6.9

CVSS4.0

CVE-2025-7533 - code-projects Job Diary view-details.php sql injection

A vulnerability was found in code-projects Job Diary 1.0 and classified as critical. This issue affects some unknown processing of the file /view-details.php. The manipulation of the argument job_id leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the …

πŸ“… Published: July 13, 2025, 4:32 p.m. πŸ”„ Last Modified: July 16, 2025, 2:55 p.m.

8.7

CVSS4.0

CVE-2025-7532 - Tenda FH1202 webExcptypemanFilter fromwebExcptypemanFilter stack-based overflow

A vulnerability has been found in Tenda FH1202 1.2.0.14(408) and classified as critical. This vulnerability affects the function fromwebExcptypemanFilter of the file /goform/webExcptypemanFilter. The manipulation of the argument page leads to stack-based buffer overflow. The attack can be initiated…

πŸ“… Published: July 13, 2025, 4:02 p.m. πŸ”„ Last Modified: July 16, 2025, 2:55 p.m.

8.7

CVSS4.0

CVE-2025-7531 - Tenda FH1202 PPTPUserSetting fromPptpUserSetting stack-based overflow

A vulnerability, which was classified as critical, was found in Tenda FH1202 1.2.0.14(408). This affects the function fromPptpUserSetting of the file /goform/PPTPUserSetting. The manipulation of the argument delno leads to stack-based buffer overflow. It is possible to initiate the attack remotely.…

πŸ“… Published: July 13, 2025, 3:32 p.m. πŸ”„ Last Modified: July 16, 2025, 2:56 p.m.

8.7

CVSS4.0

CVE-2025-7530 - Tenda FH1202 PPTPDClient fromPptpUserAdd stack-based overflow

A vulnerability, which was classified as critical, has been found in Tenda FH1202 1.2.0.14(408). Affected by this issue is the function fromPptpUserAdd of the file /goform/PPTPDClient. The manipulation of the argument Username leads to stack-based buffer overflow. The attack may be launched remotel…

πŸ“… Published: July 13, 2025, 3:02 p.m. πŸ”„ Last Modified: July 16, 2025, 2:56 p.m.

8.7

CVSS4.0

CVE-2025-7529 - Tenda FH1202 Natlimit fromNatlimit stack-based overflow

A vulnerability classified as critical was found in Tenda FH1202 1.2.0.14(408). Affected by this vulnerability is the function fromNatlimit of the file /goform/Natlimit. The manipulation of the argument page leads to stack-based buffer overflow. The attack can be launched remotely. The exploit has …

πŸ“… Published: July 13, 2025, 12:02 p.m. πŸ”„ Last Modified: July 16, 2025, 2:56 p.m.

8.7

CVSS4.0

CVE-2025-7528 - Tenda FH1202 GstDhcpSetSer fromGstDhcpSetSer stack-based overflow

A vulnerability classified as critical has been found in Tenda FH1202 1.2.0.14(408). Affected is the function fromGstDhcpSetSer of the file /goform/GstDhcpSetSer. The manipulation of the argument dips leads to stack-based buffer overflow. It is possible to launch the attack remotely. The exploit ha…

πŸ“… Published: July 13, 2025, 11:32 a.m. πŸ”„ Last Modified: July 16, 2025, 2:57 p.m.

8.7

CVSS4.0

CVE-2025-7527 - Tenda FH1202 AdvSetWan fromAdvSetWan stack-based overflow

A vulnerability was found in Tenda FH1202 1.2.0.14(408). It has been rated as critical. This issue affects the function fromAdvSetWan of the file /goform/AdvSetWan. The manipulation of the argument PPPOEPassword leads to stack-based buffer overflow. The attack may be initiated remotely. The exploit…

πŸ“… Published: July 13, 2025, 10:32 a.m. πŸ”„ Last Modified: July 16, 2025, 2:57 p.m.

5.3

CVSS4.0

CVE-2025-7525 - TOTOLINK T6 HTTP POST Request cstecgi.cgi setTracerouteCfg command injection

A vulnerability was found in TOTOLINK T6 4.1.5cu.748_B20211015. It has been declared as critical. This vulnerability affects the function setTracerouteCfg of the file /cgi-bin/cstecgi.cgi of the component HTTP POST Request Handler. The manipulation of the argument command leads to command injection…

πŸ“… Published: July 13, 2025, 9:32 a.m. πŸ”„ Last Modified: July 15, 2025, 8:15 p.m.

5.3

CVSS4.0

CVE-2025-7524 - TOTOLINK T6 HTTP POST Request cstecgi.cgi setDiagnosisCfg command injection

A vulnerability was found in TOTOLINK T6 4.1.5cu.748_B20211015. It has been classified as critical. This affects the function setDiagnosisCfg of the file /cgi-bin/cstecgi.cgi of the component HTTP POST Request Handler. The manipulation of the argument ip leads to command injection. It is possible t…

πŸ“… Published: July 13, 2025, 9:02 a.m. πŸ”„ Last Modified: July 15, 2025, 8:15 p.m.

8.6

CVSS4.0

CVE-2025-7012 - Cato Networks Linux Client Local Privilege Escalation via Symlink

An issue in Cato Networks' CatoClient for Linux, before version 5.5, allows a local attacker to escalate privileges to root by exploiting improper symbolic link handling.

πŸ“… Published: July 13, 2025, 8:12 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 4662 of 34,919
Β« previous page Β» next page
Filters