2.3

CVSS4.0

CVE-2025-5031 - Ackites KillWxapkg wxapkg File Decompression resource consumption

A vulnerability was found in Ackites KillWxapkg up to 2.4.1. It has been rated as problematic. This issue affects some unknown processing of the component wxapkg File Decompression Handler. The manipulation leads to resource consumption. The attack may be initiated remotely. The complexity of an at…

πŸ“… Published: May 21, 2025, 5 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.1

CVSS3.1

CVE-2025-20250 -

A vulnerability in Cisco Webex could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack. A vulnerability is due to improper filtering of user-supplied input. An attacker could exploit this vulnerability by persuading a user to follow a malicious link. A succ…

πŸ“… Published: May 21, 2025, 4:48 p.m. πŸ”„ Last Modified: July 14, 2025, 8:34 p.m.

6.1

CVSS3.1

CVE-2025-20247 -

A vulnerability in Cisco Webex could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack. A vulnerability is due to improper filtering of user-supplied input. An attacker could exploit this vulnerability by persuading a user to follow a malicious link. A succ…

πŸ“… Published: May 21, 2025, 4:47 p.m. πŸ”„ Last Modified: July 14, 2025, 8:33 p.m.

6.1

CVSS3.1

CVE-2025-20246 -

A vulnerability in Cisco Webex could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack. A vulnerability is due to improper filtering of user-supplied input. An attacker could exploit this vulnerability by persuading a user to follow a malicious link. A succ…

πŸ“… Published: May 21, 2025, 4:46 p.m. πŸ”„ Last Modified: July 14, 2025, 8:33 p.m.

5.4

CVSS3.1

CVE-2025-20258 -

A vulnerability in the self-service portal of Cisco Duo could allow an unauthenticated, remote attacker to inject arbitrary commands into emails that are sent by the service. This vulnerability is due to insufficient input validation. An attacker could exploit this vulnerability by injecting arb…

πŸ“… Published: May 21, 2025, 4:44 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 6:27 p.m.

4.3

CVSS3.1

CVE-2025-20255 -

A vulnerability in client join services of Cisco Webex Meetings could allow an unauthenticated, remote attacker to manipulate cached HTTP responses within the meeting join service. This vulnerability is due to improper handling of malicious HTTP requests to the affected service. An attacker coul…

πŸ“… Published: May 21, 2025, 4:43 p.m. πŸ”„ Last Modified: July 14, 2025, 8:34 p.m.

6.5

CVSS3.1

CVE-2025-20242 -

A vulnerability in the Cloud Connect component of Cisco Unified Contact Center Enterprise (CCE) could allow an unauthenticated, remote attacker to read and modify data on an affected device. This vulnerability is due to a lack of proper authentication controls. An attacker could exploit this vul…

πŸ“… Published: May 21, 2025, 4:35 p.m. πŸ”„ Last Modified: July 13, 2025, 11:07 a.m.

2.3

CVSS4.0

CVE-2025-5030 - Ackites KillWxapkg wxapkg File Parser unpack.go processFile os command injection

A vulnerability was found in Ackites KillWxapkg up to 2.4.1. It has been declared as critical. This vulnerability affects the function processFile of the file internal/unpack/unpack.go of the component wxapkg File Parser. The manipulation leads to os command injection. The attack can be initiated r…

πŸ“… Published: May 21, 2025, 4:31 p.m. πŸ”„ Last Modified: June 20, 2025, 5:40 p.m.

4.8

CVSS3.1

CVE-2025-48012 - One Time Password - Moderately critical - Access bypass - SA-CONTRIB-2025-063

Authentication Bypass by Capture-replay vulnerability in Drupal One Time Password allows Remote Services with Stolen Credentials.This issue affects One Time Password: from 0.0.0 before 1.3.0.

πŸ“… Published: May 21, 2025, 4:24 p.m. πŸ”„ Last Modified: June 10, 2025, 2:28 p.m.

4.8

CVSS3.1

CVE-2025-48011 - One Time Password - Moderately critical - Access bypass - SA-CONTRIB-2025-062

Authentication Bypass Using an Alternate Path or Channel vulnerability in Drupal One Time Password allows Functionality Bypass.This issue affects One Time Password: from 0.0.0 before 1.3.0.

πŸ“… Published: May 21, 2025, 4:23 p.m. πŸ”„ Last Modified: June 10, 2025, 2:28 p.m.
Total resulsts: 349182
Page 5298 of 34,919
Β« previous page Β» next page
Filters