9.4

CVSS4.0

CVE-2025-34210 - Vasion Print (formerly PrinterLogic) Readable Cleartext Passwords

Vasion Print (formerly PrinterLogic) Virtual Appliance Host and Application (VA/SaaS deployments) store a large number of sensitive credentials (database passwords, MySQL root password, SaaS keys, Portainer admin password, etc.) in cleartext files that are world-readable. Any local user - or any pr…

📅 Published: Oct. 2, 2025, 4:13 p.m. 🔄 Last Modified: Nov. 17, 2025, 11:56 p.m.

8.2

CVSS4.0

CVE-2025-34208 - Vasion Print (formerly PrinterLogic) Insecure Password Hashing

Vasion Print (formerly PrinterLogic) Virtual Appliance Host and Application (VA/SaaS deployments) store user passwords using unsalted SHA-512 hashes with a fall-back to unsalted SHA-1. The hashing is performed via PHP's `hash()` function in multiple files (server_write_requests_users.php, update_da…

📅 Published: Oct. 2, 2025, 4:13 p.m. 🔄 Last Modified: Nov. 17, 2025, 11:56 p.m.

5.1

CVSS4.0

CVE-2025-59774 - Multiple vulnerabilities in AndSoft's e-TMS

Cross-site scripting (XSS) vulnerability reflected in AndSoft's e-TMS v25.03. This vulnerability allows an attacker to execute JavaScript code in the victim's browser by sending them a malicious URL. The relationship between parameter and assigned identifier is 'l, demo, demo2, TNTLOGIN, UO and Sup…

📅 Published: Oct. 2, 2025, 2:48 p.m. 🔄 Last Modified: Oct. 2, 2025, 7:53 p.m.

5.1

CVSS4.0

CVE-2025-59773 - Multiple vulnerabilities in AndSoft's e-TMS

Cross-site scripting (XSS) vulnerability reflected in AndSoft's e-TMS v25.03. This vulnerability allows an attacker to execute JavaScript code in the victim's browser by sending them a malicious URL. The relationship between parameter and assigned identifier is 'l, demo, demo2, TNTLOGIN, UO and Sup…

📅 Published: Oct. 2, 2025, 2:47 p.m. 🔄 Last Modified: Oct. 2, 2025, 7:53 p.m.

5.1

CVSS4.0

CVE-2025-59772 - Multiple vulnerabilities in AndSoft's e-TMS

Cross-site scripting (XSS) vulnerability reflected in AndSoft's e-TMS v25.03. This vulnerability allows an attacker to execute JavaScript code in the victim's browser by sending them a malicious URL. The relationship between parameter and assigned identifier is 'l, demo, demo2, TNTLOGIN, UO and Sup…

📅 Published: Oct. 2, 2025, 2:46 p.m. 🔄 Last Modified: Oct. 2, 2025, 7:53 p.m.

5.1

CVSS4.0

CVE-2025-59771 - Multiple vulnerabilities in AndSoft's e-TMS

Cross-site scripting (XSS) vulnerability reflected in AndSoft's e-TMS v25.03. This vulnerability allows an attacker to execute JavaScript code in the victim's browser by sending them a malicious URL. The relationship between parameter and assigned identifier is 'l, demo, demo2, TNTLOGIN, UO and Sup…

📅 Published: Oct. 2, 2025, 2:42 p.m. 🔄 Last Modified: Oct. 2, 2025, 7:53 p.m.

5.1

CVSS4.0

CVE-2025-59770 - Multiple vulnerabilities in AndSoft's e-TMS

Cross-site scripting (XSS) vulnerability reflected in AndSoft's e-TMS v25.03. This vulnerability allows an attacker to execute JavaScript code in the victim's browser by sending them a malicious URL. The relationship between parameter and assigned identifier is 'l, demo, demo2, TNTLOGIN, UO and Sup…

📅 Published: Oct. 2, 2025, 2:41 p.m. 🔄 Last Modified: Oct. 2, 2025, 7:52 p.m.

5.1

CVSS4.0

CVE-2025-59769 - Multiple vulnerabilities in AndSoft's e-TMS

Cross-site scripting (XSS) vulnerability reflected in AndSoft's e-TMS v25.03. This vulnerability allows an attacker to execute JavaScript code in the victim's browser by sending them a malicious URL. The relationship between parameter and assigned identifier is 'l, demo, demo2, TNTLOGIN, UO and Sup…

📅 Published: Oct. 2, 2025, 2:39 p.m. 🔄 Last Modified: Oct. 2, 2025, 7:52 p.m.

5.1

CVSS4.0

CVE-2025-59768 - Multiple vulnerabilities in AndSoft's e-TMS

Cross-site scripting (XSS) vulnerability reflected in AndSoft's e-TMS v25.03. This vulnerability allows an attacker to execute JavaScript code in the victim's browser by sending them a malicious URL. The relationship between parameter and assigned identifier is 'l, demo, demo2, TNTLOGIN, UO and Sup…

📅 Published: Oct. 2, 2025, 2:39 p.m. 🔄 Last Modified: Oct. 2, 2025, 7:52 p.m.

5.1

CVSS4.0

CVE-2025-59767 - Multiple vulnerabilities in AndSoft's e-TMS

Cross-site scripting (XSS) vulnerability reflected in AndSoft's e-TMS v25.03. This vulnerability allows an attacker to execute JavaScript code in the victim's browser by sending them a malicious URL. The relationship between parameter and assigned identifier is 'l, demo, demo2, TNTLOGIN, UO and Sup…

📅 Published: Oct. 2, 2025, 2:38 p.m. 🔄 Last Modified: Oct. 2, 2025, 7:52 p.m.
Total resulsts: 349182
Page 3590 of 34,919
« previous page » next page
Filters