8.7

CVSS4.0

CVE-2025-41451 - Post-Authentication OS Command Injection RCE in Danfoss AK-SM8xxA Series

Improper neutralization of alarm-to-mail configuration fields used in an OS shell Command ('Command Injection') in Danfoss AK-SM8xxA SeriesΒ prior to version 4.3.1, leading to a potential post-authenticated remote code execution on an attacked system.

πŸ“… Published: Aug. 22, 2025, 2:40 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.3

CVSS4.0

CVE-2025-43752 -

Liferay Portal 7.4.0 through 7.4.3.132, and Liferay DXP 2025.Q1.0 through 2025.Q1.4, 2024.Q4.0 through 2024.Q4.7, 2024.Q3.1 through 2024.Q3.13, 2024.Q2.0 through 2024.Q2.13, 2024.Q1.1 through 2024.Q1.15 and 7.4 GA through update 92 allow users to upload an unlimited amount of files through the obje…

πŸ“… Published: Aug. 22, 2025, midnight πŸ”„ Last Modified: Dec. 16, 2025, 2:56 p.m.

6.5

CVSS3.1

CVE-2025-55629 -

Insecure permissions in Reolink Smart 2K+ Plug-in Wi-Fi Video Doorbell with Chime - firmware v3.0.0.4662_2503122283 allow attackers to arbitrarily change other users' passwords via manipulation of the userName value.

πŸ“… Published: Aug. 22, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.5

CVSS3.1

CVE-2025-55622 -

Reolink v4.54.0.4.20250526 was discovered to contain a task hijacking vulnerability due to inappropriate taskAffinity settings. NOTE: this is disputed by the Supplier because it is intentional behavior to ensure a predictable user experience.

πŸ“… Published: Aug. 22, 2025, midnight πŸ”„ Last Modified: Oct. 2, 2025, 1:38 a.m.

9.8

CVSS3.1

CVE-2025-55606 -

Tenda AX3 V16.03.12.10_CN is vulnerable to Buffer Overflow in the fromAdvSetMacMtuWan function via the serverName parameter.

πŸ“… Published: Aug. 22, 2025, midnight πŸ”„ Last Modified: Sept. 26, 2025, 12:53 p.m.

9.8

CVSS3.1

CVE-2025-55398 -

An issue was discovered in mouse07410 asn1c thru 0.9.29 (2025-03-20) - a fork of vlm asn1c. In UPER (Unaligned Packed Encoding Rules), asn1c-generated decoders fail to enforce INTEGER constraints when the bound is positive and exceeds 32 bits in length, potentially allowing incorrect or malicious i…

πŸ“… Published: Aug. 22, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.1

CVE-2025-51092 -

The LogIn-SignUp project by VishnuSivadasVS is vulnerable to SQL Injection due to unsafe construction of SQL queries in DataBase.php. The functions logIn() and signUp() build queries by directly concatenating user input and unvalidated table names without using prepared statements. While a prepareD…

πŸ“… Published: Aug. 22, 2025, midnight πŸ”„ Last Modified: Oct. 9, 2025, 6 p.m.

5.3

CVSS3.1

CVE-2025-50691 -

MCSManager 10.5.3 daemon process runs as a root account by default, and its sensitive data (including tokens and terminal content) is stored in the data directory, readable by all users. Other users on the system can read the daemon's key and use it to log in, leading to privilege escalation.

πŸ“… Published: Aug. 22, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

4.7

CVSS3.1

CVE-2025-38675 - xfrm: state: initialize state_ptrs earlier in xfrm_state_find

In the Linux kernel, the following vulnerability has been resolved: xfrm: state: initialize state_ptrs earlier in xfrm_state_find In case of preemption, xfrm_state_look_at will find a different pcpu_id and look up states for that other CPU. If we matched a state for CPU2 in the state_cache while …

πŸ“… Published: Aug. 22, 2025, midnight πŸ”„ Last Modified: Jan. 11, 2026, 4:29 p.m.

7.1

CVSS3.1

CVE-2025-38670 - arm64/entry: Mask DAIF in cpu_switch_to(), call_on_irq_stack()

In the Linux kernel, the following vulnerability has been resolved: arm64/entry: Mask DAIF in cpu_switch_to(), call_on_irq_stack() `cpu_switch_to()` and `call_on_irq_stack()` manipulate SP to change to different stacks along with the Shadow Call Stack if it is enabled. Those two stack changes can…

πŸ“… Published: Aug. 22, 2025, midnight πŸ”„ Last Modified: Jan. 22, 2026, 6:39 p.m.
Total resulsts: 349182
Page 4166 of 34,919
Β« previous page Β» next page
Filters