6.5

CVSS3.1

CVE-2025-25605 -

Totolink X5000R V9.1.0u.6369_B20230113 is vulnerable to command injection via the apcli_wps_gen_pincode function in mtkwifi.lua.

๐Ÿ“… Published: Feb. 21, 2025, midnight ๐Ÿ”„ Last Modified: April 4, 2025, 3:29 p.m.

5.5

CVSS3.1

CVE-2024-55156 -

An XML External Entity (XXE) vulnerability in the deserializeArgs() method of Java SDK for CloudEvents v4.0.1 allows attackers to access sensitive information via supplying a crafted XML-formatted event message.

๐Ÿ“… Published: Feb. 21, 2025, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.1

CVSS3.1

CVE-2020-19248 -

SQL Injection vulnerability in PbootCMS 1.4.1 in parsing if statements in templates, resulting in a malicious user's ability to contaminate template content by searching for page contamination URLs, thus triggering vulnerabilities when the program uses eval statements to parse templates.

๐Ÿ“… Published: Feb. 21, 2025, midnight ๐Ÿ”„ Last Modified: April 7, 2025, 3:05 p.m.

3.8

CVSS3.1

CVE-2025-25878 -

A vulnerability was found in ITSourcecode Simple ChatBox up to 1.0. This vulnerability affects unknown code of the file /del.php. The attack can use SQL injection to obtain sensitive data.

๐Ÿ“… Published: Feb. 21, 2025, midnight ๐Ÿ”„ Last Modified: April 7, 2025, 3:04 p.m.

3.8

CVSS3.1

CVE-2025-25877 -

A vulnerability was found in ITSourcecode Simple ChatBox up to 1.0. This vulnerability affects unknown code of the file /admin.php. The attack can use SQL injection to obtain sensitive data.

๐Ÿ“… Published: Feb. 21, 2025, midnight ๐Ÿ”„ Last Modified: April 11, 2025, 7:16 p.m.

7.2

CVSS3.1

CVE-2025-25876 -

A vulnerability was found in ITSourcecode Simple ChatBox up to 1.0. This vulnerability affects unknown code of the file /delete.php. The attack can use SQL injection to obtain sensitive data.

๐Ÿ“… Published: Feb. 21, 2025, midnight ๐Ÿ”„ Last Modified: March 28, 2025, 6:45 p.m.

9.8

CVSS3.1

CVE-2025-26014 -

A Remote Code Execution (RCE) vulnerability in Loggrove v.1.0 allows a remote attacker to execute arbitrary code via the path parameter.

๐Ÿ“… Published: Feb. 21, 2025, midnight ๐Ÿ”„ Last Modified: June 13, 2025, 4 p.m.

4.8

CVSS3.1

CVE-2025-25766 -

An arbitrary file upload vulnerability in the component /file/savefile.do of MRCMS v3.1.2 allows attackers to execute arbitrary code via uploading a crafted .jsp file.

๐Ÿ“… Published: Feb. 21, 2025, midnight ๐Ÿ”„ Last Modified: March 28, 2025, 6:46 p.m.

6.5

CVSS3.1

CVE-2025-25505 -

Tenda AC6 15.03.05.16_multi is vulnerable to Buffer Overflow in the sub_452A4 function.

๐Ÿ“… Published: Feb. 21, 2025, midnight ๐Ÿ”„ Last Modified: April 10, 2025, 1:37 p.m.

6.8

CVSS3.1

CVE-2025-25770 -

Wangmarket v4.10 to v5.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /agency/AgencyUserController.java.

๐Ÿ“… Published: Feb. 21, 2025, midnight ๐Ÿ”„ Last Modified: March 28, 2025, 8:07 p.m.
Total resulsts: 349182
Page 6668 of 34,919
ยซ previous page ยป next page
Filters