8.8

CVSS3.1

CVE-2025-46427 -

Dell SmartFabric OS10 Software, versions prior to 10.6.1.0, contain an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Command execution.

๐Ÿ“… Published: Nov. 12, 2025, 8:01 p.m. ๐Ÿ”„ Last Modified: Feb. 26, 2026, 4:57 p.m.

8.8

CVSS3.1

CVE-2025-46428 -

Dell SmartFabric OS10 Software, versions prior to 10.6.1.0, contain an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Code execution.

๐Ÿ“… Published: Nov. 12, 2025, 7:57 p.m. ๐Ÿ”„ Last Modified: Feb. 26, 2026, 4:57 p.m.

6.7

CVSS3.1

CVE-2024-48829 -

Dell SmartFabric OS10 Software, versions prior to 10.6.1.0, contain an Improper Control of Generation of Code ('Code Injection') vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Code execution.

๐Ÿ“… Published: Nov. 12, 2025, 7:50 p.m. ๐Ÿ”„ Last Modified: Feb. 26, 2026, 4:57 p.m.

5.1

CVSS4.0

CVE-2025-13058 - soerennb eXtplorer Filename cross site scripting

A security flaw has been discovered in soerennb eXtplorer up to 2.1.15. The affected element is an unknown function of the component Filename Handler. The manipulation results in cross site scripting. The attack may be launched remotely. The patch is identified as 002def70b985f7012586df2c44368845bfโ€ฆ

๐Ÿ“… Published: Nov. 12, 2025, 7:32 p.m. ๐Ÿ”„ Last Modified: Feb. 24, 2026, 7:16 a.m.

7.7

CVSS4.0

CVE-2025-12048 -

An arbitrary file upload vulnerability was reported in the Lenovo Scanner Pro client during an internal security assessment that could allow remote code execution or unauthorized control of the affected system.

๐Ÿ“… Published: Nov. 12, 2025, 7:19 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

6

CVSS4.0

CVE-2025-12047 -

A vulnerability was reported in the Lenovo Scanner pro application during an internal security assessment that, under certain circumstances, could allow an attacker on the same logical network to disclose sensitive user files from the application.

๐Ÿ“… Published: Nov. 12, 2025, 7:18 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.7

CVSS4.0

CVE-2025-10495 -

A potential vulnerability was reported in the Lenovo PC Manager, Lenovo App Store, Lenovo Browser, and Lenovo Legion Zone client applications that, under certain conditions, could allow an attacker on the same logical network to execute arbitrary code.

๐Ÿ“… Published: Nov. 12, 2025, 7:18 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

7

CVSS4.0

CVE-2025-8485 -

An improper permissions vulnerability was reported in Lenovo App Store that could allow a local authenticated user to execute code with elevated privileges during installation of an application.

๐Ÿ“… Published: Nov. 12, 2025, 7:18 p.m. ๐Ÿ”„ Last Modified: Feb. 2, 2026, 3:39 p.m.

5.2

CVSS4.0

CVE-2025-8421 -

An improper default permission vulnerability was reported in Lenovo Dock Manager that, under certain conditions during installation, could allow an authenticated local user to redirect log files with elevated privileges.

๐Ÿ“… Published: Nov. 12, 2025, 7:17 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

4.6

CVSS3.1

CVE-2025-64117 - Tuleap missing CSRF protection in the management of SVN commit rules and immutable tags

Tuleap is an Open Source Suite to improve management of software developments and collaboration. Tuleap Community Edition prior to version 16.13.99.1761813675 and Tuleap Enterprise Edition prior to versions 16.13-5 and 16.12-8 don't have cross-site request forgery protection in the management of SVโ€ฆ

๐Ÿ“… Published: Nov. 12, 2025, 7:12 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 3034 of 34,919
ยซ previous page ยป next page
Filters