4.9

CVSS3.1

CVE-2025-2487 - 389-ds-base: null pointer dereference leads to denial of service

A flaw was found in the 389-ds-base LDAP Server. This issue occurs when issuing a Modify DN LDAP operation through the ldap protocol, when the function return value is not tested and a NULL pointer is dereferenced. If a privileged user performs a ldap MODDN operation after a failed operation, it co…

πŸ“… Published: March 18, 2025, midnight πŸ”„ Last Modified: Nov. 20, 2025, 9:01 p.m.

8.1

CVSS3.1

CVE-2025-30142 -

An issue was discovered on G-Net Dashcam BB GONX devices. Bypassing of Device Pairing can occur. It uses MAC address verification as the sole mechanism for recognizing paired devices, allowing attackers to bypass authentication. By capturing the MAC address of an already-paired device through ARP s…

πŸ“… Published: March 18, 2025, midnight πŸ”„ Last Modified: July 1, 2025, 9:04 p.m.

7.5

CVSS3.1

CVE-2025-30116 -

An issue was discovered on the Forvia Hella HELLA Driving Recorder DR 820. Remotely Dumping of Video Footage and the Live Video Stream can occur. It allows remote attackers to access and download recorded video footage from the SD card via port 9091. Additionally, attackers can connect to port 9092…

πŸ“… Published: March 18, 2025, midnight πŸ”„ Last Modified: May 22, 2025, 7:43 p.m.

6.5

CVSS3.1

CVE-2025-30109 -

In the IROAD APK 5.2.5, there are Hardcoded Credentials in the APK for ports 9091 and 9092. The mobile application for the dashcam contains hardcoded credentials that allow an attacker on the local Wi-Fi network to access API endpoints and retrieve sensitive device information, including live and r…

πŸ“… Published: March 18, 2025, midnight πŸ”„ Last Modified: March 21, 2025, 5:15 p.m.

7.3

CVSS3.1

CVE-2025-30117 -

An issue was discovered on the Forvia Hella HELLA Driving Recorder DR 820. Managing Settings and Obtaining Sensitive Data and Sabotaging the Car Battery can be performed by unauthorized parties. After bypassing the device pairing, an attacker can obtain sensitive user and vehicle information throug…

πŸ“… Published: March 18, 2025, midnight πŸ”„ Last Modified: May 22, 2025, 7:40 p.m.

7.5

CVSS3.1

CVE-2025-30141 -

An issue was discovered on G-Net Dashcam BB GONX devices. One can Remotely Dump Video Footage and the Live Video Stream. It exposes API endpoints on ports 9091 and 9092 that allow remote access to recorded and live video feeds. An attacker who connects to the dashcam's network can retrieve all stor…

πŸ“… Published: March 18, 2025, midnight πŸ”„ Last Modified: July 1, 2025, 9:04 p.m.

7.5

CVSS3.1

CVE-2025-25500 -

An issue in CosmWasm prior to v2.2.0 allows attackers to bypass capability restrictions in blockchains by exploiting a lack of runtime capability validation. This allows attackers to deploy a contract without capability enforcement, and execute unauthorized actions on the blockchain.

πŸ“… Published: March 18, 2025, midnight πŸ”„ Last Modified: May 22, 2025, 7:52 p.m.

9.1

CVSS3.1

CVE-2025-30132 -

An issue was discovered on IROAD Dashcam V devices. It uses an unregistered public domain name as an internal domain, creating a security risk. During analysis, it was found that this domain was not owned by IROAD, allowing an attacker to register it and potentially intercept sensitive device traff…

πŸ“… Published: March 18, 2025, midnight πŸ”„ Last Modified: March 21, 2025, 2:15 p.m.

8.1

CVSS3.1

CVE-2025-25589 -

An XML external entity (XXE) injection vulnerability in the component /weixin/aes/XMLParse.java of yimioa before v2024.07.04 allows attackers to execute arbitrary code via supplying a crafted XML file.

πŸ“… Published: March 18, 2025, midnight πŸ”„ Last Modified: March 21, 2025, 2:15 p.m.

6.5

CVSS3.1

CVE-2024-57170 -

SOPlanning 1.53.00 is vulnerable to a directory traversal issue in /process/upload.php. The "fichier_to_delete" parameter allows authenticated attackers to specify file paths containing directory traversal sequences (e.g., ../). This vulnerability enables attackers to delete arbitrary files outside…

πŸ“… Published: March 18, 2025, midnight πŸ”„ Last Modified: April 2, 2025, 12:29 p.m.
Total resulsts: 342254
Page 5622 of 34,226
Β« previous page Β» next page
Filters