9.6

CVSS3.1

CVE-2025-41420 -

A cross-site scripting (xss) vulnerability exists in the userLogin cancelUri parameter functionality of WWBN AVideo 14.4 and dev master commit 8a8954ff. A specially crafted HTTP request can lead to arbitrary Javascript execution. An attacker can get a user to visit a webpage to trigger this vulnera…

πŸ“… Published: July 24, 2025, 3:11 p.m. πŸ”„ Last Modified: Nov. 3, 2025, 8:18 p.m.

8.8

CVSS3.1

CVE-2025-25214 -

A race condition vulnerability exists in the aVideoEncoder.json.php unzip functionality of WWBN AVideo 14.4 and dev master commit 8a8954ff. A series of specially crafted HTTP request can lead to arbitrary code execution.

πŸ“… Published: July 24, 2025, 3:10 p.m. πŸ”„ Last Modified: Nov. 3, 2025, 8:17 p.m.

7.3

CVSS3.1

CVE-2025-48732 -

An incomplete blacklist exists in the .htaccess sample of WWBN AVideo 14.4 and dev master commit 8a8954ff. A specially crafted HTTP request can lead to a arbitrary code execution. An attacker can request a .phar file to trigger this vulnerability.

πŸ“… Published: July 24, 2025, 3:10 p.m. πŸ”„ Last Modified: Nov. 3, 2025, 8:19 p.m.

7.5

CVSS3.1

CVE-2025-33109 - IBM i privilege escalation

IBM i 7.2, 7.3, 7.4, 7.5, and 7.6 is vulnerable to a privilege escalation caused by an invalid database authority check. A bad actor could execute a database procedure or function without having all required permissions, in addition to causing denial of service for some database actions.

πŸ“… Published: July 24, 2025, 3:06 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 5:50 p.m.

6.2

CVSS3.1

CVE-2025-33013 - IBM MQ Operator information disclosure

IBM MQ Operator LTS 2.0.0 through 2.0.29, MQ Operator CD 3.0.0, 3.0.1, 3.1.0 through 3.1.3, 3.3.0, 3.4.0, 3.4.1, 3.5.0, 3.5.1, 3.6.0, and MQ Operator SC2 3.2.0 through 3.2.13 Container could disclose sensitive information to a local user due to improper clearing of heap memory before release.

πŸ“… Published: July 24, 2025, 2:55 p.m. πŸ”„ Last Modified: Aug. 22, 2025, 6:10 p.m.

5.9

CVSS3.1

CVE-2025-36005 - IBM MQ Operator information disclosure

IBM MQ Operator LTS 2.0.0 through 2.0.29, MQ Operator CD 3.0.0, 3.0.1, 3.1.0 through 3.1.3, 3.3.0, 3.4.0, 3.4.1, 3.5.0, 3.5.1, 3.6.0, and MQ Operator SC2 3.2.0 through 3.2.13 Internet Pass-Thru could allow a malicious user to obtain sensitive information from another TLS session connection by the p…

πŸ“… Published: July 24, 2025, 2:52 p.m. πŸ”„ Last Modified: Aug. 22, 2025, 6:08 p.m.

9.8

CVSS3.1

CVE-2025-4784 - SQLi in Moderec's Tourtella

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Moderec Tourtella allows SQL Injection.This issue affects Tourtella: before 26.05.2025.

πŸ“… Published: July 24, 2025, 1:27 p.m. πŸ”„ Last Modified: July 28, 2025, 2:43 p.m.

9.8

CVSS3.1

CVE-2025-4822 - SQLi in Bayraktar Solar Energies' ScadaWatt Otopilot

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Bayraktar Solar Energies ScadaWatt Otopilot allows SQL Injection.This issue affects ScadaWatt Otopilot: before 27.05.2025.

πŸ“… Published: July 24, 2025, 12:56 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

10

CVSS3.1

CVE-2025-5243 - Arbitrary File Upload in SMG Software's Information Portal

Unrestricted Upload of File with Dangerous Type, Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in SMG Software Information Portal allows Code Injection, Upload a Web Shell to a Web Server, Code Inclusion.This issue affects Information Porta…

πŸ“… Published: July 24, 2025, 12:45 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.9

CVSS4.0

CVE-2025-40680 - Encryption of sensitive data in CapillaryScope missing

Lack of sensitive data encryption in CapillaryScope v2.5.0 of Capillary io, which stores both the proxy credentials and the JWT session token in plain text within different registry keys on the Windows operating system. Any authenticated local user with read access to the registry can extract these…

πŸ“… Published: July 24, 2025, 12:14 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 4530 of 34,919
Β« previous page Β» next page
Filters