8.6

CVSS4.0

CVE-2024-2240 - Docker implementation in Brocade SANnav is missing Audit Rules.

Docker daemon in Brocade SANnav before SANnav 2.3.1b runs without auditing. The vulnerability could allow a remote authenticated attacker to execute various attacks.

πŸ“… Published: Feb. 14, 2025, 4:53 a.m. πŸ”„ Last Modified: Aug. 26, 2025, 7:48 p.m.

5.3

CVSS3.0

CVE-2025-23406 -

Out-of-bounds read vulnerability caused by improper checking of TCP MSS option values exists in Cente middleware TCP/IP Network Series, which may lead to processing a specially crafted packet to cause the affected product crashed.

πŸ“… Published: Feb. 14, 2025, 4:24 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.6

CVSS4.0

CVE-2025-1053 - Brocade SANnav encryption key is logged in the debug logs

Under certain error conditions at time of SANnav installation or upgrade, the encryption key can be written into and obtained from a Brocade SANnav supportsave. An attacker with privileged access to the Brocade SANnav database could use the encryption key to obtain passwords used by Brocade SANnav.

πŸ“… Published: Feb. 14, 2025, 3:47 a.m. πŸ”„ Last Modified: Sept. 26, 2025, 2:03 p.m.

7.2

CVSS3.1

CVE-2024-55904 - IBM DevOps Deploy / IBM UrbanCode Deploy command injection

IBM DevOps Deploy 8.0 through 8.0.1.4, 8.1 through 8.1.0.0 / IBM UrbanCode Deploy 7.0 through 7.0.5.25, 7.1 through 7.1.2.21, 7.2 through 7.2.3.14, and 7.3 through 7.3.2.9 could allow a remote privileged authenticated attacker to execute arbitrary commands on the system by sending specially crafted…

πŸ“… Published: Feb. 14, 2025, 3:23 a.m. πŸ”„ Last Modified: Aug. 18, 2025, 6:14 p.m.

5.5

CVSS3.1

CVE-2024-10404 - Clear text password seen in switch-asset-collectors-mw in Brocade SANnav supportsave

CalInvocationHandler in Brocade SANnav before 2.3.1b logs sensitive information in clear text. The vulnerability could allow an authenticated, local attacker to view Brocade Fabric OS switch sensitive information in clear text. An attacker with administrative privileges could retrieve sensitive…

πŸ“… Published: Feb. 14, 2025, 3:13 a.m. πŸ”„ Last Modified: Aug. 26, 2025, 8:02 p.m.

8.1

CVSS3.1

CVE-2025-26519 -

musl libc 0.9.13 through 1.2.5 before 1.2.6 has an out-of-bounds write vulnerability when an attacker can trigger iconv conversion of untrusted EUC-KR text to UTF-8.

πŸ“… Published: Feb. 14, 2025, midnight πŸ”„ Last Modified: Dec. 10, 2025, 8:03 p.m.

8.8

CVSS3.1

CVE-2025-25745 -

D-Link DIR-853 A1 FW1.20B07 was discovered to contain a stack-based buffer overflow vulnerability via the Password parameter in the SetQuickVPNSettings module.

πŸ“… Published: Feb. 14, 2025, midnight πŸ”„ Last Modified: May 2, 2025, 5:53 p.m.

9.8

CVSS3.1

CVE-2024-56973 -

Insecure Permissions vulnerability in Alvaria, Inc Unified IP Unified Director before v.7.2SP2 allows a remote attacker to execute arbitrary code via the source and filename parameters to the ProcessUploadFromURL.jsp component.

πŸ“… Published: Feb. 14, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

4.5

CVSS3.1

CVE-2025-26791 - dompurify: Mutation XSS in DOMPurify Due to Improper Template Literal Handling

DOMPurify before 3.2.4 has an incorrect template literal regular expression, sometimes leading to mutation cross-site scripting (mXSS).

πŸ“… Published: Feb. 14, 2025, midnight πŸ”„ Last Modified: Oct. 7, 2025, 8:56 p.m.

5.5

CVSS3.1

CVE-2025-25740 -

D-Link DIR-853 A1 FW1.20B07 was discovered to contain a stack-based buffer overflow vulnerability via the PSK parameter in the SetQuickVPNSettings module.

πŸ“… Published: Feb. 14, 2025, midnight πŸ”„ Last Modified: May 2, 2025, 5:53 p.m.
Total resulsts: 348453
Page 6661 of 34,846
Β« previous page Β» next page
Filters