6.8

CVSS3.1

CVE-2025-3705 - OS Command Injection via USB Config Load

A physical attacker with no privileges can gain full control of the affected device due to improper neutralization of special elements used in an OS Command ('OS Command Injection') when loading a config file from a USB drive.

πŸ“… Published: July 7, 2025, 9:20 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.1

CVSS3.1

CVE-2025-3626 - OS Command Injection via Config Upload in WebUI

A remote attacker with administrator account can gain full control of the device due to improper neutralization of special elements used in an OS Command ('OS Command Injection') while uploading a config file via webUI.

πŸ“… Published: July 7, 2025, 9:19 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.3

CVSS4.0

CVE-2025-7121 - Campcodes Complaint Management System complaint-details.php sql injection

A vulnerability was found in Campcodes Complaint Management System 1.0. It has been classified as critical. This affects an unknown part of the file /users/complaint-details.php. The manipulation of the argument cid leads to sql injection. It is possible to initiate the attack remotely. The exploit…

πŸ“… Published: July 7, 2025, 9:02 a.m. πŸ”„ Last Modified: July 8, 2025, 6:29 p.m.

6.9

CVSS4.0

CVE-2025-7120 - Campcodes Complaint Management System check_availability.php sql injection

A vulnerability was found in Campcodes Complaint Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /users/check_availability.php. The manipulation of the argument email leads to sql injection. The attack may be launched remotely. The …

πŸ“… Published: July 7, 2025, 8:32 a.m. πŸ”„ Last Modified: July 15, 2025, 2:58 p.m.

8.5

CVSS4.0

CVE-2025-3920 - Hard-coded Password in SUR-FBD CMMS

A vulnerability was identified in SUR-FBD CMMS where hard-coded credentials were found within a compiled DLL file. These credentials correspond to a built-in administrative account of the software. An attacker with local access to the system or the application's installation directory could extract…

πŸ“… Published: July 7, 2025, 8:21 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.9

CVSS4.0

CVE-2025-7119 - Campcodes Complaint Management System index.php sql injection

A vulnerability has been found in Campcodes Complaint Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /users/index.php. The manipulation of the argument Username leads to sql injection. The attack can be launched remotely. The…

πŸ“… Published: July 7, 2025, 8:02 a.m. πŸ”„ Last Modified: July 9, 2025, 3:26 p.m.

0.0

CVE-2025-53614 -

Not used

πŸ“… Published: July 7, 2025, 7:40 a.m. πŸ”„ Last Modified: July 8, 2025, 3:15 a.m.

0.0

CVE-2025-53617 -

Not used

πŸ“… Published: July 7, 2025, 7:40 a.m. πŸ”„ Last Modified: July 8, 2025, 3:15 a.m.

0.0

CVE-2025-53615 -

Not used

πŸ“… Published: July 7, 2025, 7:40 a.m. πŸ”„ Last Modified: July 8, 2025, 3:15 a.m.

0.0

CVE-2025-53616 -

Not used

πŸ“… Published: July 7, 2025, 7:40 a.m. πŸ”„ Last Modified: July 8, 2025, 3:15 a.m.
Total resulsts: 345165
Page 4368 of 34,517
Β« previous page Β» next page
Filters