9.8

CVSS3.1

CVE-2025-25914 -

SQL injection vulnerability in Online Exam Mastering System v.1.0 allows a remote attacker to execute arbitrary code via the fid parameter

๐Ÿ“… Published: March 17, 2025, midnight ๐Ÿ”„ Last Modified: April 8, 2025, 1:41 p.m.

6.1

CVSS3.1

CVE-2025-29429 -

Code-projects Online Class and Exam Scheduling System V1.0 is vulnerable to Cross Site Scripting (XSS) in /pages/program.php via the id, code, and name parameters.

๐Ÿ“… Published: March 17, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 23, 2025, 8:06 p.m.

9.1

CVSS3.1

CVE-2025-25650 -

An issue in the storage of NFC card data in Dorset DG 201 Digital Lock H5_433WBSK_v2.2_220605 allows attackers to produce cloned NFC cards to bypass authentication.

๐Ÿ“… Published: March 17, 2025, midnight ๐Ÿ”„ Last Modified: March 19, 2025, 7:15 p.m.

3.2

CVSS3.1

CVE-2025-29431 -

Code-projects Online Class and Exam Scheduling System V1.0 is vulnerable to Cross Site Scripting (XSS) in /pages/department.php via the id, code, and name parameters.

๐Ÿ“… Published: March 17, 2025, midnight ๐Ÿ”„ Last Modified: April 2, 2025, 12:30 p.m.

5.9

CVSS3.1

CVE-2025-29427 -

Code-projects Online Class and Exam Scheduling System V1.0 is vulnerable to Cross Site Scripting (XSS) in profile.php via the member_first and member_last parameters.

๐Ÿ“… Published: March 17, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 23, 2025, 8:06 p.m.

5.5

CVSS3.1

CVE-2025-29425 -

Code-projects Online Class and Exam Scheduling System 1.0 is vulnerable to SQL Injection in exam_save.php via the parameters member and first.

๐Ÿ“… Published: March 17, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 23, 2025, 8:06 p.m.

6

CVSS3.1

CVE-2025-26042 -

Uptime Kuma >== 1.23.0 has a ReDoS vulnerability, specifically when an administrator creates a notification through the web service. If a string is provided it triggers catastrophic backtracking in the regular expression, leading to a ReDoS attack.

๐Ÿ“… Published: March 17, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 26, 2026, 4:15 p.m.

4.1

CVSS3.1

CVE-2025-29430 -

Code-projects Online Class and Exam Scheduling System V1.0 is vulnerable to Cross Site Scripting (XSS) in /pages/room.php via the id and rome parameters.

๐Ÿ“… Published: March 17, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 23, 2025, 8:06 p.m.

7.5

CVSS3.1

CVE-2025-25685 -

An issue was discovered in GL-INet Beryl AX GL-MT3000 v4.7.0. Attackers are able to download arbitrary files from the device's file system via adding symbolic links on an external drive used as a samba share.

๐Ÿ“… Published: March 17, 2025, midnight ๐Ÿ”„ Last Modified: March 21, 2025, 2:15 p.m.

4.3

CVSS3.1

CVE-2025-25621 -

Unifiedtransform 2.0 is vulnerable to Incorrect Access Control, which allows teachers to take attendance of fellow teachers. This affected endpoint is /courses/teacher/index?teacher_id=2&semester_id=1.

๐Ÿ“… Published: March 17, 2025, midnight ๐Ÿ”„ Last Modified: June 24, 2025, 2:59 p.m.
Total resulsts: 344062
Page 5817 of 34,407
ยซ previous page ยป next page
Filters