0.0

CVE-2025-63414 -

A Path Traversal vulnerability in the Allsky WebUI version v2024.12.06_06 allows an unauthenticated remote attacker to achieve arbitrary command execution. By sending a crafted HTTP request to the /html/execute.php endpoint with a malicious payload in the id parameter, an attacker can execute arbit…

πŸ“… Published: Dec. 16, 2025, midnight πŸ”„ Last Modified: Dec. 16, 2025, 4:22 p.m.

0.0

CVE-2025-65427 -

An issue was discovered in Dbit N300 T1 Pro Easy Setup Wireless Wi-Fi Router on firmware version V1.0.0 does not implement rate limiting to /api/login allowing attackers to brute force password enumerations.

πŸ“… Published: Dec. 16, 2025, midnight πŸ”„ Last Modified: Dec. 16, 2025, 4:07 p.m.

0.0

CVE-2025-64012 -

InvoicePlane commit debb446c is vulnerable to Incorrect Access Control. The invoices/view handler fails to verify ownership before returning invoice data.

πŸ“… Published: Dec. 16, 2025, midnight πŸ”„ Last Modified: Dec. 16, 2025, 3:14 p.m.

0.0

CVE-2025-52196 -

Server-Side Request Forgery (SSRF) vulnerability in Ctera Portal 8.1.x (8.1.1417.24) allows remote attackers to induce the server to make arbitrary HTTP requests via a crafted HTML file containing an iframe.

πŸ“… Published: Dec. 16, 2025, midnight πŸ”„ Last Modified: Dec. 16, 2025, 6:05 p.m.

0.0

CVE-2025-65581 -

An open redirect vulnerability exists in the Account module in Volosoft ABP Framework >= 5.1.0 and < 10.0.0-rc.2. Improper validation of the returnUrl parameter in the register function allows an attacker to redirect users to arbitrary external domains.

πŸ“… Published: Dec. 16, 2025, midnight πŸ”„ Last Modified: Dec. 16, 2025, 5:59 p.m.

7.8

CVSS3.1

CVE-2025-10900 - MODEL File Parsing Out-of-Bounds Write Vulnerability

AA maliciously crafted MODEL file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.

πŸ“… Published: Dec. 15, 2025, 11:45 p.m. πŸ”„ Last Modified: Dec. 16, 2025, 2:10 p.m.

7.8

CVSS3.1

CVE-2025-10899 - MODEL File Parsing Out-of-Bounds Write Vulnerability

AA maliciously crafted MODEL file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.

πŸ“… Published: Dec. 15, 2025, 11:45 p.m. πŸ”„ Last Modified: Dec. 16, 2025, 2:10 p.m.

7.8

CVSS3.1

CVE-2025-10898 - MODEL File Parsing Out-of-Bounds Write Vulnerability

AA maliciously crafted MODEL file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.

πŸ“… Published: Dec. 15, 2025, 11:44 p.m. πŸ”„ Last Modified: Dec. 16, 2025, 2:10 p.m.

7.8

CVSS3.1

CVE-2025-10889 - CATPART File Parsing Memory Corruption Vulnerability

A maliciously crafted CATPART file, when parsed through certain Autodesk products, can force a Memory corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the context of the current process.

πŸ“… Published: Dec. 15, 2025, 11:43 p.m. πŸ”„ Last Modified: Dec. 16, 2025, 2:10 p.m.

7.8

CVSS3.1

CVE-2025-10888 - MODEL File Parsing Out-of-Bounds Write Vulnerability

AA maliciously crafted MODEL file, when parsed through certain Autodesk products, can force an Out-of-Bounds Write vulnerability. A malicious actor may leverage this vulnerability to cause a crash, cause data corruption, or execute arbitrary code in the context of the current process.

πŸ“… Published: Dec. 15, 2025, 11:43 p.m. πŸ”„ Last Modified: Dec. 16, 2025, 2:10 p.m.
Total resulsts: 322764
Page 36 of 32,277
Β« previous page Β» next page
Filters