6.7

CVSS3.1

CVE-2025-8108 -

An ACAP configuration file has improper permissions and lacks input validation, which could potentially lead to privilege escalation. This vulnerability can only be exploited if the Axis device is configured to allow the installation of unsigned ACAP applications, and if an attacker convinces the vโ€ฆ

๐Ÿ“… Published: Nov. 11, 2025, 7:10 a.m. ๐Ÿ”„ Last Modified: Feb. 26, 2026, 4:58 p.m.

6.7

CVSS3.1

CVE-2025-6779 -

An ACAP configuration file has improper permissions, which could allow command injection and potentially lead to privilege escalation. This vulnerability can only be exploited if the Axis device is configured to allow the installation of unsigned ACAP applications, and if an attacker convinces the โ€ฆ

๐Ÿ“… Published: Nov. 11, 2025, 7:05 a.m. ๐Ÿ”„ Last Modified: Feb. 26, 2026, 4:58 p.m.

6

CVSS3.1

CVE-2025-6571 -

A 3rd-party componentย exposed its password in process arguments, allowing for low-privileged users to access it.

๐Ÿ“… Published: Nov. 11, 2025, 7:03 a.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.6

CVSS3.1

CVE-2025-5452 -

A malicious ACAP application can gain access to admin-level service account credentials used by legitimate ACAP applications, leading to potential privilege escalation of the malicious ACAP application. This vulnerability can only be exploited if the Axis device is configured to allow the installatโ€ฆ

๐Ÿ“… Published: Nov. 11, 2025, 7 a.m. ๐Ÿ”„ Last Modified: Feb. 26, 2026, 4:58 p.m.

6.7

CVSS3.1

CVE-2025-6298 -

ACAP applications can gain elevated privileges due to improper input validation, potentially leading to privilege escalation. This vulnerability can only be exploited if the Axis device is configured to allow the installation of unsigned ACAP applications, and if an attacker convinces the victim toโ€ฆ

๐Ÿ“… Published: Nov. 11, 2025, 6:56 a.m. ๐Ÿ”„ Last Modified: Feb. 26, 2026, 4:58 p.m.

6.8

CVSS3.1

CVE-2025-5718 -

The ACAP Application framework could allow privilege escalation through a symlink attack. This vulnerability can only be exploited if the Axis device is configured to allow the installation of unsigned ACAP applications,ย and if an attacker convinces the victim to install a malicious ACAP applicatioโ€ฆ

๐Ÿ“… Published: Nov. 11, 2025, 6:52 a.m. ๐Ÿ”„ Last Modified: Feb. 26, 2026, 5:46 p.m.

6.4

CVSS3.1

CVE-2025-5454 -

An ACAP configuration file lacked sufficient input validation, which could allow a path traversal attack leading to potential privilege escalation. This vulnerability can only be exploited if the Axis device is configured to allow the installation of unsigned ACAP applications, and if an attacker cโ€ฆ

๐Ÿ“… Published: Nov. 11, 2025, 6:50 a.m. ๐Ÿ”„ Last Modified: Feb. 26, 2026, 5:46 p.m.

6.7

CVSS3.1

CVE-2025-4645 -

An ACAP configuration file lacked sufficient input validation, which could allow for arbitrary code execution. This vulnerability can only be exploited if the Axis device is configured to allow the installation of unsigned ACAP applications, and if an attacker convinces the victim to install a maliโ€ฆ

๐Ÿ“… Published: Nov. 11, 2025, 6:45 a.m. ๐Ÿ”„ Last Modified: Feb. 26, 2026, 5:46 p.m.

7.5

CVSS3.1

CVE-2025-11855 - Age Restriction <= 3.0.2 - Subscriber+ Privilege Escalation

The age-restriction WordPress plugin through 3.0.2 does not have authorisation in the age_restrictionRemoteSupportRequest function, allowing any authenticated users, such as subscriber to create an admin user with a hardcoded username and arbitrary password.

๐Ÿ“… Published: Nov. 11, 2025, 6 a.m. ๐Ÿ”„ Last Modified: April 27, 2026, 11 p.m.

8.8

CVSS3.1

CVE-2025-11307 - WP Google Maps < 9.0.48 - Unauthenticated Stored XSS

The WP Go Maps (formerly WP Google Maps) WordPress plugin before 9.0.48 does not sanitize user input provided via an AJAX action, allowing unauthenticated users to store XSS payloads which are later retrieved from another AJAX call and output unescaped.

๐Ÿ“… Published: Nov. 11, 2025, 6 a.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 3076 of 34,919
ยซ previous page ยป next page
Filters