5

CVSS3.1

CVE-2025-48917 - EU Cookie Compliance (GDPR Compliance) - Moderately critical - Cross Site Scripting - SA-CONTRIB-20…

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal EU Cookie Compliance (GDPR Compliance) allows Cross-Site Scripting (XSS).This issue affects EU Cookie Compliance (GDPR Compliance): from 0.0.0 before 1.26.0.

πŸ“… Published: June 13, 2025, 3:38 p.m. πŸ”„ Last Modified: July 8, 2025, 8:35 p.m.

8.8

CVSS3.1

CVE-2025-48918 - Simple Klaro - Moderately critical - Cross Site Scripting - SA-CONTRIB-2025-071

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Simple Klaro allows Cross-Site Scripting (XSS).This issue affects Simple Klaro: from 0.0.0 before 1.10.0.

πŸ“… Published: June 13, 2025, 3:38 p.m. πŸ”„ Last Modified: July 17, 2025, 4:10 p.m.

6.5

CVSS3.1

CVE-2025-48916 - Bookable Calendar - Less critical - Access bypass - SA-CONTRIB-2025-070

Missing Authorization vulnerability in Drupal Bookable Calendar allows Forceful Browsing.This issue affects Bookable Calendar: from 0.0.0 before 2.2.13.

πŸ“… Published: June 13, 2025, 3:35 p.m. πŸ”„ Last Modified: July 10, 2025, 12:16 p.m.

9.4

CVSS4.0

CVE-2025-6030 - Autoeastern Smart Keyless Entry System Replay Attack

Use of fixed learning codes, one code to lock the car and the other code to unlock it, in theΒ Key Fob Transmitter in Cyclone Matrix TRFΒ Smart Keyless Entry System, which allows a replay attack. Research was completed on the 2024 KIA Soluto.Β  Attack confirmed on other KIA Models in Ecuador.

πŸ“… Published: June 13, 2025, 2:38 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.4

CVSS3.1

CVE-2025-36631 - Local Privilege Escalation

In Tenable Agent versions prior to 10.8.5 on a Windows host, it was found that a non-administrative user could overwrite arbitrary local system files with log content at SYSTEM privilege.

πŸ“… Published: June 13, 2025, 2:34 p.m. πŸ”„ Last Modified: Oct. 23, 2025, 4 p.m.

9.4

CVSS4.0

CVE-2025-6029 - KIA-branded Aftermarket Generic Smart Keyless Entry System Replay Attack

Use of fixed learning codes, one code to lock the car and the other code to unlock it, theΒ Key Fob Transmitter in KIA-branded Aftermarket Generic Smart Keyless Entry System, primarily distributed in Ecuador, which allows a replay attack. Manufacture is unknown at the time of release.Β  CVE Record …

πŸ“… Published: June 13, 2025, 2:25 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.8

CVSS3.1

CVE-2025-36633 - Local Privilege Escalation

In Tenable Agent versions prior to 10.8.5 on a Windows host, it was found that a non-administrative user could arbitrarily delete local system files with SYSTEM privilege, potentially leading to local privilege escalation.

πŸ“… Published: June 13, 2025, 2:21 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 5:50 p.m.

0.0

CVE-2025-50149 -

Not used

πŸ“… Published: June 13, 2025, 12:46 p.m. πŸ”„ Last Modified: June 14, 2025, 3:15 a.m.

0.0

CVE-2025-50150 -

Not used

πŸ“… Published: June 13, 2025, 12:46 p.m. πŸ”„ Last Modified: June 14, 2025, 3:15 a.m.

0.0

CVE-2025-50148 -

Not used

πŸ“… Published: June 13, 2025, 12:46 p.m. πŸ”„ Last Modified: June 14, 2025, 3:15 a.m.
Total resulsts: 349182
Page 5033 of 34,919
Β« previous page Β» next page
Filters