5.4

CVSS3.1

CVE-2023-51312 -

PHPJabbers Restaurant Booking System v3.0 is vulnerable to Reflected Cross-Site Scripting (XSS) in Reservations menu, Schedule section date parameter.

πŸ“… Published: Feb. 20, 2025, midnight πŸ”„ Last Modified: Nov. 4, 2025, 7:16 p.m.

9.8

CVSS3.1

CVE-2025-25663 -

A vulnerability was found in Tenda AC8V4 V16.03.34.06. Affected is the function SUB_0046AC38 of the file /goform/WifiExtraSet. The manipulation of the argument wpapsk_crypto leads to stack-based buffer overflow.

πŸ“… Published: Feb. 20, 2025, midnight πŸ”„ Last Modified: March 17, 2025, 3:10 p.m.

6.5

CVSS3.1

CVE-2025-26308 -

A memory leak has been identified in the parseSWF_FILTERLIST function in util/parser.c of libming v0.4.8, which allows attackers to cause a denial of service via a crafted SWF file.

πŸ“… Published: Feb. 20, 2025, midnight πŸ”„ Last Modified: April 17, 2025, 6:24 p.m.

7.5

CVSS3.1

CVE-2023-51314 -

A lack of rate limiting in the 'Forgot Password', 'Email Settings' feature of PHPJabbers Restaurant Booking System v3.0 allows attackers to send an excessive amount of email for a legitimate user, leading to a possible Denial of Service (DoS) via a large amount of generated e-mail messages.

πŸ“… Published: Feb. 20, 2025, midnight πŸ”„ Last Modified: Nov. 4, 2025, 7:16 p.m.

9.8

CVSS3.1

CVE-2025-25662 -

Tenda O4 V3.0 V1.0.0.10(2936) is vulnerable to Buffer Overflow in the function SafeSetMacFilter of the file /goform/setMacFilterList via the argument remark/type/time.

πŸ“… Published: Feb. 20, 2025, midnight πŸ”„ Last Modified: May 7, 2025, 5:56 p.m.

6.1

CVSS3.1

CVE-2024-54959 -

Nagios XI 2024R1.2.2 is vulnerable to a Cross-Site Request Forgery (CSRF) attack through the Favorites component, enabling POST-based Cross-Site Scripting (XSS).

πŸ“… Published: Feb. 20, 2025, midnight πŸ”„ Last Modified: July 1, 2025, 3:02 p.m.

6.8

CVSS4.0

CVE-2025-0112 - Cortex XDR Agent: Local Windows User Can Disable the Agent

A problem with a detection mechanism in the Palo Alto Networks Cortex XDR agent on Windows devices enables a user with Windows non-administrative privileges to disable the agent. This vulnerability can also be leveraged by malware to disable the Cortex XDR agent and then perform malicious activity.

πŸ“… Published: Feb. 19, 2025, 11:44 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.5

CVSS3.1

CVE-2024-37363 - Hitachi Vantara Pentaho Business Analytics Server - Incorrect Authorization

The product does not perform an authorization check when an actor attempts to access a resource or perform an action. (CWE-862) Β Hitachi Vantara Pentaho Business Analytics Server versions before 10.2.0.0 and 9.3.0.8, including 8.3.x, do not correctly perform an authorization check in the data…

πŸ“… Published: Feb. 19, 2025, 11:40 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.3

CVSS3.1

CVE-2024-37362 - Hitachi Vantara Pentaho Data Integration & Analytics - Insufficiently Protected Credentials

The product transmits or stores authentication credentials, but it uses an insecure method that is susceptible to unauthorized interception and/or retrieval. (CWE-522) Β  Hitachi Vantara Pentaho Data Integration & Analytics versions before 10.2.0.0 and 9.3.0.8, including 8.3.x, discloses data…

πŸ“… Published: Feb. 19, 2025, 11:34 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.5

CVSS3.1

CVE-2024-6697 - Hitachi Vantara Pentaho Business Analytics Server - Improper Handling of Insufficient Permissions o…

The product does not handle or incorrectly handles when it has insufficient privileges to access resources or functionality as specified by their permissions. This may cause it to follow unexpected code paths that may leave the product in an invalid state. (CWE-280) Β  Hitachi Vantara Pentaho …

πŸ“… Published: Feb. 19, 2025, 11:32 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 6681 of 34,919
Β« previous page Β» next page
Filters