6.3

CVSS3.1

CVE-2024-57603 -

An issue in MaysWind ezBookkeeping 0.7.0 allows a remote attacker to escalate privileges via the lack of rate limiting.

πŸ“… Published: Feb. 12, 2025, midnight πŸ”„ Last Modified: June 6, 2025, 5:53 p.m.

5.4

CVSS3.1

CVE-2024-56938 -

LearnDash v6.7.1 was discovered to contain a stored cross-site scripting (XSS) vulnerability in the materials-content class.

πŸ“… Published: Feb. 12, 2025, midnight πŸ”„ Last Modified: Feb. 24, 2025, 4:33 p.m.

9.8

CVSS3.1

CVE-2024-57604 -

An issue in MaysWind ezBookkeeping 0.7.0 allows a remote attacker to escalate privileges via the token component.

πŸ“… Published: Feb. 12, 2025, midnight πŸ”„ Last Modified: June 6, 2025, 5:57 p.m.

9.8

CVSS3.1

CVE-2025-25742 -

D-Link DIR-853 A1 FW1.20B07 was discovered to contain a stack-based buffer overflow vulnerability via the AccountPassword parameter in the SetSysEmailSettings module.

πŸ“… Published: Feb. 12, 2025, midnight πŸ”„ Last Modified: March 5, 2025, 7:15 p.m.

5.6

CVSS3.1

CVE-2020-3432 - Cisco AnyConnect Secure Mobility Client for Mac OS File Corruption Vulnerability

A vulnerability in the uninstaller component of Cisco AnyConnect Secure Mobility Client for Mac OS could allow an authenticated, local attacker to corrupt the content of any file in the filesystem. The vulnerability is due to the incorrect handling of directory paths. An attacker could exploit thi…

πŸ“… Published: Feb. 11, 2025, 11:56 p.m. πŸ”„ Last Modified: June 24, 2025, 12:12 a.m.

7.5

CVSS3.1

CVE-2023-31345 -

Improper input validation in the SMM handler may allow a privileged attacker to overwrite SMRAM, potentially leading to arbitrary code execution.

πŸ“… Published: Feb. 11, 2025, 11:49 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.5

CVSS3.1

CVE-2024-0112 -

NVIDIA Jetson AGX Orinβ„’ and NVIDIA IGX Orin software contain a vulnerability where an attacker can cause an improper input validation issue by escalating certain permissions to a limited degree. A successful exploit of this vulnerability might lead to code execution, denial of service, data corrupt…

πŸ“… Published: Feb. 11, 2025, 11:45 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5

CVSS3.1

CVE-2023-20508 -

Improper access control in the ASP could allow a privileged attacker to perform an out-of-bounds write to a memory location not controlled by the attacker, potentially leading to loss of confidentiality, integrity, or availability.

πŸ“… Published: Feb. 11, 2025, 11:34 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.1

CVSS3.1

CVE-2025-25203 - Ctrlpanel has stored XSS vulnerability in TicketsController priority field

CtrlPanel is open-source billing software for hosting providers. Prior to version 1.0, a Cross-Site Scripting (XSS) vulnerability exists in the `TicketsController` and `Moderation/TicketsController` due to insufficient input validation on the `priority` field during ticket creation and unsafe rende…

πŸ“… Published: Feb. 11, 2025, 10:47 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6

CVSS3.1

CVE-2023-31352 -

A bug in the SEV firmware may allow an attacker with privileges to read unencrypted memory, potentially resulting in loss of guest private data.

πŸ“… Published: Feb. 11, 2025, 10:44 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 6776 of 34,919
Β« previous page Β» next page
Filters