6.9

CVSS4.0

CVE-2025-7752 - code-projects Online Appointment Booking System deletedoctor.php sql injection

A vulnerability was found in code-projects Online Appointment Booking System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/deletedoctor.php. The manipulation of the argument did leads to sql injection. The attack may be launched remotely. Th…

πŸ“… Published: July 17, 2025, 7:32 p.m. πŸ”„ Last Modified: July 18, 2025, 6:25 p.m.

3.5

CVSS3.1

CVE-2024-42209 - HCL Connections is vulnerable to an information disclosure vulnerability

HCL Connections is vulnerable to an information disclosure vulnerability that could allow a user to obtain sensitive information they are not entitled to, which is caused by improper handling of request data.

πŸ“… Published: July 17, 2025, 7:24 p.m. πŸ”„ Last Modified: Oct. 29, 2025, 2:58 p.m.

8.4

CVSS4.0

CVE-2025-4657 -

A buffer overflow vulnerability was reported in the Lenovo Protection Driver, prior to version 5.1.1110.4231, used in Lenovo PC Manager, Lenovo Browser, and Lenovo App Store could allow a local attacker with elevated privileges to execute arbitrary code.

πŸ“… Published: July 17, 2025, 7:22 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.4

CVSS4.0

CVE-2025-6249 -

An authentication bypass vulnerability was reported in FileZ client application that could allow a local attacker with elevated permissions access to application data.

πŸ“… Published: July 17, 2025, 7:20 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.1

CVSS4.0

CVE-2025-6248 -

A cross-site scripting (XSS) vulnerability was reported in the Lenovo Browser that could allow an attacker to obtain sensitive information if a user visits a web page with specially crafted content.

πŸ“… Published: July 17, 2025, 7:19 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.5

CVSS4.0

CVE-2025-6232 -

An improper validation vulnerability was reported in Lenovo Vantage that under certain conditions could allow a local attacker to execute code with elevated permissions by modifying specific registry locations.

πŸ“… Published: July 17, 2025, 7:19 p.m. πŸ”„ Last Modified: July 22, 2025, 5:05 p.m.

8.5

CVSS4.0

CVE-2025-6231 -

An improper validation vulnerability was reported in Lenovo Vantage that under certain conditions could allow a local attacker to execute code with elevated permissions by modifying an application configuration file.

πŸ“… Published: July 17, 2025, 7:19 p.m. πŸ”„ Last Modified: July 22, 2025, 5:05 p.m.

4.8

CVSS4.0

CVE-2025-6230 -

A SQL injection vulnerability was reported in Lenovo Vantage that could allow a local attacker to modify the local SQLite database and execute limited SQLite commands.

πŸ“… Published: July 17, 2025, 7:19 p.m. πŸ”„ Last Modified: Aug. 19, 2025, 4:32 p.m.

5.1

CVSS4.0

CVE-2025-2818 -

A vulnerability was reported in version 1.0 of the Bluetooth Transmission Alliance protocol adopted by Motorola Smart Connect Android Application that could allow a nearby attacker within the Bluetooth interaction range to intercept files when transferred to a device not paired in Smart Connect.

πŸ“… Published: July 17, 2025, 7:17 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.4

CVSS4.0

CVE-2025-1729 -

A DLL hijacking vulnerability was reported in TrackPoint Quick Menu software that, under certain conditions, could allow a local attacker to escalate privileges.

πŸ“… Published: July 17, 2025, 7:17 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 4605 of 34,919
Β« previous page Β» next page
Filters