0.0

CVE-2025-58415 -

Not used

πŸ“… Published: Sept. 1, 2025, 9:44 a.m. πŸ”„ Last Modified: Sept. 2, 2025, 2:55 a.m.

6.9

CVSS4.0

CVE-2025-9772 - RemoteClinic edit.php unrestricted upload

A vulnerability was detected in RemoteClinic up to 2.0. This affects an unknown part of the file /staff/edit.php. Performing manipulation of the argument image results in unrestricted upload. The attack can be initiated remotely. The exploit is now public and may be used. This vulnerability only af…

πŸ“… Published: Sept. 1, 2025, 9:32 a.m. πŸ”„ Last Modified: Sept. 4, 2025, 4:17 p.m.

6.9

CVSS4.0

CVE-2025-9771 - SourceCodester Eye Clinic Management System search_index_Diagnosis.php sql injection

A security vulnerability has been detected in SourceCodester Eye Clinic Management System 1.0. Affected by this issue is some unknown functionality of the file /main/search_index_Diagnosis.php. Such manipulation of the argument Search leads to sql injection. It is possible to launch the attack remo…

πŸ“… Published: Sept. 1, 2025, 9:02 a.m. πŸ”„ Last Modified: Sept. 3, 2025, 4:05 p.m.

6.9

CVSS4.0

CVE-2025-9770 - Campcodes Hospital Management System Admin Dashboard Login admin sql injection

A weakness has been identified in Campcodes Hospital Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/ of the component Admin Dashboard Login. This manipulation of the argument Password causes sql injection. It is possible to initiate the attack r…

πŸ“… Published: Sept. 1, 2025, 8:32 a.m. πŸ”„ Last Modified: Sept. 4, 2025, 4:43 p.m.

2.4

CVSS4.0

CVE-2025-9769 - D-Link DI-7400G+ mng_platform.asp sub_478D28 command injection

A security flaw has been discovered in D-Link DI-7400G+ 19.12.25A1. Affected is the function sub_478D28 of the file /mng_platform.asp. The manipulation of the argument addr with the input `echo 12345 > poc.txt` results in command injection. An attack on the physical device is feasible. The exploit …

πŸ“… Published: Sept. 1, 2025, 8:02 a.m. πŸ”„ Last Modified: Sept. 4, 2025, 4:43 p.m.

5.3

CVSS4.0

CVE-2025-9768 - itsourcecode Sports Management System mode.php sql injection

A vulnerability was identified in itsourcecode Sports Management System 1.0. This impacts an unknown function of the file /Admin/mode.php. The manipulation of the argument code leads to sql injection. The attack is possible to be carried out remotely.

πŸ“… Published: Sept. 1, 2025, 7:32 a.m. πŸ”„ Last Modified: Sept. 4, 2025, 4:44 p.m.

9.8

CVSS3.1

CVE-2022-38696 -

In BootRom, there's a possible missing payload size check. This could lead to memory buffer overflow without requiring additional execution privileges.

πŸ“… Published: Sept. 1, 2025, 7:28 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.8

CVSS3.1

CVE-2022-38695 -

In BootRom, there's a possible unchecked command index. This could lead to local escalation of privilege with no additional execution privileges needed.

πŸ“… Published: Sept. 1, 2025, 7:28 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.8

CVSS3.1

CVE-2022-38694 -

In BootRom, there is a possible unchecked write address. This could lead to local escalation of privilege with no additional execution privileges needed.

πŸ“… Published: Sept. 1, 2025, 7:28 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.1

CVE-2022-38693 -

In FDL1, there is a possible missing payload size check. This could lead to memory buffer overflow without requiring additional execution privileges.

πŸ“… Published: Sept. 1, 2025, 7:28 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 4066 of 34,919
Β« previous page Β» next page
Filters