8.7

CVSS4.0

CVE-2021-47721 - Orangescrum 1.8.0 Authenticated Privilege Escalation via User Session Manipulation

Orangescrum 1.8.0 contains a privilege escalation vulnerability that allows authenticated users to take over other project-assigned accounts by manipulating session cookies. Attackers can extract the victim's unique ID from the page source and replace their own session cookie to gain unauthorized a…

πŸ“… Published: Dec. 23, 2025, 7:34 p.m. πŸ”„ Last Modified: Dec. 23, 2025, 8:03 p.m.

8.7

CVSS4.0

CVE-2021-47720 - Orangescrum 1.8.0 Authenticated SQL Injection via Multiple Parameters

Orangescrum 1.8.0 contains an authenticated SQL injection vulnerability that allows authorized users to manipulate database queries through multiple vulnerable parameters. Attackers can inject malicious SQL code into parameters like old_project_id, project_id, uuid, and uniqid to potentially extrac…

πŸ“… Published: Dec. 23, 2025, 7:34 p.m. πŸ”„ Last Modified: Dec. 23, 2025, 8:01 p.m.

9.8

CVSS3.1

CVE-2025-33222 -

NVIDIA Isaac Launchable contains a vulnerability where an attacker could exploit a hard-coded credential issue. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, denial of service, and data tampering.

πŸ“… Published: Dec. 23, 2025, 5:10 p.m. πŸ”„ Last Modified: Dec. 23, 2025, 8:34 p.m.

9.8

CVSS3.1

CVE-2025-33223 -

NVIDIA Isaac Launchable contains a vulnerability where an attacker could cause an execution with unnecessary privileges. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, denial of service, information disclosure and data tampering.

πŸ“… Published: Dec. 23, 2025, 5:10 p.m. πŸ”„ Last Modified: Dec. 23, 2025, 8:25 p.m.

9.8

CVSS3.1

CVE-2025-33224 -

NVIDIA Isaac Launchable contains a vulnerability where an attacker could cause an execution with unnecessary privileges. A successful exploit of this vulnerability might lead to code execution, escalation of privileges, denial of service, information disclosure and data tampering.

πŸ“… Published: Dec. 23, 2025, 5:10 p.m. πŸ”„ Last Modified: Dec. 23, 2025, 8:02 p.m.

0.0

CVE-2025-68695 -

Not used

πŸ“… Published: Dec. 23, 2025, 3:55 p.m. πŸ”„ Last Modified: Dec. 24, 2025, 3:55 a.m.

0.0

CVE-2025-68694 -

Not used

πŸ“… Published: Dec. 23, 2025, 3:55 p.m. πŸ”„ Last Modified: Dec. 24, 2025, 3:55 a.m.

0.0

CVE-2025-68692 -

Not used

πŸ“… Published: Dec. 23, 2025, 3:55 p.m. πŸ”„ Last Modified: Dec. 24, 2025, 3:55 a.m.

0.0

CVE-2025-68693 -

Not used

πŸ“… Published: Dec. 23, 2025, 3:55 p.m. πŸ”„ Last Modified: Dec. 24, 2025, 3:55 a.m.

0.0

CVE-2025-68691 -

Not used

πŸ“… Published: Dec. 23, 2025, 3:55 p.m. πŸ”„ Last Modified: Dec. 24, 2025, 3:55 a.m.
Total resulsts: 324358
Page 63 of 32,436
Β« previous page Β» next page
Filters