6.5

CVSS3.1

CVE-2025-58364 - cups: Remote DoS via null dereference

OpenPrinting CUPS is an open source printing system for Linux and other Unix-like operating systems. In versions 2.4.12 and earlier, an unsafe deserialization and validation of printer attributes causes null dereference in the libcups library. This is a remote DoS vulnerability available in local s…

📅 Published: Sept. 11, 2025, 1 p.m. 🔄 Last Modified: Nov. 4, 2025, 10:16 p.m.

5.1

CVSS4.0

CVE-2025-40696 - Cross Site Scripting in PHPGurukul Online Fire Reporting System

Stored Cross Site Scripting in Online Fire Reporting System v1.2 by PHPGurukul, that consists in a stored authenticated XSS due to the lack of propper validation of user inputs 'fullname', 'location' and 'message' parameters via POST at the endpoint '/ofrs/reporting.php'. This vulnerability could a…

📅 Published: Sept. 11, 2025, 11:49 a.m. 🔄 Last Modified: Sept. 12, 2025, 3:30 p.m.

5.1

CVSS4.0

CVE-2025-40695 - Cross Site Scripting in PHPGurukul Online Fire Reporting System

Stored Cross Site Scripting in Online Fire Reporting System v1.2 by PHPGurukul, that consists in a stored authenticated XSS due to the lack of propper validation of user inputs 'remark', 'status' and 'takeaction' parameters via POST at the endpoint '/ofrs/admin/request-details.php'. This vulnerabil…

📅 Published: Sept. 11, 2025, 11:46 a.m. 🔄 Last Modified: Sept. 12, 2025, 3:31 p.m.

5.1

CVSS4.0

CVE-2025-40694 - Cross Site Scripting in PHPGurukul Online Fire Reporting System

Stored Cross Site Scripting in Online Fire Reporting System v1.2 by PHPGurukul, that consists in a stored authenticated XSS due to the lack of propper validation of user inputs 'fromdate' and 'todate' parameters via POST at the endpoint '/ofrs/admin/bwdates-report-result.php'. This vulnerability co…

📅 Published: Sept. 11, 2025, 11:40 a.m. 🔄 Last Modified: Sept. 12, 2025, 3:31 p.m.

5.1

CVSS4.0

CVE-2025-40693 - Cross Site Scripting in PHPGurukul Online Fire Reporting System

Stored Cross Site Scripting in Online Fire Reporting System v1.2 by PHPGurukul, that consists in a reflected and stored authenticated XSS due to the lack of propper validation of user inputs 'tname' parameter via GET and, 'teamleadname', 'teammember' and 'teamname' parameters via POST at the endp…

📅 Published: Sept. 11, 2025, 11:36 a.m. 🔄 Last Modified: Sept. 12, 2025, 3:31 p.m.

2.3

CVSS4.0

CVE-2025-10250 - DJI Mavic Spark/Mavic Air/Mavic Mini Telemetry Channel hard-coded key

A weakness has been identified in DJI Mavic Spark, Mavic Air and Mavic Mini 01.00.0500. Affected is an unknown function of the component Telemetry Channel. Executing manipulation can lead to use of hard-coded cryptographic key . The attacker needs to be present on the local network. A high complex…

📅 Published: Sept. 11, 2025, 11:32 a.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

9.3

CVSS4.0

CVE-2025-40692 - SQL injection in PHPGurukul Online Fire Reporting System

SQL Injection in Online Fire Reporting System v1.2 by PHPGurukul. This vulnerability allows an attacker to retrieve, create, update and delete database via  'requestid' parameter in the endpoint '/ofrs/details.php'.

📅 Published: Sept. 11, 2025, 11:27 a.m. 🔄 Last Modified: Sept. 12, 2025, 3:31 p.m.

9.3

CVSS4.0

CVE-2025-40691 - SQL injection in PHPGurukul Online Fire Reporting System

SQL Injection in Online Fire Reporting System v1.2 by PHPGurukul. This vulnerability allows an attacker to retrieve, create, update and delete database via  'todate' parameter in the endpoint '/ofrs/admin/bwdates-report-result.php'.

📅 Published: Sept. 11, 2025, 11:25 a.m. 🔄 Last Modified: Sept. 12, 2025, 3:31 p.m.

9.3

CVSS4.0

CVE-2025-40690 - SQL injection in PHPGurukul Online Fire Reporting System

SQL Injection in Online Fire Reporting System v1.2 by PHPGurukul. This vulnerability allows an attacker to retrieve, create, update and delete database via 'teamid' parameter in the endpoint '/ofrs/admin/edit-team.php'.

📅 Published: Sept. 11, 2025, 11:23 a.m. 🔄 Last Modified: Sept. 12, 2025, 3:32 p.m.

9.3

CVSS4.0

CVE-2025-40689 - SQL injection in PHPGurukul Online Fire Reporting System

SQL Injection in Online Fire Reporting System v1.2 by PHPGurukul. This vulnerability allows an attacker to retrieve, create, update and delete database via  'remark', 'status' and 'requestid' parameters in the endpoint '/ofrs/admin/request-details.php'.

📅 Published: Sept. 11, 2025, 11:21 a.m. 🔄 Last Modified: Sept. 12, 2025, 3:32 p.m.
Total resulsts: 349182
Page 3902 of 34,919
« previous page » next page
Filters