8.7

CVSS3.1

CVE-2025-25009 - Kibana Cross-Site Scripting (XSS)

Improper Neutralization of Input During Web Page Generation in Kibana can lead to Stored XSS via case file upload.

πŸ“… Published: Oct. 7, 2025, 1:59 p.m. πŸ”„ Last Modified: Oct. 30, 2025, 2:47 p.m.

8.8

CVSS3.1

CVE-2025-54402 -

Multiple stack-based buffer overflow vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912. A specially crafted series of HTTP requests can lead to stack-based buffer overflow. An attacker can send a series of HTTP requests to trigger these vulnerabilities.This buf…

πŸ“… Published: Oct. 7, 2025, 1:55 p.m. πŸ”„ Last Modified: Nov. 3, 2025, 6:16 p.m.

8.8

CVSS3.1

CVE-2025-54401 -

Multiple stack-based buffer overflow vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912. A specially crafted series of HTTP requests can lead to stack-based buffer overflow. An attacker can send a series of HTTP requests to trigger these vulnerabilities.This buf…

πŸ“… Published: Oct. 7, 2025, 1:55 p.m. πŸ”„ Last Modified: Nov. 3, 2025, 6:16 p.m.

8.8

CVSS3.1

CVE-2025-54400 -

Multiple stack-based buffer overflow vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912. A specially crafted series of HTTP requests can lead to stack-based buffer overflow. An attacker can send a series of HTTP requests to trigger these vulnerabilities.This buf…

πŸ“… Published: Oct. 7, 2025, 1:55 p.m. πŸ”„ Last Modified: Nov. 3, 2025, 6:16 p.m.

8.8

CVSS3.1

CVE-2025-54399 -

Multiple stack-based buffer overflow vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912. A specially crafted series of HTTP requests can lead to stack-based buffer overflow. An attacker can send a series of HTTP requests to trigger these vulnerabilities.This buf…

πŸ“… Published: Oct. 7, 2025, 1:55 p.m. πŸ”„ Last Modified: Nov. 3, 2025, 6:16 p.m.

8.8

CVSS3.1

CVE-2025-54404 -

Multiple OS command injection vulnerabilities exist in the swctrl functionality of Planet WGR-500 v1.3411b190912. A specially crafted network request can lead to arbitrary command execution. An attacker can send a network request to trigger these vulnerabilities.This command injection is related to…

πŸ“… Published: Oct. 7, 2025, 1:55 p.m. πŸ”„ Last Modified: Nov. 3, 2025, 6:16 p.m.

8.8

CVSS3.1

CVE-2025-54403 -

Multiple OS command injection vulnerabilities exist in the swctrl functionality of Planet WGR-500 v1.3411b190912. A specially crafted network request can lead to arbitrary command execution. An attacker can send a network request to trigger these vulnerabilities.This command injection is related to…

πŸ“… Published: Oct. 7, 2025, 1:55 p.m. πŸ”„ Last Modified: Nov. 3, 2025, 6:16 p.m.

8.8

CVSS3.1

CVE-2025-48826 -

A format string vulnerability exists in the formPingCmd functionality of Planet WGR-500 v1.3411b190912. A specially crafted series of HTTP requests can lead to memory corruption. An attacker can send a series of HTTP requests to trigger this vulnerability.

πŸ“… Published: Oct. 7, 2025, 1:55 p.m. πŸ”„ Last Modified: Nov. 3, 2025, 6:16 p.m.

8.8

CVSS3.1

CVE-2025-54406 -

Multiple OS command injection vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912. A specially crafted series of HTTP requests can lead to arbitrary command execution. An attacker can send a series of HTTP requests to trigger these vulnerabilities.This command in…

πŸ“… Published: Oct. 7, 2025, 1:55 p.m. πŸ”„ Last Modified: Nov. 3, 2025, 6:16 p.m.

8.8

CVSS3.1

CVE-2025-54405 -

Multiple OS command injection vulnerabilities exist in the formPingCmd functionality of Planet WGR-500 v1.3411b190912. A specially crafted series of HTTP requests can lead to arbitrary command execution. An attacker can send a series of HTTP requests to trigger these vulnerabilities.This command in…

πŸ“… Published: Oct. 7, 2025, 1:55 p.m. πŸ”„ Last Modified: Nov. 3, 2025, 6:16 p.m.
Total resulsts: 349182
Page 3522 of 34,919
Β« previous page Β» next page
Filters