6

CVSS3.1

CVE-2025-20178 - Cisco Secure Network Analytics Privilege Escalation Vulnerability

A vulnerability in the web-based management interface of Cisco Secure Network Analytics could allow an authenticated, remote attacker with valid administrative credentials to execute arbitrary commands as root on the underlying operating system. This vulnerability is due to insufficient integr…

πŸ“… Published: April 16, 2025, 4:07 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 6:28 p.m.

6.5

CVSS3.1

CVE-2024-56736 - Apache HertzBeat: Server-Side Request Forgery (SSRF) in Api Config Oss

Server-Side Request Forgery (SSRF) vulnerability in Apache HertzBeat. This issue affects Apache HertzBeat (incubating): before 1.7.0. Users are recommended to upgrade to version 1.7.0, which fixes the issue.

πŸ“… Published: April 16, 2025, 3:38 p.m. πŸ”„ Last Modified: April 23, 2025, 7:13 p.m.

5.3

CVSS4.0

CVE-2025-3697 - SourceCodester Web-based Pharmacy Product Management System edit-product.php sql injection

A vulnerability, which was classified as critical, has been found in SourceCodester Web-based Pharmacy Product Management System 1.0. This issue affects some unknown processing of the file /edit-product.php. The manipulation of the argument ID leads to sql injection. The attack may be initiated rem…

πŸ“… Published: April 16, 2025, 3 p.m. πŸ”„ Last Modified: May 14, 2025, 9:05 p.m.

5.3

CVSS4.0

CVE-2025-3696 - SourceCodester Web-based Pharmacy Product Management System search_stock. php sql injection

A vulnerability classified as critical was found in SourceCodester Web-based Pharmacy Product Management System 1.0. This vulnerability affects unknown code of the file /search/search_stock. php. The manipulation of the argument Name leads to sql injection. The attack can be initiated remotely. The…

πŸ“… Published: April 16, 2025, 2:31 p.m. πŸ”„ Last Modified: May 14, 2025, 9:04 p.m.

6.9

CVSS4.0

CVE-2025-3694 - SourceCodester Web-based Pharmacy Product Management System Login sql injection

A vulnerability classified as critical has been found in SourceCodester Web-based Pharmacy Product Management System 1.0. This affects an unknown part of the component Login Handler. The manipulation of the argument login_email leads to sql injection. It is possible to initiate the attack remotely.…

πŸ“… Published: April 16, 2025, 2:31 p.m. πŸ”„ Last Modified: May 14, 2025, 9:02 p.m.

8.7

CVSS4.0

CVE-2025-3693 - Tenda W12 httpd cgiWifiRadioSet stack-based overflow

A vulnerability was found in Tenda W12 3.0.0.5. It has been rated as critical. Affected by this issue is the function cgiWifiRadioSet of the file /bin/httpd. The manipulation leads to stack-based buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public and …

πŸ“… Published: April 16, 2025, 2 p.m. πŸ”„ Last Modified: July 16, 2025, 3:33 p.m.

4.8

CVSS4.0

CVE-2025-3692 - SourceCodester Online Eyewear Shop Master.php cross site scripting

A vulnerability was found in SourceCodester Online Eyewear Shop 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /oews/classes/Master.php?f=save_product. The manipulation leads to cross site scripting. The attack can be launched remote…

πŸ“… Published: April 16, 2025, 1:31 p.m. πŸ”„ Last Modified: April 29, 2025, 8:18 p.m.

5.1

CVSS4.0

CVE-2025-3691 - mirweiye Seven Bears Library CMS Add Link server-side request forgery

A vulnerability was found in mirweiye Seven Bears Library CMS 2023. It has been classified as problematic. Affected is an unknown function of the component Add Link Handler. The manipulation leads to server-side request forgery. It is possible to launch the attack remotely. The exploit has been dis…

πŸ“… Published: April 16, 2025, 1 p.m. πŸ”„ Last Modified: April 24, 2025, 1:43 p.m.

6.9

CVSS4.0

CVE-2025-3690 - PHPGurukul Men Salon Management System edit-services.php sql injection

A vulnerability was found in PHPGurukul Men Salon Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /admin/edit-services.php. The manipulation of the argument cost leads to sql injection. The attack may be initiated remotely. The exploit has be…

πŸ“… Published: April 16, 2025, 1 p.m. πŸ”„ Last Modified: April 24, 2025, 1:09 p.m.

4.3

CVSS3.1

CVE-2025-39512 - WordPress Bulk Term Editor plugin <= 1.1.4 - Cross Site Request Forgery (CSRF) Vulnerability

Cross-Site Request Forgery (CSRF) vulnerability in Yuya Hoshino Bulk Term Editor bulk-term-editor allows Cross Site Request Forgery.This issue affects Bulk Term Editor: from n/a through <= 1.1.4.

πŸ“… Published: April 16, 2025, 12:45 p.m. πŸ”„ Last Modified: April 23, 2026, 3:29 p.m.
Total resulsts: 346649
Page 5517 of 34,665
Β« previous page Β» next page
Filters