4.8

CVSS4.0

CVE-2025-5963 - TCC Bypass via Dylib Injection in Postbox

The Postbox's configuration on macOS, specifically the presence of entitlements: "com.apple.security.cs.allow-dyld-environment-variables" and "com.apple.security.cs.disable-library-validation" allows for Dynamic Library (Dylib) injection. A local attacker with unprivileged access can use environmen…

📅 Published: June 20, 2025, 10:01 a.m. 🔄 Last Modified: June 23, 2025, 8:16 p.m.

4.8

CVSS4.0

CVE-2025-5255 - TCC Bypass via Dylib Injection in Phoenix Code

The Phoenix Code's configuration on macOS, specifically the presence of entitlements: "com.apple.security.cs.allow-dyld-environment-variables" and "com.apple.security.cs.disable-library-validation" allows for Dynamic Library (Dylib) injection. A local attacker with unprivileged access can use envir…

📅 Published: June 20, 2025, 10:01 a.m. 🔄 Last Modified: Jan. 21, 2026, 12:15 p.m.

5.3

CVSS4.0

CVE-2025-6331 - PHPGurukul Directory Management System search-directory.php sql injection

A vulnerability classified as critical was found in PHPGurukul Directory Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/search-directory.php. The manipulation of the argument searchdata leads to sql injection. The attack can be launched remotely…

📅 Published: June 20, 2025, 10 a.m. 🔄 Last Modified: June 26, 2025, 6:46 p.m.

6.9

CVSS4.0

CVE-2025-6330 - PHPGurukul Directory Management System searchdata.php sql injection

A vulnerability classified as critical has been found in PHPGurukul Directory Management System 1.0. Affected is an unknown function of the file /searchdata.php. The manipulation of the argument searchdata leads to sql injection. It is possible to launch the attack remotely. The exploit has been di…

📅 Published: June 20, 2025, 10 a.m. 🔄 Last Modified: June 26, 2025, 6:48 p.m.

5.3

CVSS4.0

CVE-2025-6329 - ScriptAndTools Real Estate Management System User Delete userdelete.php authorization

A vulnerability was found in ScriptAndTools Real Estate Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file userdelete.php of the component User Delete Handler. The manipulation of the argument ID leads to authorization bypass. The attack may…

📅 Published: June 20, 2025, 9:31 a.m. 🔄 Last Modified: July 18, 2025, 12:40 p.m.

8.7

CVSS4.0

CVE-2025-6328 - D-Link DIR-815 hedwig.cgi sub_403794 stack-based overflow

A vulnerability was found in D-Link DIR-815 1.01. It has been declared as critical. This vulnerability affects the function sub_403794 of the file hedwig.cgi. The manipulation leads to stack-based buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public an…

📅 Published: June 20, 2025, 9:31 a.m. 🔄 Last Modified: July 11, 2025, 3:52 p.m.

6.9

CVSS4.0

CVE-2025-6323 - PHPGurukul Pre-School Enrollment System enrollment.php sql injection

A vulnerability was found in PHPGurukul Pre-School Enrollment System 1.0. It has been classified as critical. This affects an unknown part of the file /enrollment.php. The manipulation of the argument fathername leads to sql injection. It is possible to initiate the attack remotely. The exploit has…

📅 Published: June 20, 2025, 9 a.m. 🔄 Last Modified: June 26, 2025, 6:51 p.m.

6.9

CVSS4.0

CVE-2025-6322 - PHPGurukul Pre-School Enrollment System visit.php sql injection

A vulnerability was found in PHPGurukul Pre-School Enrollment System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /visit.php. The manipulation of the argument gname leads to sql injection. The attack may be launched remotely. The exploit has been …

📅 Published: June 20, 2025, 9 a.m. 🔄 Last Modified: June 26, 2025, 9:08 p.m.

5.3

CVSS4.0

CVE-2025-6321 - PHPGurukul Pre-School Enrollment System add-subadmin.php sql injection

A vulnerability has been found in PHPGurukul Pre-School Enrollment System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/add-subadmin.php. The manipulation of the argument sadminusername leads to sql injection. The attack can be launche…

📅 Published: June 20, 2025, 8:31 a.m. 🔄 Last Modified: June 26, 2025, 9:08 p.m.

5.3

CVSS4.0

CVE-2025-6320 - PHPGurukul Pre-School Enrollment System add-class.php sql injection

A vulnerability, which was classified as critical, was found in PHPGurukul Pre-School Enrollment System 1.0. Affected is an unknown function of the file /admin/add-class.php. The manipulation of the argument classname leads to sql injection. It is possible to launch the attack remotely. The exploit…

📅 Published: June 20, 2025, 8:31 a.m. 🔄 Last Modified: June 26, 2025, 9:08 p.m.
Total resulsts: 343919
Page 4419 of 34,392
« previous page » next page
Filters