7.5

CVSS3.1

CVE-2023-51316 -

A lack of rate limiting in the 'Forgot Password' feature of PHPJabbers Bus Reservation System v1.1 allows attackers to send an excessive amount of email for a legitimate user, leading to a possible Denial of Service (DoS) via a large amount of generated e-mail messages.

๐Ÿ“… Published: Feb. 20, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 4, 2025, 7:16 p.m.

9.8

CVSS3.1

CVE-2025-25675 -

Tenda AC10 V1.0 V15.03.06.23 has a command injection vulnerablility located in the formexeCommand function. The str variable receives the cmdinput parameter from a POST request and is later assigned to the cmd_buf variable, which is directly used in the doSystemCmd function, causing an arbitrary coโ€ฆ

๐Ÿ“… Published: Feb. 20, 2025, midnight ๐Ÿ”„ Last Modified: March 17, 2025, 2:26 p.m.

5.4

CVSS3.1

CVE-2023-51330 -

PHPJabbers Cinema Booking System v1.0 is vulnerable to Reflected Cross-Site Scripting (XSS) in Now Showing menu "date" parameter.

๐Ÿ“… Published: Feb. 20, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 4, 2025, 7:16 p.m.

6.5

CVSS3.1

CVE-2025-26309 -

A memory leak has been identified in the parseSWF_DEFINESCENEANDFRAMEDATA function in util/parser.c of libming v0.4.8, which allows attackers to cause a denial of service via a crafted SWF file.

๐Ÿ“… Published: Feb. 20, 2025, midnight ๐Ÿ”„ Last Modified: April 17, 2025, 6:21 p.m.

6.5

CVSS3.1

CVE-2024-55457 -

MasterSAM Star Gate 11 is vulnerable to directory traversal via /adama/adama/downloadService. An attacker can exploit this vulnerability by manipulating the file parameter to access arbitrary files on the server, potentially exposing sensitive information.

๐Ÿ“… Published: Feb. 20, 2025, midnight ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.5

CVSS3.1

CVE-2024-54961 -

Nagios XI 2024R1.2.2 has an Information Disclosure vulnerability, which allows unauthenticated users to access multiple pages displaying the usernames and email addresses of all current users.

๐Ÿ“… Published: Feb. 20, 2025, midnight ๐Ÿ”„ Last Modified: June 18, 2025, 11:39 p.m.

8.8

CVSS3.1

CVE-2023-51311 -

PHPJabbers Car Park Booking System v3.0 is vulnerable to CSV Injection vulnerability which allows an attacker to execute remote code. The vulnerability exists due to insufficient input validation on Languages section Labels any parameters field in System Options that is used to construct CSV file.

๐Ÿ“… Published: Feb. 20, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 4, 2025, 7:16 p.m.

6.5

CVSS3.1

CVE-2025-26307 -

A memory leak has been identified in the parseSWF_IMPORTASSETS2 function in util/parser.c of libming v0.4.8, which allows attackers to cause a denial of service via a crafted SWF file.

๐Ÿ“… Published: Feb. 20, 2025, midnight ๐Ÿ”„ Last Modified: April 17, 2025, 6:30 p.m.

6.5

CVSS3.1

CVE-2023-51326 -

A lack of rate limiting in the 'Forgot Password' feature of PHPJabbers Cleaning Business Software v1.0 allows attackers to send an excessive amount of email for a legitimate user, leading to a possible Denial of Service (DoS) via a large amount of generated e-mail messages.

๐Ÿ“… Published: Feb. 20, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 4, 2025, 7:16 p.m.

9.8

CVSS3.1

CVE-2025-25667 -

Tenda AC8V4 V16.03.34.06 was discovered to contain a stack overflow via the urls parameter in the function get_parentControl_list_Info.

๐Ÿ“… Published: Feb. 20, 2025, midnight ๐Ÿ”„ Last Modified: March 17, 2025, 5 p.m.
Total resulsts: 349182
Page 6676 of 34,919
ยซ previous page ยป next page
Filters