6.9

CVSS4.0

CVE-2025-0576 - Mobotix M15 player cross site scripting

A vulnerability was found in Mobotix M15 4.3.4.83 and classified as problematic. This issue affects some unknown processing of the file /control/player?center&eventlist&pda&dummy_for_reload=1736177631&p_evt. The manipulation of the argument p_qual leads to cross site scripting. The attack may be in…

πŸ“… Published: Jan. 19, 2025, 11:31 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

1.8

CVSS4.0

CVE-2025-0575 - Union Bank of India Vyom Rooting Detection protection mechanism

A vulnerability has been found in Union Bank of India Vyom 8.0.34 on Android and classified as problematic. This vulnerability affects unknown code of the component Rooting Detection. The manipulation leads to protection mechanism failure. The attack needs to be approached locally. The complexity o…

πŸ“… Published: Jan. 19, 2025, 11 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.5

CVSS3.1

CVE-2024-41742 - IBM TXSeries for Multiplatforms denial of service

IBM TXSeries for Multiplatforms 10.1 is vulnerable to a denial of service, caused by improper enforcement of the timeout on individual read operations. By conducting a slowloris-type attacks, a remote attacker could exploit this vulnerability to cause a denial of service.

πŸ“… Published: Jan. 19, 2025, 3:03 p.m. πŸ”„ Last Modified: July 16, 2025, 12:51 a.m.

7.5

CVSS3.1

CVE-2024-41743 - IBM TXSeries for Multiplatforms denial of service

IBM TXSeries for Multiplatforms 10.1 could allow a remote attacker to cause a denial of service using persistent connections due to improper allocation of resources.

πŸ“… Published: Jan. 19, 2025, 3:02 p.m. πŸ”„ Last Modified: July 16, 2025, 12:52 a.m.

9.1

CVSS3.1

CVE-2024-41783 - IBM Sterling Secure Proxy improper input validation

IBM Sterling Secure Proxy 6.0.0.0, 6.0.0.1, 6.0.0.2, 6.0.0.3, 6.1.0.0, and 6.2.0.0 could allow a privileged user to inject commands into the underlying operating system due to improper validation of a specified type of input.

πŸ“… Published: Jan. 19, 2025, 2:58 p.m. πŸ”„ Last Modified: July 25, 2025, 8:38 p.m.

9.1

CVSS3.1

CVE-2024-38337 - IBM Sterling Secure Proxy improper input validation

IBM Sterling Secure Proxy 6.0.0.0, 6.0.0.1, 6.0.0.2, 6.0.0.3, 6.1.0.0, and 6.2.0.0 could allow an unauthorized attacker to retrieve or alter sensitive information contents due to incorrect permission assignments.

πŸ“… Published: Jan. 19, 2025, 2:56 p.m. πŸ”„ Last Modified: July 25, 2025, 8:38 p.m.

2

CVSS4.0

CVE-2025-0567 - Epic Games Launcher Installer profapi.dll untrusted search path

A vulnerability classified as problematic was found in Epic Games Launcher up to 17.2.1. This vulnerability affects unknown code in the library profapi.dll of the component Installer. The manipulation leads to untrusted search path. Attacking locally is a requirement. The complexity of an attack is…

πŸ“… Published: Jan. 19, 2025, 7:31 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.7

CVSS4.0

CVE-2025-0566 - Tenda AC15 SetDevNetName formSetDevNetName stack-based overflow

A vulnerability classified as critical has been found in Tenda AC15 15.13.07.13. This affects the function formSetDevNetName of the file /goform/SetDevNetName. The manipulation of the argument mac leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exploit has …

πŸ“… Published: Jan. 19, 2025, 6:31 a.m. πŸ”„ Last Modified: July 1, 2025, 3:11 p.m.

6.9

CVSS4.0

CVE-2025-0565 - ZZCMS index.php sql injection

A vulnerability was found in ZZCMS 2023. It has been rated as critical. Affected by this issue is some unknown functionality of the file /index.php. The manipulation of the argument id leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may …

πŸ“… Published: Jan. 19, 2025, 6 a.m. πŸ”„ Last Modified: April 22, 2025, 7:37 p.m.

5.5

CVSS3.1

CVE-2024-8722 - WP All Import Pro <= 4.9.7 - Authenticated (Administrator+) Stored Cross-Site Scripting via SVG Fil…

The Import any XML or CSV File to WordPress PRO plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 4.9.7 due to insufficient input sanitization and output escaping. This makes it possible for authenticated attackers, with Adm…

πŸ“… Published: Jan. 19, 2025, 4:21 a.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 7045 of 34,919
Β« previous page Β» next page
Filters