5.3

CVSS3.1

CVE-2025-60925 -

codeshare v1.0.0 was discovered to contain an information leakage vulnerability.

📅 Published: Nov. 4, 2025, midnight 🔄 Last Modified: Feb. 4, 2026, 8:11 p.m.

6.5

CVSS3.1

CVE-2025-63294 -

WorkDo HRM SaaS HR and Payroll Tool 8.1 is affected vulnerable to Insecure Permissions. An authenticated user can create leave or resignation records on behalf of other users.

📅 Published: Nov. 4, 2025, midnight 🔄 Last Modified: Feb. 4, 2026, 8:15 p.m.

5.3

CVSS3.1

CVE-2025-54333 -

An issue was discovered in NPU in Samsung Mobile Processor Exynos 1380 through July 2025. There is an Invalid Pointer Dereference of node in the get_vs4l_profiler_node function.

📅 Published: Nov. 4, 2025, midnight 🔄 Last Modified: Nov. 7, 2025, 12:56 p.m.

6.5

CVSS3.1

CVE-2025-54335 -

An issue was discovered in the GPU driver in Samsung Mobile Processor Exynos 1480, 2400, 1580, 2500. There is a use-after-free in the Xclipse GPU Driver.

📅 Published: Nov. 4, 2025, midnight 🔄 Last Modified: Nov. 7, 2025, 1 p.m.

0.0

CVE-2025-12678 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

📅 Published: Nov. 3, 2025, 10:33 p.m. 🔄 Last Modified: Nov. 21, 2025, 10:19 p.m.

7

CVSS4.0

CVE-2025-34501 - Shuffle Master Deck Mate 2 Hard-coded Credentials & Exposed Services

Deck Mate 2 is distributed with static, hard-coded credentials for the root shell and web user interface, while multiple management services (SSH, HTTP, Telnet, SMB, X11) are enabled by default. If an attacker can reach these interfaces - most often through local or near-local access such as connec…

📅 Published: Nov. 3, 2025, 9:56 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

0.0

CVE-2016-15054 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority as it is a downstream effect of an already identified vulnerability, CVE-2012-6708.

📅 Published: Nov. 3, 2025, 9:56 p.m. 🔄 Last Modified: Nov. 10, 2025, 6:15 p.m.

5.1

CVSS4.0

CVE-2021-47698 - Nagios XI < 5.8.7 XSS in Core UI Views URL handling

Nagios XI versions prior to 5.8.7 using embedded Nagios Core are vulnerable to cross-site scripting (XSS) via the Core UI’s Views URL handling (escape_string()). Insufficient validation or escaping of user-supplied input may allow an attacker to inject and execute arbitrary script in the context of…

📅 Published: Nov. 3, 2025, 9:56 p.m. 🔄 Last Modified: Nov. 17, 2025, 6:21 p.m.

9.4

CVSS4.0

CVE-2024-13997 - Nagios XI < 2024R1.1.3 Privilege Escalation via Migrate Server Feature to Root on Host

Nagios XI versions prior to 2024R1.1.3 contain a privilege escalation vulnerability in which an authenticated administrator could leverage the Migrate Server feature to obtain root privileges on the underlying XI host. By abusing the migration workflow, an admin-level attacker could execute actions…

📅 Published: Nov. 3, 2025, 9:55 p.m. 🔄 Last Modified: Nov. 17, 2025, 6:21 p.m.

6

CVSS4.0

CVE-2024-13998 - Nagios XI < 2024R1.1.3 API Keys & Hashed Passwords Authenticated Information Disclosure

Nagios XI versions prior to 2024R1.1.3, under certain circumstances, disclose sensitive user account information (including API keys and hashed passwords) to authenticated users who should not have access to that data. Exposure of API keys or password hashes could lead to account compromise, abuse …

📅 Published: Nov. 3, 2025, 9:53 p.m. 🔄 Last Modified: Nov. 17, 2025, 6:21 p.m.
Total resulsts: 349182
Page 3176 of 34,919
« previous page » next page
Filters