9.8

CVSS3.1

CVE-2025-25664 -

Tenda AC8V4 V16.03.34.06 was discovered to contain a stack overflow via the shareSpeed parameter in the sub_49E098 function.

๐Ÿ“… Published: Feb. 20, 2025, midnight ๐Ÿ”„ Last Modified: March 17, 2025, 3:19 p.m.

5.3

CVSS3.1

CVE-2025-27218 -

Sitecore Experience Manager (XM) and Experience Platform (XP) 10.4 before KB1002844 allow remote code execution through insecure deserialization.

๐Ÿ“… Published: Feb. 20, 2025, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.3

CVSS3.1

CVE-2025-24947 -

A hash collision vulnerability (in the hash table used to manage connections) in LSQUIC (aka LiteSpeed QUIC) before 4.2.0 allows remote attackers to cause a considerable CPU load on the server (a Hash DoS attack) by initiating connections with colliding Source Connection IDs (SCIDs). This is causedโ€ฆ

๐Ÿ“… Published: Feb. 20, 2025, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.5

CVSS3.1

CVE-2023-51339 -

A lack of rate limiting in the 'Forgot Password' feature of PHPJabbers Event Ticketing System v1.0 allows attackers to send an excessive amount of email for a legitimate user, leading to a possible Denial of Service (DoS) via a large amount of generated e-mail messages.

๐Ÿ“… Published: Feb. 20, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 4, 2025, 7:16 p.m.

6.5

CVSS3.1

CVE-2023-51324 -

PHPJabbers Shared Asset Booking System v1.0 is vulnerable to CSV Injection vulnerability which allows an attacker to execute remote code. The vulnerability exists due to insufficient input validation on Languages section Labels any parameters field in System Options that is used to construct CSV fiโ€ฆ

๐Ÿ“… Published: Feb. 20, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 4, 2025, 7:16 p.m.

6.5

CVSS3.1

CVE-2023-51327 -

A lack of rate limiting in the 'Forgot Password' feature of PHPJabbers Cleaning Business Software v1.0 allows attackers to send an excessive amount of email for a legitimate user, leading to a possible Denial of Service (DoS) via a large amount of generated e-mail messages.

๐Ÿ“… Published: Feb. 20, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 4, 2025, 7:16 p.m.

6.5

CVSS3.1

CVE-2025-25973 -

A stored Cross Site Scripting vulnerability in the "related recommendations" feature in Ppress v.0.0.9 allows a remote attacker to execute arbitrary code via a crafted script to the article.title, article.category, and article.tags parameters.

๐Ÿ“… Published: Feb. 20, 2025, midnight ๐Ÿ”„ Last Modified: Sept. 23, 2025, 7:16 p.m.

5.3

CVSS3.1

CVE-2023-51334 -

A lack of rate limiting in the 'Forgot Password' feature of PHPJabbers Cinema Booking System v1.0 allows attackers to send an excessive amount of email for a legitimate user, leading to a possible Denial of Service (DoS) via a large amount of generated e-mail messages.

๐Ÿ“… Published: Feb. 20, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 4, 2025, 7:16 p.m.

4.3

CVSS3.1

CVE-2023-51332 -

A lack of rate limiting in the 'Forgot Password' feature of PHPJabbers Meeting Room Booking System v1.0 allows attackers to send an excessive amount of email for a legitimate user, leading to a possible Denial of Service (DoS) via a large amount of generated e-mail messages.

๐Ÿ“… Published: Feb. 20, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 4, 2025, 7:16 p.m.

6.5

CVSS3.1

CVE-2024-54960 -

A SQL Injection vulnerability in Nagios XI 2024R1.2.2 allows a remote attacker to execute SQL injection via a crafted payload in the History Tab component.

๐Ÿ“… Published: Feb. 20, 2025, midnight ๐Ÿ”„ Last Modified: July 7, 2025, 5:46 p.m.
Total resulsts: 349182
Page 6675 of 34,919
ยซ previous page ยป next page
Filters