial …

A vulnerability in the certificate processing of Cisco Secure Firewall Adaptive Security Appliance (ASA) Software and Cisco Secure Firewall Threat Defense (FTD) Software could allow an unauthenticated, remote attacker to cause the device to reload unexpectedly, resulting in a denial of service (DoS…

📅 Published: Aug. 14, 2025, 4:28 p.m. 🔄 Last Modified: Aug. 14, 2025, 4:28 p.m.

6.7

CVSS4.0

CVE-2025-9043 -

The service executable path in Seagate Toolkit on Versions prior to 2.34.0.33 on Windows allows an attacker with Admin privileges to exploit a vulnerability as classified under CWE-428: Unquoted Search Path or Element. An attacker with write permissions to the root could place a malicious Program.e…

📅 Published: Aug. 14, 2025, 4:27 p.m. 🔄 Last Modified: Aug. 14, 2025, 4:27 p.m.

5.3

CVSS4.0

CVE-2025-9039 - Information Disclosure in Amazon ECS Container Agent

We identified an issue in the Amazon ECS agent where, under certain conditions, an introspection server could be accessed off-host by another instance if the instances are in the same security group or if their security groups allow incoming connections that include the port where the server is hos…

📅 Published: Aug. 14, 2025, 4:15 p.m. 🔄 Last Modified: Aug. 16, 2025, 9:41 p.m.

7

CVSS3.1

CVE-2025-54867 - Youki Symlink Following Vulnerability

Youki is a container runtime written in Rust. Prior to version 0.5.5, if /proc and /sys in the rootfs are symbolic links, they can potentially be exploited to gain access to the host root filesystem. This issue has been patched in version 0.5.5.

📅 Published: Aug. 14, 2025, 4:08 p.m. 🔄 Last Modified: Aug. 16, 2025, 9:41 p.m.

6.9

CVSS4.0

CVE-2025-8967 - itsourcecode Online Tour and Travel Management System packages.php sql injection

A vulnerability was determined in itsourcecode Online Tour and Travel Management System 1.0. Affected is an unknown function of the file /admin/operations/packages.php. The manipulation of the argument pname leads to sql injection. It is possible to launch the attack remotely. The exploit has been …

📅 Published: Aug. 14, 2025, 4:02 p.m. 🔄 Last Modified: Aug. 16, 2025, 9:41 p.m.
Total resulsts: 305860
Page 29 of 30,586
« previous page » next page
Filters