5.4

CVSS3.1

CVE-2025-52876 -

In JetBrains TeamCity before 2025.03.3 reflected XSS on the favoriteIcon page was possible

πŸ“… Published: June 23, 2025, 2:13 p.m. πŸ”„ Last Modified: June 25, 2025, 7:30 p.m.

5.4

CVSS3.1

CVE-2025-52875 -

In JetBrains TeamCity before 2025.03.3 a DOM-based XSS at the Performance Monitor page was possible

πŸ“… Published: June 23, 2025, 2:13 p.m. πŸ”„ Last Modified: June 27, 2025, 9:26 a.m.

6.6

CVSS4.0

CVE-2025-2172 -

Aviatrix Controller versions prior to 7.1.4208, 7.2.5090, and 8.0.0 fail to sanitize user input prior to passing the input to command line utilities, allowing command injection via special characters in filenames

πŸ“… Published: June 23, 2025, 2:01 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 5:50 p.m.

7.8

CVSS4.0

CVE-2025-2171 -

Aviatrix Controller versions prior to 7.1.4208, 7.2.5090, and 8.0.0 do not enforce rate limiting on password reset attempts, allowing adversaries to brute force guess the 6-digit password reset PIN

πŸ“… Published: June 23, 2025, 2:01 p.m. πŸ”„ Last Modified: June 27, 2025, 9:26 a.m.

0.0

CVE-2025-52542 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: June 23, 2025, 1:23 p.m. πŸ”„ Last Modified: June 23, 2025, 2:15 p.m.

10

CVSS3.1

CVE-2025-6512 - Scripts within reports executable on BRAIN2 Server

On a client with a non-admin user, a script can be integrated into a report. The reports could later be executed on the BRAIN2 server with administrator rights.

πŸ“… Published: June 23, 2025, 12:48 p.m. πŸ”„ Last Modified: July 14, 2025, 11:06 p.m.

9.3

CVSS3.1

CVE-2025-6513 - BRAIN2 Configuration file for database access not sufficiently secured

Standard Windows users can access the configuration file for database access of the BRAIN2 application and decrypt it.

πŸ“… Published: June 23, 2025, 12:37 p.m. πŸ”„ Last Modified: June 23, 2025, 8:16 p.m.

9.6

CVSS3.1

CVE-2024-45347 - Mi Connect Service APP protocol flaws lead to unauthorized access

An unauthorized access vulnerability exists in the Xiaomi Mi Connect Service APP. The vulnerability is caused by the validation logic is flawed and can be exploited by attackers to Unauthorized access to the victim’s device.

πŸ“… Published: June 23, 2025, 9:34 a.m. πŸ”„ Last Modified: June 27, 2025, 2:10 p.m.

7.4

CVSS3.1

CVE-2025-27387 - OPPO Clone Phone uses weak WPA passphrase as only means of security

OPPO Clone Phone uses a weak password WiFi hotspot to transfer files, resulting in Information disclosure.

πŸ“… Published: June 23, 2025, 9:28 a.m. πŸ”„ Last Modified: Jan. 6, 2026, 6:20 a.m.

9.4

CVSS4.0

CVE-2025-52935 - Integer Overflow or Wraparound vulnerability in dragonflydb/dragonfly

Integer Overflow or Wraparound vulnerability in dragonflydb dragonfly (src/redis/lua/struct modules). This vulnerability is associated with program files lua_struct.C. This issue affects dragonfly: 1.30.1, 1.30.0, 1.28.18.

πŸ“… Published: June 23, 2025, 9:27 a.m. πŸ”„ Last Modified: June 24, 2025, 9:44 a.m.
Total resulsts: 343984
Page 4395 of 34,399
Β« previous page Β» next page
Filters