6.9

CVSS4.0

CVE-2025-7191 - code-projects Student Enrollment System login.php sql injection

A vulnerability has been found in code-projects Student Enrollment System 1.0 and classified as critical. This vulnerability affects unknown code of the file /login.php. The manipulation of the argument Username leads to sql injection. The attack can be initiated remotely. The exploit has been disc…

πŸ“… Published: July 8, 2025, 7:02 p.m. πŸ”„ Last Modified: July 11, 2025, 5:13 p.m.

4.3

CVSS3.1

CVE-2025-27369 - IBM OpenPages with Watson information disclosure

IBM OpenPages with Watson 8.3 and 9.0 is vulnerable to information disclosure of sensitive information due to a weaker than expected security for certain REST end points used for the administration of OpenPages. An authenticated user is able to obtain certain information about system config…

πŸ“… Published: July 8, 2025, 6:43 p.m. πŸ”„ Last Modified: Aug. 24, 2025, 11:22 a.m.

5.3

CVSS3.1

CVE-2025-27367 - IBM OpenPages with Watson improper input validation

IBM OpenPages with Watson 8.3 and 9.0 is vulnerable to improper input validation due to bypassing of client-side validation for the data types and requiredness of fields for GRC Objects when an authenticated user sends a specially crafted payload to the server allowing for data to be saved wi…

πŸ“… Published: July 8, 2025, 6:42 p.m. πŸ”„ Last Modified: Aug. 24, 2025, 11:23 a.m.

5.3

CVSS3.1

CVE-2024-49783 - IBM OpenPages with Watson information disclosure

IBM OpenPages with Watson 8.3 and 9.0 could provide weaker than expected security in storage of encrypted data. If an authenticated remote attacker with access to the database or a local attacker with access to server files could extract the encrypted data, they could exploit this vulnerability…

πŸ“… Published: July 8, 2025, 6:36 p.m. πŸ”„ Last Modified: Aug. 24, 2025, 11:21 a.m.

5.3

CVSS3.1

CVE-2024-49784 - IBM OpenPages with Watson information disclosure

IBM OpenPages with Watson 8.3 and 9.0 could provide weaker than expected security in storage of encrypted data with AES encryption and CBC mode. If an authenticated remote attacker with access to the database or a local attacker with access to server files could extract the encrypted data values …

πŸ“… Published: July 8, 2025, 6:35 p.m. πŸ”„ Last Modified: Aug. 24, 2025, 11:21 a.m.

5.3

CVSS4.0

CVE-2025-7190 - code-projects Library Management System student_edit_photo.php unrestricted upload

A vulnerability, which was classified as critical, was found in code-projects Library Management System 2.0. This affects an unknown part of the file /admin/student_edit_photo.php. The manipulation of the argument photo leads to unrestricted upload. It is possible to initiate the attack remotely. T…

πŸ“… Published: July 8, 2025, 6:32 p.m. πŸ”„ Last Modified: Oct. 23, 2025, 8:06 p.m.

6.1

CVSS3.1

CVE-2023-43039 - IBM OpenPages with Watson cross-site scripting

IBM OpenPages with Watson 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session

πŸ“… Published: July 8, 2025, 6:25 p.m. πŸ”„ Last Modified: Aug. 17, 2025, 12:04 a.m.

8.1

CVSS3.1

CVE-2025-48384 - Git allows arbitrary code execution through broken config quoting

Git is a fast, scalable, distributed revision control system with an unusually rich command set that provides both high-level operations and full access to internals. When reading a config value, Git strips any trailing carriage return and line feed (CRLF). When writing a config entry, values with …

πŸ“… Published: July 8, 2025, 6:23 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 5:51 p.m.

8.6

CVSS4.0

CVE-2025-48385 - Git alllows arbitrary file writes via bundle-uri parameter injection

Git is a fast, scalable, distributed revision control system with an unusually rich command set that provides both high-level operations and full access to internals. When cloning a repository Git knows to optionally fetch a bundle advertised by the remote server, which allows the server-side to of…

πŸ“… Published: July 8, 2025, 6:23 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.3

CVSS3.1

CVE-2025-48386 - Git allows a buffer overflow in 'wincred' credential helper

Git is a fast, scalable, distributed revision control system with an unusually rich command set that provides both high-level operations and full access to internals. The wincred credential helper uses a static buffer (target) as a unique key for storing and comparing against internal storage. This…

πŸ“… Published: July 8, 2025, 6:23 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 4721 of 34,919
Β« previous page Β» next page
Filters