4.8

CVSS4.0

CVE-2025-3728 - SourceCodester Simple Hotel Booking System login buffer overflow

A vulnerability classified as critical was found in SourceCodester Simple Hotel Booking System 1.0. This vulnerability affects the function Login. The manipulation of the argument uname leads to buffer overflow. It is possible to launch the attack on the local host. The exploit has been disclosed t…

πŸ“… Published: April 16, 2025, 8:31 p.m. πŸ”„ Last Modified: April 17, 2025, 8:21 p.m.

6.9

CVSS4.0

CVE-2025-3727 - PCMan FTP Server STATUS Command buffer overflow

A vulnerability classified as critical has been found in PCMan FTP Server 2.0.7. This affects an unknown part of the component STATUS Command Handler. The manipulation leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be u…

πŸ“… Published: April 16, 2025, 8:31 p.m. πŸ”„ Last Modified: April 17, 2025, 8:21 p.m.

6.9

CVSS4.0

CVE-2025-3726 - PCMan FTP Server CD Command buffer overflow

A vulnerability was found in PCMan FTP Server 2.0.7. It has been rated as critical. Affected by this issue is some unknown functionality of the component CD Command Handler. The manipulation leads to buffer overflow. The attack may be launched remotely. The exploit has been disclosed to the public …

πŸ“… Published: April 16, 2025, 8 p.m. πŸ”„ Last Modified: April 17, 2025, 8:21 p.m.

6.9

CVSS4.0

CVE-2025-3725 - PCMan FTP Server MIC Command buffer overflow

A vulnerability was found in PCMan FTP Server 2.0.7. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component MIC Command Handler. The manipulation leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed to t…

πŸ“… Published: April 16, 2025, 8 p.m. πŸ”„ Last Modified: April 17, 2025, 8:21 p.m.

6.9

CVSS4.0

CVE-2025-3724 - PCMan FTP Server DIR Command buffer overflow

A vulnerability was found in PCMan FTP Server 2.0.7. It has been classified as critical. Affected is an unknown function of the component DIR Command Handler. The manipulation leads to buffer overflow. It is possible to launch the attack remotely. The exploit has been disclosed to the public and ma…

πŸ“… Published: April 16, 2025, 7:31 p.m. πŸ”„ Last Modified: April 17, 2025, 8:21 p.m.

6.9

CVSS4.0

CVE-2025-3723 - PCMan FTP Server MDTM Command buffer overflow

A vulnerability was found in PCMan FTP Server 2.0.7 and classified as critical. This issue affects some unknown processing of the component MDTM Command Handler. The manipulation leads to buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be …

πŸ“… Published: April 16, 2025, 7:31 p.m. πŸ”„ Last Modified: April 17, 2025, 8:21 p.m.

6.1

CVSS3.1

CVE-2025-32817 -

A Improper Link Resolution vulnerability (CWE-59) in the SonicWall Connect Tunnel Windows (32 and 64 bit) client, this results in unauthorized file overwrite, potentially leading to denial of service or file corruption.

πŸ“… Published: April 16, 2025, 7:10 p.m. πŸ”„ Last Modified: April 17, 2025, 8:21 p.m.

7.5

CVSS3.1

CVE-2025-31200 -

A memory corruption issue was addressed with improved bounds checking. This issue is fixed in tvOS 18.4.1, visionOS 2.4.1, iOS iOS 18.4.1 and iPadOS 18.4.1, macOS Sequoia 15.4.1. Processing an audio stream in a maliciously crafted media file may result in code execution. Apple is aware of a report …

πŸ“… Published: April 16, 2025, 6:24 p.m. πŸ”„ Last Modified: April 18, 2025, 1:50 p.m.

6.8

CVSS3.1

CVE-2025-31201 -

This issue was addressed by removing the vulnerable code. This issue is fixed in tvOS 18.4.1, visionOS 2.4.1, iOS iOS 18.4.1 and iPadOS 18.4.1, macOS Sequoia 15.4.1. An attacker with arbitrary read and write capability may be able to bypass Pointer Authentication. Apple is aware of a report that th…

πŸ“… Published: April 16, 2025, 6:24 p.m. πŸ”„ Last Modified: April 18, 2025, 1:47 p.m.

8.1

CVSS3.1

CVE-2025-2291 - PgBouncer default auth_query does not take Postgres password expiry into account

Password can be used past expiry in PgBouncer due to auth_query not taking into account Postgres its VALID UNTIL value, which allows an attacker to log in with an already expired password

πŸ“… Published: April 16, 2025, 6 p.m. πŸ”„ Last Modified: April 17, 2025, 8:22 p.m.
Total resulsts: 291045
Page 58 of 29,105
Β« previous page Β» next page
Filters