4.8

CVSS4.0

CVE-2025-4461 - TOTOLINK N150RT Virtual Server Page cross site scripting

A vulnerability classified as problematic was found in TOTOLINK N150RT 3.4.0-B20190525. This vulnerability affects unknown code of the component Virtual Server Page. The manipulation leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public an…

πŸ“… Published: May 9, 2025, 4:31 a.m. πŸ”„ Last Modified: May 23, 2025, 12:33 p.m.

9.3

CVSS4.0

CVE-2025-3714 - ATEN LCD KVM over IP Switch CL5708IM - Stack-based Buffer Overflow

The LCD KVM over IP Switch CL5708IM has a Stack-based Buffer Overflow vulnerability in firmware versions prior to v2.2.215, allowing unauthenticated remote attackers to exploit this vulnerability to execute arbitrary code on the device.

πŸ“… Published: May 9, 2025, 4:08 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.7

CVSS4.0

CVE-2025-3713 - ATEN LCD KVM over IP Switch CL5708IM - Heap-based Buffer Overflow

The LCD KVM over IP Switch CL5708IM has a Heap-based Buffer Overflow vulnerability in firmware versions prior to v2.2.215, allowing unauthenticated remote attackers to exploit this vulnerability to perform a denial-of-service attack.

πŸ“… Published: May 9, 2025, 4:03 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.7

CVSS4.0

CVE-2025-3712 - ATEN LCD KVM over IP Switch CL5708IM - Heap-based Buffer Overflow

The LCD KVM over IP Switch CL5708IM has a Heap-based Buffer Overflow vulnerability in firmware versions prior to v2.2.215, allowing unauthenticated remote attackers to exploit this vulnerability to perform a denial-of-service attack.

πŸ“… Published: May 9, 2025, 4 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

4.8

CVSS4.0

CVE-2025-4460 - TOTOLINK N150RT URL Filtering Page cross site scripting

A vulnerability classified as problematic has been found in TOTOLINK N150RT 3.4.0-B20190525. This affects an unknown part of the component URL Filtering Page. The manipulation leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public…

πŸ“… Published: May 9, 2025, 4 a.m. πŸ”„ Last Modified: May 23, 2025, 12:28 p.m.

5.3

CVSS4.0

CVE-2025-4459 - code-projects Patient Record Management System fecalysis_form.php sql injection

A vulnerability was found in code-projects Patient Record Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file fecalysis_form.php. The manipulation of the argument itr_no leads to sql injection. The attack may be launched remotely. T…

πŸ“… Published: May 9, 2025, 4 a.m. πŸ”„ Last Modified: May 16, 2025, 3:36 p.m.

9.3

CVSS4.0

CVE-2025-3711 - ATEN LCD KVM over IP Switch CL5708IM - Stack-based Buffer Overflow

The LCD KVM over IP Switch CL5708IM has a Stack-based Buffer Overflow vulnerability in firmware versions prior to v2.2.215, allowing unauthenticated remote attackers to exploit this vulnerability to execute arbitrary code on the device.

πŸ“… Published: May 9, 2025, 3:56 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.3

CVSS4.0

CVE-2025-3710 - ATEN LCD KVM over IP Switch CL5708IM - Stack-based Buffer Overflow

The LCD KVM over IP Switch CL5708IM has a Stack-based Buffer Overflow vulnerability in firmware versions prior to v2.2.215, allowing unauthenticated remote attackers to exploit this vulnerability to execute arbitrary code on the device.

πŸ“… Published: May 9, 2025, 3:53 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.3

CVSS4.0

CVE-2025-4458 - code-projects Patient Record Management System edit_upatient.php sql injection

A vulnerability was found in code-projects Patient Record Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /edit_upatient.php. The manipulation of the argument ID leads to sql injection. The attack can be launched remote…

πŸ“… Published: May 9, 2025, 3:31 a.m. πŸ”„ Last Modified: May 16, 2025, 3:36 p.m.

6.9

CVSS4.0

CVE-2025-4457 - Project Worlds Car Rental Project approve.php sql injection

A vulnerability classified as critical was found in Project Worlds Car Rental Project 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/approve.php. The manipulation of the argument ID leads to sql injection. The attack can be launched remotely. The exploit has been…

πŸ“… Published: May 9, 2025, 3 a.m. πŸ”„ Last Modified: July 11, 2025, 3:02 p.m.
Total resulsts: 345291
Page 5089 of 34,530
Β« previous page Β» next page
Filters