9.3

CVSS4.0

CVE-2014-125113 - Dell/Quest KACE K1000 Unauthenticated File Upload RCE

An unrestricted file upload vulnerability exists in Dell (acquired by Quest) KACE K1000 System Management Appliance version 5.0 - 5.3, 5.4 prior to 5.4.76849, and 5.5 prior to 5.5.90547 in the download_agent.php endpoint. An attacker can upload arbitrary PHP files to a temporary web-accessible dire…

πŸ“… Published: Aug. 5, 2025, 7:58 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

4.8

CVSS4.0

CVE-2025-8586 - libav MPEG File Parser utils.c ff_seek_frame_binary null pointer dereference

A vulnerability, which was classified as problematic, was found in libav up to 12.3. This affects the function ff_seek_frame_binary of the file /libavformat/utils.c of the component MPEG File Parser. The manipulation leads to null pointer dereference. It is possible to launch the attack on the loca…

πŸ“… Published: Aug. 5, 2025, 5:32 p.m. πŸ”„ Last Modified: Sept. 4, 2025, 3:36 p.m.

4.8

CVSS4.0

CVE-2025-8585 - libav DSS File Demuxer avconv.c main double free

A vulnerability, which was classified as critical, has been found in libav up to 12.3. Affected by this issue is the function main of the file /avtools/avconv.c of the component DSS File Demuxer. The manipulation leads to double free. Attacking locally is a requirement. The exploit has been disclos…

πŸ“… Published: Aug. 5, 2025, 5:02 p.m. πŸ”„ Last Modified: Sept. 4, 2025, 3:36 p.m.

10

CVSS3.1

CVE-2025-54253 - Adobe Experience Manager | Incorrect Authorization (CWE-863)

Adobe Experience Manager versions 6.5.23 and earlier are affected by a Misconfiguration vulnerability that could result in arbitrary code execution. An attacker could leverage this vulnerability to bypass security mechanisms and execute code. Exploitation of this issue does not require user interac…

πŸ“… Published: Aug. 5, 2025, 4:53 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 5:49 p.m.

8.6

CVSS3.1

CVE-2025-54254 - Adobe Experience Manager | Improper Restriction of XML External Entity Reference ('XXE') (CWE-611)

Adobe Experience Manager versions 6.5.23 and earlier are affected by an Improper Restriction of XML External Entity Reference ('XXE') vulnerability that could lead to arbitrary file system read. An attacker could exploit this vulnerability to access sensitive files on the local file system, scope i…

πŸ“… Published: Aug. 5, 2025, 4:53 p.m. πŸ”„ Last Modified: Oct. 2, 2025, 7:17 p.m.

7.1

CVSS4.0

CVE-2025-7674 - navify Monitoring API input validation

Improper Input Validation vulnerability in Roche Diagnostics navify Monitoring allows an attacker to manipulate input data, which may lead to a denial of service (DoS) due to negatively impacting the server's performance. This vulnerability has no impact on data confidentiality or integrity. This i…

πŸ“… Published: Aug. 5, 2025, 4:53 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

4.8

CVSS4.0

CVE-2025-8584 - libav AVI File Parser buffer.c av_buffer_unref null pointer dereference

A vulnerability classified as problematic was found in libav up to 12.3. Affected by this vulnerability is the function av_buffer_unref of the file libavutil/buffer.c of the component AVI File Parser. The manipulation leads to null pointer dereference. Local access is required to approach this atta…

πŸ“… Published: Aug. 5, 2025, 4:32 p.m. πŸ”„ Last Modified: Sept. 4, 2025, 3:35 p.m.

9.3

CVSS4.0

CVE-2025-2611 - ICTBroadcast <= 7.4 Unauthenticated Session Cookie RCE

The ICTBroadcast application unsafely passes session cookie data to shell processing, allowing an attacker to inject shell commands into a session cookie that get executed on the server. This results in unauthenticated remote code execution in the session handling. Versions 7.4 and below are kn…

πŸ“… Published: Aug. 5, 2025, 3 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.5

CVSS3.1

CVE-2025-27931 -

An out-of-bounds read vulnerability exists in the EMF functionality of PDF-XChange Editor version 10.5.2.395. By using a specially crafted EMF file, an attacker could exploit this vulnerability to perform an out-of-bounds read, potentially leading to the disclosure of sensitive information.

πŸ“… Published: Aug. 5, 2025, 2:49 p.m. πŸ”„ Last Modified: Nov. 3, 2025, 8:18 p.m.

6.5

CVSS3.1

CVE-2025-47152 -

An out-of-bounds read vulnerability exists in the EMF functionality of PDF-XChange Co. Ltd PDF-XChange Editor 10.6.0.396. By using a specially crafted EMF file, an attacker could exploit this vulnerability to perform an out-of-bounds read, potentially leading to the disclosure of sensitive informa…

πŸ“… Published: Aug. 5, 2025, 2:49 p.m. πŸ”„ Last Modified: Nov. 3, 2025, 8:19 p.m.
Total resulsts: 347249
Page 4214 of 34,725
Β« previous page Β» next page
Filters