5.7

CVSS4.0

CVE-2025-59730 - Heap-buffer-overflow write in FFmpeg SANM decoding due to lack of bounds-checking in old_codec48

When decoding a frame for a SANM file (ANIM v0 variant), the decoded data can be larger than the buffer allocated for it. Frames encoded with codec 48 can specify their resolution (width x height). A buffer of appropriate size is allocated depending on the resolution. This codec can encode the fr…

📅 Published: Oct. 6, 2025, 8:09 a.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

5.7

CVSS4.0

CVE-2025-59729 - Heap-buffer-overflow read in FFmpeg DHAV get_duration

When parsing the header for a DHAV file, there's an integer underflow in offset calculation that leads to reading the duration from before the start of the allocated buffer. If we load a DHAV file that is larger than MAX_DURATION_BUFFER_SIZE bytes (0x100000) for example 0x101000 bytes, then at [0]…

📅 Published: Oct. 6, 2025, 8:08 a.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

8.7

CVSS4.0

CVE-2025-59728 - Heap-buffer-overflow write in FFmpeg MDASH resolve_content_path

When calculating the content path in handling of MPEG-DASH manifests, there's an out-of-bounds NUL-byte write one byte past the end of the buffer.When we call xmlNodeGetContent below [0], it returns a buffer precisely allocated to match the string length, using strdup internally. If this buffer is …

📅 Published: Oct. 6, 2025, 8:08 a.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

8.7

CVSS4.0

CVE-2025-11327 - Tenda AC18 SetUpnpCfg stack-based overflow

A security vulnerability has been detected in Tenda AC18 15.03.05.19(6318). This vulnerability affects unknown code of the file /goform/SetUpnpCfg. The manipulation of the argument upnpEn leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has been disc…

📅 Published: Oct. 6, 2025, 8:02 a.m. 🔄 Last Modified: Feb. 24, 2026, 6:44 a.m.

8.7

CVSS4.0

CVE-2025-11326 - Tenda AC18 WifiMacFilterSet stack-based overflow

A weakness has been identified in Tenda AC18 15.03.05.19(6318). This affects an unknown part of the file /goform/WifiMacFilterSet. Executing a manipulation of the argument wifi_chkHz can lead to stack-based buffer overflow. The attack may be performed from remote. The exploit has been made availabl…

📅 Published: Oct. 6, 2025, 7:32 a.m. 🔄 Last Modified: Feb. 24, 2026, 7:16 a.m.

5.3

CVSS3.1

CVE-2025-58579 - Username Disclosure Through Missing Authentication

Due to a lack of authentication, it is possible for an unauthenticated user to request data from this endpoint, making the application vulnerable for user enumeration.

📅 Published: Oct. 6, 2025, 7:09 a.m. 🔄 Last Modified: Jan. 27, 2026, 5:29 p.m.

6.5

CVSS3.1

CVE-2025-58591 - Path Traversal

A remote, unauthorized attacker can brute force folders and files and read them like private keys or configurations, making the application vulnerable for gathering sensitive information.

📅 Published: Oct. 6, 2025, 7:07 a.m. 🔄 Last Modified: Jan. 27, 2026, 7:41 p.m.

6.5

CVSS3.1

CVE-2025-58590 - Path traversal

It's possible to brute force folders and files, what can be used by an attacker to steal sensitve information.

📅 Published: Oct. 6, 2025, 7:06 a.m. 🔄 Last Modified: Jan. 27, 2026, 7:44 p.m.

2.7

CVSS3.1

CVE-2025-58589 - Information Disclosure Through Stacktrace

When an error occurs in the application a full stacktrace is provided to the user. The stacktrace lists class and method names as well as other internal information. An attacker thus receives information about the technology used and the structure of the application.

📅 Published: Oct. 6, 2025, 7:03 a.m. 🔄 Last Modified: Jan. 27, 2026, 7:45 p.m.

6.5

CVSS3.1

CVE-2025-58587 - Improper Restriction of Excessive Authentication Attempts

The application does not implement sufficient measures to prevent multiple failed authentication attempts within a short time frame, making it possible for an attacker to guess user credentials.

📅 Published: Oct. 6, 2025, 7:03 a.m. 🔄 Last Modified: Jan. 27, 2026, 7:46 p.m.
Total resulsts: 349182
Page 3545 of 34,919
« previous page » next page
Filters