5.3

CVSS4.0

CVE-2026-4241 - itsourcecode College Management System time-table.php sql injection

A vulnerability was identified in itsourcecode College Management System 1.0. The impacted element is an unknown function of the file /admin/time-table.php. Such manipulation of the argument course_code leads to sql injection. The attack can be launched remotely. The exploit is publicly available a…

πŸ“… Published: March 16, 2026, 2:02 p.m. πŸ”„ Last Modified: April 22, 2026, 9:32 p.m.

6.9

CVSS4.0

CVE-2026-4240 - Open5GS CCA smf_s6b_sta_cb denial of service

A vulnerability was determined in Open5GS up to 2.7.6. The affected element is the function smf_gx_cca_cb/smf_gy_cca_cb/smf_s6b_aaa_cb/smf_s6b_sta_cb of the component CCA Handler. This manipulation causes denial of service. The attack can be initiated remotely. The exploit has been publicly disclos…

πŸ“… Published: March 16, 2026, 1:32 p.m. πŸ”„ Last Modified: March 24, 2026, 10:44 a.m.

5.3

CVSS4.0

CVE-2025-10461 - Global file reads caused by improper URL checks in webserver

Global file reads caused by improper URL checks in webserver in Softing Industrial Automation GmbH smartLinks on docker (filesystem modules) allows file access. This issue affects smartLink SW-HT: through 1.42 smartLink SW-PN: through 1.03.

πŸ“… Published: March 16, 2026, 1:27 p.m. πŸ”„ Last Modified: March 27, 2026, 9:16 a.m.

7.7

CVSS4.0

CVE-2025-10685 - HTTP POST with specific higher content length leads into heap corruption

Heap-based buffer overflow vulnerability in Softing Industrial Automation GmbH smartLink SW-PN and smartLink SW-HT (Webserver modules) allows overflow buffers.This issue affects: smartLink SW-PN: through 1.03 smartLink SW-HT: through 1.42

πŸ“… Published: March 16, 2026, 1:14 p.m. πŸ”„ Last Modified: March 27, 2026, 9:16 a.m.

5.1

CVSS4.0

CVE-2026-4239 - Lagom WHMCS Template Datatables prototype pollution

A vulnerability was found in Lagom WHMCS Template up to 2.3.7. Impacted is an unknown function of the component Datatables. The manipulation results in improperly controlled modification of object prototype attributes. It is possible to launch the attack remotely. The exploit has been made public a…

πŸ“… Published: March 16, 2026, 1:02 p.m. πŸ”„ Last Modified: April 22, 2026, 9:32 p.m.

4.3

CVSS3.1

CVE-2026-25780 - Memory Exhaustion via Malformed DOC File Upload

Mattermost versions 11.3.x <= 11.3.0, 11.2.x <= 11.2.2, 10.11.x <= 10.11.10 fail to bound memory allocation when processing DOC files which allows an authenticated attacker to cause server memory exhaustion and denial of service via uploading a specially crafted DOC file.. Mattermost Advisory ID: M…

πŸ“… Published: March 16, 2026, 12:59 p.m. πŸ”„ Last Modified: March 24, 2026, 10:44 a.m.

4.8

CVSS3.1

CVE-2025-52648 -

HCL AION is affected by a vulnerability where offering images are not digitally signed. Lack of image signing may allow the use of unverified or tampered images, potentially leading to security risks such as integrity compromise or unintended behavior in the system

πŸ“… Published: March 16, 2026, 12:53 p.m. πŸ”„ Last Modified: March 30, 2026, 8 a.m.

5.6

CVSS3.1

CVE-2025-52638 - Multiple security vulnerabilities affect HCL AION

HCL AION is affected by a vulnerability where generated containers may execute binaries with root-level privileges. Running containers with root privileges may increase the potential security risk, as it grants elevated permissions within the container environment. Aligning container configurations…

πŸ“… Published: March 16, 2026, 12:35 p.m. πŸ”„ Last Modified: March 30, 2026, 8 a.m.

5.1

CVSS4.0

CVE-2026-4238 - itsourcecode College Management System courses.php sql injection

A vulnerability has been found in itsourcecode College Management System 1.0. This issue affects some unknown processing of the file /admin/courses.php. The manipulation of the argument course_code leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclose…

πŸ“… Published: March 16, 2026, 12:32 p.m. πŸ”„ Last Modified: April 22, 2026, 9:32 p.m.

4.5

CVSS3.1

CVE-2025-52637 - Multiple security vulnerabilities affect HCL AION

HCL AION is affected by a vulnerability where certain offering configurations may permit execution of potentially harmful SQL queries. Improper validation or restrictions on query execution could expose the system to unintended database interactions or limited information exposure under specific co…

πŸ“… Published: March 16, 2026, 12:27 p.m. πŸ”„ Last Modified: March 30, 2026, 8 a.m.
Total resulsts: 349182
Page 1096 of 34,919
Β« previous page Β» next page
Filters