6.9

CVSS4.0

CVE-2025-6955 - Campcodes Employee Management System aprocess.php sql injection

A vulnerability was found in Campcodes Employee Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /process/aprocess.php. The manipulation of the argument mailuid leads to sql injection. The attack may be launched remotely. The exploit…

📅 Published: July 1, 2025, 2:02 p.m. 🔄 Last Modified: July 7, 2025, 2:38 p.m.

6.9

CVSS4.0

CVE-2025-6954 - Campcodes Employee Management System applyleave.php sql injection

A vulnerability has been found in Campcodes Employee Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /applyleave.php. The manipulation of the argument ID leads to sql injection. The attack can be launched remotely. The exploit…

📅 Published: July 1, 2025, 1:32 p.m. 🔄 Last Modified: July 7, 2025, 2:38 p.m.

8.7

CVSS4.0

CVE-2025-6953 - TOTOLINK A3002RU HTTP POST Request formParentControl buffer overflow

A vulnerability, which was classified as critical, was found in TOTOLINK A3002RU 3.0.0-B20230809.1615. Affected is an unknown function of the file /boafrm/formParentControl of the component HTTP POST Request Handler. The manipulation of the argument submit-url leads to buffer overflow. It is possib…

📅 Published: July 1, 2025, 1:32 p.m. 🔄 Last Modified: July 7, 2025, 2:38 p.m.

9.1

CVSS3.1

CVE-2025-49029 - WordPress Custom Login And Signup Widget plugin <= 1.0 - Arbitrary Code Execution vulnerability

Improper Control of Generation of Code ('Code Injection') vulnerability in bitto.kazi Custom Login And Signup Widget custom-login-and-signup-widget allows Code Injection.This issue affects Custom Login And Signup Widget: from n/a through <= 1.0.

📅 Published: July 1, 2025, 1:27 p.m. 🔄 Last Modified: April 23, 2026, 3:31 p.m.

4.8

CVSS3.1

CVE-2025-36582 -

Dell NetWorker, versions 19.12.0.1 and prior, contains a Selection of Less-Secure Algorithm During Negotiation ('Algorithm Downgrade') vulnerability. An unauthenticated attacker with remote access could potentially exploit this vulnerability, leading to Information disclosure.

📅 Published: July 1, 2025, 1:12 p.m. 🔄 Last Modified: Aug. 14, 2025, 8:53 p.m.

4.8

CVSS4.0

CVE-2025-6952 - Open5GS AMF Service amf-sm.c amf_state_operational assertion

A vulnerability, which was classified as problematic, has been found in Open5GS up to 2.7.5. This issue affects the function amf_state_operational of the file src/amf/amf-sm.c of the component AMF Service. The manipulation leads to reachable assertion. It is possible to launch the attack on the loc…

📅 Published: July 1, 2025, 11:32 a.m. 🔄 Last Modified: July 6, 2025, 10:16 p.m.

5.3

CVSS4.0

CVE-2025-6951 - SAFECAM X300 FTP Service default credentials

A vulnerability classified as problematic was found in SAFECAM X300 up to 20250611. This vulnerability affects unknown code of the component FTP Service. The manipulation leads to use of default credentials. Access to the local network is required for this attack to succeed. The exploit has been di…

📅 Published: July 1, 2025, 11:32 a.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

5.4

CVSS3.1

CVE-2025-49483 - Resource leaks in tr069

Improper Resource Shutdown or Release vulnerability in ASR180x 、ASR190x in tr069 modules allows Resource Leak Exposure. This vulnerability is associated with program files tr069/tr069_uci.c. This issue affects Falcon_Linux、Kestrel、Lapwing_Linux: before v1536.

📅 Published: July 1, 2025, 11:31 a.m. 🔄 Last Modified: Jan. 12, 2026, 3:29 p.m.

5.4

CVSS3.1

CVE-2025-49482 - Resource leaks in tr069

Improper Resource Shutdown or Release vulnerability in ASR180x 、ASR190x in tr069 modules allows Resource Leak Exposure. This vulnerability is associated with program files tr069/tr098.c. This issue affects Falcon_Linux、Kestrel、Lapwing_Linux: before v1536.

📅 Published: July 1, 2025, 11:28 a.m. 🔄 Last Modified: Jan. 12, 2026, 3:29 p.m.

6.1

CVSS3.1

CVE-2025-5314 - Dear Flipbook – PDF Flipbook, 3D Flipbook, PDF embed, PDF viewer <= 2.3.65 - DOM-Based Reflected Cr…

The Dear Flipbook – PDF Flipbook, 3D Flipbook, PDF embed, PDF viewer plugin for WordPress is vulnerable to DOM-Based Reflected Cross-Site Scripting via the ‘pdf-source’ parameter in all versions up to, and including, 2.3.65 due to insufficient input sanitization and output escaping. This makes it p…

📅 Published: July 1, 2025, 11:27 a.m. 🔄 Last Modified: April 21, 2026, 8 p.m.
Total resulsts: 349182
Page 4827 of 34,919
« previous page » next page
Filters