8.9

CVSS4.0

CVE-2025-29913 - CryptoLib's Crypto_TC_Prep_AAD Has Buffer Overflow Due to Integer Underflow

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communications between a spacecraft running the core Flight System (cFS) and a ground station. A critical heap buffer overflow vulnerability was identified in the โ€ฆ

๐Ÿ“… Published: March 17, 2025, 10:50 p.m. ๐Ÿ”„ Last Modified: May 7, 2025, 8:41 p.m.

8.9

CVSS4.0

CVE-2025-29912 - CryptoLib Has Heap Buffer Overflow Due to Unsigned Integer Underflow in Crypto_TC_ProcessSecurity

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communications between a spacecraft running the core Flight System (cFS) and a ground station. In versions 1.3.3 and prior, an unsigned integer underflow in the `Cโ€ฆ

๐Ÿ“… Published: March 17, 2025, 10:48 p.m. ๐Ÿ”„ Last Modified: May 7, 2025, 8:42 p.m.

5.3

CVSS4.0

CVE-2025-2420 - ็Œซๅฎi Morning cross-site request forgery

A vulnerability classified as problematic was found in ็Œซๅฎi Morning up to bc782730c74ff080494f145cc363a0b4f43f7d3e. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross-site request forgery. The attack can be launched remotely. The exploit has been disclosed toโ€ฆ

๐Ÿ“… Published: March 17, 2025, 10:31 p.m. ๐Ÿ”„ Last Modified: March 18, 2025, 1:15 p.m.

8.9

CVSS4.0

CVE-2025-29911 - CryptoLib Has Heap Buffer Overflow in Crypto_AOS_ProcessSecurity Function

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communications between a spacecraft running the core Flight System (cFS) and a ground station. A critical heap buffer overflow vulnerability was identified in the โ€ฆ

๐Ÿ“… Published: March 17, 2025, 10:20 p.m. ๐Ÿ”„ Last Modified: April 30, 2025, 4:08 p.m.

5.5

CVSS4.0

CVE-2025-29910 - CryptoLib's crypto_handle_incrementing_nontransmitted_counter Function has Memory Leak

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communications between a spacecraft running the core Flight System (cFS) and a ground station. A memory leak vulnerability was identified in the `crypto_handle_incโ€ฆ

๐Ÿ“… Published: March 17, 2025, 10:04 p.m. ๐Ÿ”„ Last Modified: April 30, 2025, 4:07 p.m.

5.3

CVSS4.0

CVE-2025-2419 - code-projects Real Estate Property Management System InsertFeedback.php sql injection

A vulnerability classified as critical has been found in code-projects Real Estate Property Management System 1.0. Affected is an unknown function of the file /InsertFeedback.php. The manipulation of the argument txtName/txtEmail/txtMobile/txtFeedback leads to sql injection. It is possible to launcโ€ฆ

๐Ÿ“… Published: March 17, 2025, 10 p.m. ๐Ÿ”„ Last Modified: Oct. 23, 2025, 8:06 p.m.

8.9

CVSS4.0

CVE-2025-29909 - CryptoLib's Crypto_TC_ApplySecurity() Has a Heap Buffer Overflow Vulnerability

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communications between a spacecraft running the core Flight System (cFS) and a ground station. In versions 1.3.3 and prior, a heap buffer overflow vulnerability inโ€ฆ

๐Ÿ“… Published: March 17, 2025, 9:55 p.m. ๐Ÿ”„ Last Modified: April 30, 2025, 4:05 p.m.

6.5

CVSS3.1

CVE-2025-29781 - Bare Metal Operator (BMO) can expose any secret from other namespaces via BMCEventSubscription CRD

The Bare Metal Operator (BMO) implements a Kubernetes API for managing bare metal hosts in Metal3. Baremetal Operator enables users to load Secret from arbitrary namespaces upon deployment of the namespace scoped Custom Resource `BMCEventSubscription`. Prior to versions 0.8.1 and 0.9.1, an adversarโ€ฆ

๐Ÿ“… Published: March 17, 2025, 9:37 p.m. ๐Ÿ”„ Last Modified: March 18, 2025, 3:16 p.m.

4.6

CVSS3.1

CVE-2024-40635 - containerd has an integer overflow in User ID handling

containerd is an open-source container runtime. A bug was found in containerd prior to versions 1.6.38, 1.7.27, and 2.0.4 where containers launched with a User set as a `UID:GID` larger than the maximum 32-bit signed integer can cause an overflow condition where the container ultimately runs as rooโ€ฆ

๐Ÿ“… Published: March 17, 2025, 9:32 p.m. ๐Ÿ”„ Last Modified: Oct. 2, 2025, 1:51 a.m.

8.6

CVSS4.0

CVE-2025-2398 - China Mobile P22g-CIac CLI su Command default credentials

A vulnerability was found in China Mobile P22g-CIac, ZXWT-MIG-P4G4V, ZXWT-MIG-P8G8V, GT3200-4G4P and GT3200-8G8P up to 20250305. It has been rated as critical. This issue affects some unknown processing of the component CLI su Command Handler. The manipulation leads to use of default credentials. Tโ€ฆ

๐Ÿ“… Published: March 17, 2025, 9:31 p.m. ๐Ÿ”„ Last Modified: March 18, 2025, 3:16 p.m.
Total resulsts: 342363
Page 5635 of 34,237
ยซ previous page ยป next page
Filters