5.3

CVSS4.0

CVE-2025-9099 - Acrel Environmental Monitoring Cloud Platform UploadNewsImg unrestricted upload

A vulnerability was identified in Acrel Environmental Monitoring Cloud Platform up to 20250804. This affects an unknown part of the file /NewsManage/UploadNewsImg. The manipulation of the argument File leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit has bee…

πŸ“… Published: Aug. 18, 2025, 1:02 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.8

CVSS3.1

CVE-2025-31715 -

In vowifi service, there is a possible command injection due to improper input validation. This could lead to remote escalation of privilege with no additional execution privileges needed.

πŸ“… Published: Aug. 18, 2025, 12:34 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.8

CVSS3.1

CVE-2025-31714 -

In Developer Tools, there is a possible missing verification incorrect input. This could lead to local escalation of privilege with no additional execution privileges needed.

πŸ“… Published: Aug. 18, 2025, 12:34 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.4

CVSS3.1

CVE-2025-31713 -

In engineer mode service, there is a possible command injection due to improper input validation. This could lead to local escalation of privilege with no additional execution privileges needed.

πŸ“… Published: Aug. 18, 2025, 12:34 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

4.8

CVSS4.0

CVE-2025-9098 - Elseplus File Recovery App AndroidManifest.xml improper export of android application components

A vulnerability was determined in Elseplus File Recovery App 4.4.21 on Android. Affected by this issue is some unknown functionality of the file AndroidManifest.xml. The manipulation leads to improper export of android application components. The attack needs to be approached locally. The exploit h…

πŸ“… Published: Aug. 18, 2025, 12:32 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

4.8

CVSS4.0

CVE-2025-9097 - Euro Information CIC banque et compte en ligne App com.cic_prod.bad AndroidManifest.xml improper ex…

A vulnerability was found in Euro Information CIC banque et compte en ligne App 12.56.0 on Android. Affected by this vulnerability is an unknown functionality of the file AndroidManifest.xml of the component com.cic_prod.bad. The manipulation leads to improper export of android application componen…

πŸ“… Published: Aug. 18, 2025, 12:02 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.3

CVSS3.1

CVE-2025-55584 -

TOTOLINK A3002R v4.0.0-B20230531.1404 was discovered to contain insecure credentials for the telnet service and root account.

πŸ“… Published: Aug. 18, 2025, midnight πŸ”„ Last Modified: Aug. 21, 2025, 2:10 p.m.

7.5

CVSS3.1

CVE-2025-55586 -

TOTOLINK A3002R v4.0.0-B20230531.1404 was discovered to contain a buffer overflow in the url parameter at /boafrm/formFilter. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.

πŸ“… Published: Aug. 18, 2025, midnight πŸ”„ Last Modified: Aug. 21, 2025, 2:10 p.m.

6.5

CVSS3.1

CVE-2025-55585 -

TOTOLINK A3002R v4.0.0-B20230531.1404 was discovered to contain an eval injection vulnerability via the eval() function.

πŸ“… Published: Aug. 18, 2025, midnight πŸ”„ Last Modified: Aug. 21, 2025, 2:10 p.m.

6.5

CVSS3.1

CVE-2025-55589 -

TOTOLINK A3002R v4.0.0-B20230531.1404 was discovered to contain multiple OS command injection vulnerabilities via the macstr, bandstr, and clientoff parameters at /boafrm/formMapDelDevice.

πŸ“… Published: Aug. 18, 2025, midnight πŸ”„ Last Modified: Aug. 21, 2025, 2:10 p.m.
Total resulsts: 349182
Page 4244 of 34,919
Β« previous page Β» next page
Filters