6.9

CVSS4.0

CVE-2025-7436 - Campcodes Online Recruitment Management System ajax.php sql injection

A vulnerability was found in Campcodes Online Recruitment Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /admin/ajax.php?action=delete_vacancy. The manipulation of the argument ID leads to sql injection. The attack can be initiated remot…

πŸ“… Published: July 11, 2025, 3:02 a.m. πŸ”„ Last Modified: July 16, 2025, 4:42 p.m.

5.1

CVSS4.0

CVE-2025-7435 - LiveHelperChat lhc-php-resque Extension List list cross site scripting

A vulnerability was found in LiveHelperChat lhc-php-resque Extension up to ee1270b35625f552425e32a6a3061cd54b5085c4. It has been classified as problematic. This affects an unknown part of the file /site_admin/lhcphpresque/list/ of the component List Handler. The manipulation of the argument queue n…

πŸ“… Published: July 11, 2025, 2:02 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.7

CVSS4.0

CVE-2025-7434 - Tenda FH451 POST Request addressNat fromAddressNat stack-based overflow

A vulnerability was found in Tenda FH451 up to 1.0.0.9 and classified as critical. Affected by this issue is the function fromAddressNat of the file /goform/addressNat of the component POST Request Handler. The manipulation of the argument page leads to stack-based buffer overflow. The attack may b…

πŸ“… Published: July 11, 2025, 1:32 a.m. πŸ”„ Last Modified: July 16, 2025, 4:43 p.m.

8.7

CVSS4.0

CVE-2025-7423 - Tenda O3V2 httpd setWrlFilterList formWifiMacFilterSet stack-based overflow

A vulnerability classified as critical was found in Tenda O3V2 1.0.0.12(3880). Affected by this vulnerability is the function formWifiMacFilterSet of the file /goform/setWrlFilterList of the component httpd. The manipulation of the argument macList leads to stack-based buffer overflow. The attack c…

πŸ“… Published: July 11, 2025, 1:02 a.m. πŸ”„ Last Modified: July 16, 2025, 4:43 p.m.

8.7

CVSS4.0

CVE-2025-7422 - Tenda O3V2 httpd setNetworkService setAutoReboot stack-based overflow

A vulnerability classified as critical has been found in Tenda O3V2 1.0.0.12(3880). Affected is the function setAutoReboot of the file /goform/setNetworkService of the component httpd. The manipulation of the argument week leads to stack-based buffer overflow. It is possible to launch the attack re…

πŸ“… Published: July 11, 2025, 12:32 a.m. πŸ”„ Last Modified: July 16, 2025, 4:43 p.m.

5.3

CVSS3.1

CVE-2025-5241 - Denial-of-Service Vulnerability in MELSEC iQ-F Series

Overly Restrictive Account Lockout Mechanism vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series allows a remote unauthenticated attacker to lockout legitimate users for a certain period by repeatedly attempting to login with incorrect passwords. The legitimate users will be unable …

πŸ“… Published: July 11, 2025, 12:16 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.7

CVSS4.0

CVE-2025-7421 - Tenda O3V2 httpd operateMacFilter fromMacFilterModify stack-based overflow

A vulnerability was found in Tenda O3V2 1.0.0.12(3880). It has been rated as critical. This issue affects the function fromMacFilterModify of the file /goform/operateMacFilter of the component httpd. The manipulation of the argument mac leads to stack-based buffer overflow. The attack may be initia…

πŸ“… Published: July 11, 2025, 12:02 a.m. πŸ”„ Last Modified: July 16, 2025, 4:43 p.m.

8.3

CVSS3.1

CVE-2013-3307 -

Linksys E1000 devices through 2.1.02, E1200 devices before 2.0.05, and E3200 devices through 1.0.04 allow OS command injection via shell metacharacters in the apply.cgi ping_ip parameter on TCP port 52000.

πŸ“… Published: July 11, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.8

CVSS3.1

CVE-2025-52089 -

A hidden remote support feature protected by a static secret in TOTOLINK N300RB firmware version 8.54 allows an authenticated attacker to execute arbitrary OS commands with root privileges.

πŸ“… Published: July 11, 2025, midnight πŸ”„ Last Modified: July 19, 2025, 3:15 a.m.

4.1

CVSS3.1

CVE-2025-45582 - tar: Tar path traversal

GNU Tar through 1.35 allows file overwrite via directory traversal in crafted TAR archives, with a certain two-step process. First, the victim must extract an archive that contains a ../ symlink to a critical directory. Second, the victim must extract an archive that contains a critical file, speci…

πŸ“… Published: July 11, 2025, midnight πŸ”„ Last Modified: Nov. 2, 2025, 1:15 a.m.
Total resulsts: 349182
Page 4678 of 34,919
Β« previous page Β» next page
Filters