6.5

CVSS3.1

CVE-2024-44314 -

TastyIgniter 3.7.6 contains an Incorrect Access Control vulnerability in the Orders Management System, allowing unauthorized users to update order statuses. The issue occurs in the index_onUpdateStatus() function within Orders.php, which fails to verify if the user has permission to modify an orderโ€ฆ

๐Ÿ“… Published: March 18, 2025, midnight ๐Ÿ”„ Last Modified: April 2, 2025, 12:29 p.m.

4.6

CVSS3.1

CVE-2025-30138 -

An issue was discovered on G-Net Dashcam BB GONX devices. Managing Settings and Obtaining Sensitive Data and Sabotaging Car Battery can be performed by unauthorized persons. It allows unauthorized users to modify critical system settings once connected to its network. Attackers can extract sensitivโ€ฆ

๐Ÿ“… Published: March 18, 2025, midnight ๐Ÿ”„ Last Modified: July 1, 2025, 9:04 p.m.

9.8

CVSS3.1

CVE-2025-25595 -

A lack of rate limiting in the login page of Safe App version a3.0.9 allows attackers to bypass authentication via a brute force attack.

๐Ÿ“… Published: March 18, 2025, midnight ๐Ÿ”„ Last Modified: April 1, 2025, 8:38 p.m.

6.9

CVSS4.0

CVE-2025-2472 - PHPGurukul Apartment Visitors Management System Sign In index.php sql injection

A vulnerability has been found in PHPGurukul Apartment Visitors Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /index.php of the component Sign In. The manipulation of the argument username leads to sql injection. The attack โ€ฆ

๐Ÿ“… Published: March 17, 2025, 11:31 p.m. ๐Ÿ”„ Last Modified: May 16, 2025, 2:05 p.m.

5.3

CVSS4.0

CVE-2025-2471 - PHPGurukul Boat Booking System boat-details.php sql injection

A vulnerability, which was classified as critical, was found in PHPGurukul Boat Booking System 1.0. Affected is an unknown function of the file /boat-details.php. The manipulation of the argument bid leads to sql injection. It is possible to launch the attack remotely. The exploit has been discloseโ€ฆ

๐Ÿ“… Published: March 17, 2025, 11:31 p.m. ๐Ÿ”„ Last Modified: May 16, 2025, 2:05 p.m.

8.9

CVSS4.0

CVE-2025-29913 - CryptoLib's Crypto_TC_Prep_AAD Has Buffer Overflow Due to Integer Underflow

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communications between a spacecraft running the core Flight System (cFS) and a ground station. A critical heap buffer overflow vulnerability was identified in the โ€ฆ

๐Ÿ“… Published: March 17, 2025, 10:50 p.m. ๐Ÿ”„ Last Modified: May 7, 2025, 8:41 p.m.

8.9

CVSS4.0

CVE-2025-29912 - CryptoLib Has Heap Buffer Overflow Due to Unsigned Integer Underflow in Crypto_TC_ProcessSecurity

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communications between a spacecraft running the core Flight System (cFS) and a ground station. In versions 1.3.3 and prior, an unsigned integer underflow in the `Cโ€ฆ

๐Ÿ“… Published: March 17, 2025, 10:48 p.m. ๐Ÿ”„ Last Modified: May 7, 2025, 8:42 p.m.

5.3

CVSS4.0

CVE-2025-2420 - ็Œซๅฎi Morning cross-site request forgery

A vulnerability classified as problematic was found in ็Œซๅฎi Morning up to bc782730c74ff080494f145cc363a0b4f43f7d3e. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross-site request forgery. The attack can be launched remotely. The exploit has been disclosed toโ€ฆ

๐Ÿ“… Published: March 17, 2025, 10:31 p.m. ๐Ÿ”„ Last Modified: March 18, 2025, 1:15 p.m.

8.9

CVSS4.0

CVE-2025-29911 - CryptoLib Has Heap Buffer Overflow in Crypto_AOS_ProcessSecurity Function

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communications between a spacecraft running the core Flight System (cFS) and a ground station. A critical heap buffer overflow vulnerability was identified in the โ€ฆ

๐Ÿ“… Published: March 17, 2025, 10:20 p.m. ๐Ÿ”„ Last Modified: April 30, 2025, 4:08 p.m.

5.5

CVSS4.0

CVE-2025-29910 - CryptoLib's crypto_handle_incrementing_nontransmitted_counter Function has Memory Leak

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communications between a spacecraft running the core Flight System (cFS) and a ground station. A memory leak vulnerability was identified in the `crypto_handle_incโ€ฆ

๐Ÿ“… Published: March 17, 2025, 10:04 p.m. ๐Ÿ”„ Last Modified: April 30, 2025, 4:07 p.m.
Total resulsts: 342358
Page 5634 of 34,236
ยซ previous page ยป next page
Filters