6.2

CVSS3.0

CVE-2025-30485 -

UNIX symbolic link (Symlink) following issue exists in FutureNet NXR series, VXR series and WXR series routers. Attaching to the affected product an external storage containing malicious symbolic link files, a logged-in administrative user may obtain and/or destroy internal files.

πŸ“… Published: April 3, 2025, 6:18 a.m. πŸ”„ Last Modified: April 7, 2025, 2:18 p.m.

4.8

CVSS4.0

CVE-2025-3144 - MindSpore mindspore.numpy.fft.hfftn memory corruption

A vulnerability classified as problematic was found in MindSpore 2.5.0. Affected by this vulnerability is the function mindspore.numpy.fft.hfftn. The manipulation leads to memory corruption. It is possible to launch the attack on the local host. The exploit has been disclosed to the public and may …

πŸ“… Published: April 3, 2025, 6 a.m. πŸ”„ Last Modified: June 24, 2025, 9:44 a.m.

5.3

CVSS4.0

CVE-2025-3143 - SourceCodester Apartment Visitor Management System visitor-entry.php sql injection

A vulnerability classified as critical has been found in SourceCodester Apartment Visitor Management System 1.0. Affected is an unknown function of the file /visitor-entry.php. The manipulation of the argument visname/address leads to sql injection. It is possible to launch the attack remotely. The…

πŸ“… Published: April 3, 2025, 6 a.m. πŸ”„ Last Modified: May 14, 2025, 9:06 p.m.

6.8

CVSS3.1

CVE-2025-2055 - MapPress Maps for WordPress < 2.94.9 - Contributor+ Stored XSS

The MapPress Maps for WordPress plugin before 2.94.9 does not sanitise and escape some parameters when outputing them in the page, which could allow users with a role as low as contributor to perform Cross-Site Scripting attacks.

πŸ“… Published: April 3, 2025, 6 a.m. πŸ”„ Last Modified: April 29, 2025, 8:49 p.m.

5.3

CVSS4.0

CVE-2025-3142 - SourceCodester Apartment Visitor Management System add-apartment.php sql injection

A vulnerability was found in SourceCodester Apartment Visitor Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /add-apartment.php. The manipulation of the argument buildingno leads to sql injection. The attack may be initiated remotely. Th…

πŸ“… Published: April 3, 2025, 5:31 a.m. πŸ”„ Last Modified: May 14, 2025, 9:06 p.m.

6.8

CVSS3.0

CVE-2025-31334 -

Issue that bypasses the "Mark of the Web" security warning function for files when opening a symbolic link that points to an executable file exists in WinRAR versions prior to 7.11. If a symbolic link specially crafted by an attacker is opened on the affected product, arbitrary code may be executed.

πŸ“… Published: April 3, 2025, 5:27 a.m. πŸ”„ Last Modified: July 1, 2025, 3:10 p.m.

5.3

CVSS4.0

CVE-2025-3141 - SourceCodester Online Medicine Ordering System manage_category.php sql injection

A vulnerability was found in SourceCodester Online Medicine Ordering System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /manage_category.php. The manipulation of the argument ID leads to sql injection. The attack can be initiated remotely. The exploit …

πŸ“… Published: April 3, 2025, 5 a.m. πŸ”„ Last Modified: April 9, 2025, 8:08 p.m.

5.3

CVSS4.0

CVE-2025-3140 - SourceCodester Online Medicine Ordering System view_category.php sql injection

A vulnerability was found in SourceCodester Online Medicine Ordering System 1.0. It has been classified as critical. This affects an unknown part of the file /view_category.php. The manipulation of the argument ID leads to sql injection. It is possible to initiate the attack remotely. The exploit h…

πŸ“… Published: April 3, 2025, 4:31 a.m. πŸ”„ Last Modified: April 9, 2025, 8:15 p.m.

0.0

CVE-2025-3156 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: April 3, 2025, 4:05 a.m. πŸ”„ Last Modified: July 5, 2025, 11:15 p.m.

4.8

CVSS4.0

CVE-2025-3139 - code-projects Bus Reservation System Login Form login buffer overflow

A vulnerability was found in code-projects Bus Reservation System 1.0 and classified as critical. Affected by this issue is the function Login of the component Login Form. The manipulation of the argument Str1 leads to buffer overflow. It is possible to launch the attack on the local host. The expl…

πŸ“… Published: April 3, 2025, 4 a.m. πŸ”„ Last Modified: May 15, 2025, 8:08 p.m.
Total resulsts: 342251
Page 5347 of 34,226
Β« previous page Β» next page
Filters