6.5

CVSS3.1

CVE-2024-42649 -

NanoMQ v0.22.10 was discovered to contain a memory leak which allows attackers to cause a Denial of Service (DoS) via a crafted PUBLISH message.

πŸ“… Published: July 14, 2025, midnight πŸ”„ Last Modified: July 16, 2025, 6:15 p.m.

6.8

CVSS3.1

CVE-2025-52363 -

Tenda CP3 Pro Firmware V22.5.4.93 contains a hardcoded root password hash in the /etc/passwd file and /etc/passwd-. An attacker with access to the firmware image can extract and attempt to crack the root password hash, potentially obtaining administrative access

πŸ“… Published: July 14, 2025, midnight πŸ”„ Last Modified: Aug. 2, 2025, 1:36 a.m.

5.4

CVSS3.1

CVE-2025-51657 -

SemCms v5.0 was discovered to contain a SQL injection vulnerability via the lgid parameter at SEMCMS_Link.php.

πŸ“… Published: July 14, 2025, midnight πŸ”„ Last Modified: July 15, 2025, 4:43 p.m.

6.5

CVSS3.1

CVE-2024-42648 -

NanoMQ v0.22.10 was discovered to contain a heap overflow which allows attackers to cause a Denial of Service (DoS) via a crafted CONNECT message.

πŸ“… Published: July 14, 2025, midnight πŸ”„ Last Modified: July 16, 2025, 7:15 p.m.

5.4

CVSS3.1

CVE-2025-51658 -

SemCms v5.0 was discovered to contain a SQL injection vulnerability via the ID parameter at SEMCMS_InquiryView.php.

πŸ“… Published: July 14, 2025, midnight πŸ”„ Last Modified: July 15, 2025, 4:42 p.m.

4.3

CVSS3.1

CVE-2025-29606 -

py-libp2p before 0.2.3 allows a peer to cause a denial of service (resource consumption) via a large RSA key.

πŸ“… Published: July 14, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.5

CVSS3.1

CVE-2025-51651 -

An authenticated arbitrary file download vulnerability in the component /admin/Backups.php of Mccms v2.7.0 allows attackers to download arbitrary files via a crafted GET request.

πŸ“… Published: July 14, 2025, midnight πŸ”„ Last Modified: July 17, 2025, 1:27 p.m.

7.5

CVSS3.1

CVE-2024-42646 -

A segmentation fault in NanoMQ v0.21.10 allows attackers to cause a Denial of Service (DoS) via crafted messages.

πŸ“… Published: July 14, 2025, midnight πŸ”„ Last Modified: July 16, 2025, 7:15 p.m.

5.1

CVSS4.0

CVE-2025-7553 - D-Link DIR-818LW System Time Page os command injection

A vulnerability classified as critical has been found in D-Link DIR-818LW up to 20191215. This affects an unknown part of the component System Time Page. The manipulation of the argument NTP Server leads to os command injection. It is possible to initiate the attack remotely. The exploit has been d…

πŸ“… Published: July 13, 2025, 11:44 p.m. πŸ”„ Last Modified: July 18, 2025, 1:10 p.m.

7

CVSS3.1

CVE-2025-1384 - Least Privilege Violation Vulnerability in the communications functions of NJ/NX-series Machine Aut…

Least Privilege Violation (CWE-272) Vulnerability exists in the communication function between the NJ/NX-series Machine Automation Controllers and the Sysmac Studio Software. An attacker may use this vulnerability to perform unauthorized access and to execute unauthorized code remotely to the contr…

πŸ“… Published: July 13, 2025, 11:42 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 4659 of 34,919
Β« previous page Β» next page
Filters