8.4

CVSS3.1

CVE-2025-68716 -

KAYSUS KS-WR3600 routers with firmware 1.0.5.9.1 enable the SSH service enabled by default on the LAN interface. The root account is configured with no password, and administrators cannot disable SSH or enforce authentication via the CLI or web GUI. This allows any LAN-adjacent attacker to triviall…

πŸ“… Published: Jan. 8, 2026, midnight πŸ”„ Last Modified: Jan. 8, 2026, 9:15 p.m.

9.8

CVSS3.1

CVE-2025-66913 -

JimuReport thru version 2.1.3 is vulnerable to remote code execution when processing user-controlled H2 JDBC URLs. The application passes the attacker-supplied JDBC URL directly to the H2 driver, allowing the use of certain directives to execute arbitrary Java code. A different vulnerability than C…

πŸ“… Published: Jan. 8, 2026, midnight πŸ”„ Last Modified: Jan. 12, 2026, 2:38 p.m.

7.5

CVSS3.1

CVE-2025-50334 - technitium-dns-server: From CVEorg collector

An issue in Technitium DNS Server v.13.5 allows a remote attacker to cause a denial of service via the rate-limiting component

πŸ“… Published: Jan. 8, 2026, midnight πŸ”„ Last Modified: Jan. 12, 2026, 6:39 p.m.

8.7

CVSS3.1

CVE-2025-63611 -

Cross-Site Scripting in phpgurukul Hostel Management System v2.1 user-provided complaint fields (Explain the Complaint) submitted via /register-complaint.php are stored and rendered unescaped in the admin viewer (/admin/complaint-details.php?cid=<id>). When an administrator opens the complaint, inj…

πŸ“… Published: Jan. 8, 2026, midnight πŸ”„ Last Modified: Jan. 12, 2026, 6:45 p.m.

9.4

CVSS3.1

CVE-2025-66916 -

The snailjob component in RuoYi-Vue-Plus versions 5.5.1 and earlier, interface /snail-job/workflow/check-node-expression can execute QLExpress expressions, but it does not filter user input, allowing attackers to use the File class to perform arbitrary file reading and writing.

πŸ“… Published: Jan. 8, 2026, midnight πŸ”„ Last Modified: Jan. 9, 2026, 1:24 p.m.

7.5

CVSS3.1

CVE-2025-65518 - plesk: Plesk Obsidian: Denial of Service via crafted request to get_password.php

Plesk Obsidian versions 8.0.1 through 18.0.73 are vulnerable to a Denial of Service (DoS) condition. The vulnerability exists in the get_password.php endpoint, where a crafted request containing a malicious payload can cause the affected web interface to continuously reload, rendering the service u…

πŸ“… Published: Jan. 8, 2026, midnight πŸ”„ Last Modified: Jan. 9, 2026, 1:26 p.m.

8.8

CVSS3.1

CVE-2025-68719 -

KAYSUS KS-WR3600 routers with firmware 1.0.5.9.1 mishandle configuration management. Once any user is logged in and maintains an active session, an attacker can directly query the backup endpoint and download a full configuration archive. This archive contains sensitive files such as /etc/shadow, e…

πŸ“… Published: Jan. 8, 2026, midnight πŸ”„ Last Modified: Jan. 8, 2026, 9:15 p.m.

9.8

CVSS3.1

CVE-2025-61548 -

SQL Injection is present on the hfInventoryDistFormID parameter in the /PSP/appNET/Store/CartV12.aspx/GetUnitPrice endpoint in edu Business Solutions Print Shop Pro WebDesk version 18.34. Unsanitized user input is incorporated directly into SQL queries without proper parameterization or escaping. T…

πŸ“… Published: Jan. 8, 2026, midnight πŸ”„ Last Modified: Jan. 8, 2026, 8:15 p.m.

0.0

CVE-2025-61546 -

There is an issue on the /PSP/appNET/Store/CartV12.aspx/GetUnitPrice endpoint in edu Business Solutions Print Shop Pro WebDesk version 18.34 that enables remote attacker to create financial discrepancies by purchasing items with a negative quantity. This vulnerability is possible due to reliance on…

πŸ“… Published: Jan. 8, 2026, midnight πŸ”„ Last Modified: Jan. 8, 2026, 6:08 p.m.

5.4

CVSS3.1

CVE-2025-61550 -

Cross-Site Scripting (XSS) is present on the ctl00_Content01_fieldValue parameters on the /psp/appNet/TemplateOrder/TemplatePreview.aspx endpoint in edu Business Solutions Print Shop Pro WebDesk version 18.34. User-supplied input is stored and later rendered in HTML pages without proper output enco…

πŸ“… Published: Jan. 8, 2026, midnight πŸ”„ Last Modified: Jan. 8, 2026, 8:15 p.m.
Total resulsts: 327160
Page 55 of 32,716
Β« previous page Β» next page
Filters