6.5

CVSS3.1

CVE-2025-25691 -

A PHAR deserialization vulnerability in the component /themes/import of PrestaShop v8.2.0 allows attackers to execute arbitrary code via a crafted POST request.

πŸ“… Published: July 30, 2025, midnight πŸ”„ Last Modified: July 31, 2025, 6:42 p.m.

6.1

CVSS3.1

CVE-2024-45515 -

An issue was discovered in Zimbra Collaboration (ZCS) through 10.1. A Cross-Site Scripting (XSS) vulnerability exists in Zimbra webmail due to insufficient validation of the content type metadata when importing files into the briefcase. Attackers can exploit this issue by crafting a file with manip…

πŸ“… Published: July 30, 2025, midnight πŸ”„ Last Modified: July 31, 2025, 6:42 p.m.

6.1

CVSS3.1

CVE-2025-51951 -

andisearch v0.5.249 was discovered to contain a cross-site scripting (XSS) vulnerability.

πŸ“… Published: July 30, 2025, midnight πŸ”„ Last Modified: July 31, 2025, 6:42 p.m.

7.8

CVSS3.1

CVE-2025-50777 -

The firmware of the AZIOT 2MP Full HD Smart Wi-Fi CCTV Home Security Camera (version V1.00.02) contains an Incorrect Access Control vulnerability that allows local attackers to gain root shell access. Once accessed, the device exposes critical data including Wi-Fi credentials and ONVIF service cred…

πŸ“… Published: July 30, 2025, midnight πŸ”„ Last Modified: July 31, 2025, 6:42 p.m.

8.1

CVSS3.1

CVE-2025-45620 -

An issue in Aver PTC310UV2 v.0.1.0000.59 allows a remote attacker to obtain sensitive information via a crafted request

πŸ“… Published: July 30, 2025, midnight πŸ”„ Last Modified: July 31, 2025, 6:42 p.m.

7.3

CVSS3.1

CVE-2024-45955 -

Rocket Software Rocket Zena 4.4.1.26 is vulnerable to SQL Injection via the filter parameter.

πŸ“… Published: July 30, 2025, midnight πŸ”„ Last Modified: Aug. 4, 2025, 9 a.m.

6.5

CVSS3.1

CVE-2025-45619 -

An issue in Aver PTC310UV2 firmware v.0.1.0000.59 allows a remote attacker to execute arbitrary code via the SendAction function

πŸ“… Published: July 30, 2025, midnight πŸ”„ Last Modified: July 31, 2025, 6:42 p.m.

8.2

CVSS3.1

CVE-2025-52187 -

GetProjectsIdea Create School Management System 1.0 is vulnerable to Cross Site Scripting (XSS) in my_profile_update_form1.php.

πŸ“… Published: July 30, 2025, midnight πŸ”„ Last Modified: July 31, 2025, 6:42 p.m.

6.5

CVSS3.1

CVE-2025-50464 -

A buffer overflow vulnerability exists in the upload.cgi module of the iptime NAS firmware v1.5.04. The vulnerability arises due to the unsafe use of the strcpy function to copy attacker-controlled data from the CONTENT_TYPE HTTP header into a fixed-size stack buffer (v8, allocated 8 bytes) without…

πŸ“… Published: July 30, 2025, midnight πŸ”„ Last Modified: July 31, 2025, 8:56 p.m.

6.1

CVSS3.1

CVE-2025-51954 -

playground.electronhub.ai v1.1.9 was discovered to contain a cross-site scripting (XSS) vulnerability.

πŸ“… Published: July 30, 2025, midnight πŸ”„ Last Modified: July 31, 2025, 6:42 p.m.
Total resulsts: 304202
Page 53 of 30,421
Β« previous page Β» next page
Filters