8.2

CVSS3.1

CVE-2021-35484 -

Nokia IMPACT through 19.11.2.10-20210118042150283 allows an authenticated user to perform a Time-based Boolean Blind SQL Injection attack on the endpoint /ui/rest-proxy/campaign/statistic (for the View Campaign page) via the sortColumn HTTP GET parameter. This allows an attacker to access sensitive…

πŸ“… Published: March 3, 2026, midnight πŸ”„ Last Modified: March 5, 2026, 9:53 p.m.

7.5

CVSS3.1

CVE-2024-55021 -

Weintek cMT-3072XH2 easyweb v2.1.53, OS v20231011 was discovered to contain a hardcoded password in the FTP protocol.

πŸ“… Published: March 3, 2026, midnight πŸ”„ Last Modified: March 9, 2026, 6:20 p.m.

7.5

CVSS3.1

CVE-2025-70240 -

Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetWAN_Wizard51.

πŸ“… Published: March 3, 2026, midnight πŸ”„ Last Modified: March 9, 2026, 8:16 p.m.

7.5

CVSS3.1

CVE-2025-62814 -

An issue was discovered in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, and 2400. A NULL pointer dereference of ft_handle in load_fw_utc_vector() causes a denial of service.

πŸ“… Published: March 3, 2026, midnight πŸ”„ Last Modified: March 4, 2026, 5:40 p.m.

2.7

CVSS3.1

CVE-2026-26889 - SQL Injection in Sourcecodester Pharmacy Point of Sale System 1.0

Sourcecodester Pharmacy Point of Sale System v1.0 is vulnerable to SQL Injection in /pharmacy/manage_category.php.

πŸ“… Published: March 3, 2026, midnight πŸ”„ Last Modified: April 17, 2026, 1:30 p.m.

8.8

CVSS3.1

CVE-2026-3539 - chromium-browser: Object lifecycle issue in DevTools

Object lifecycle issue in DevTools in Google Chrome prior to 145.0.7632.159 allowed an attacker who convinced a user to install a malicious extension to potentially exploit heap corruption via a crafted Chrome Extension. (Chromium security severity: High)

πŸ“… Published: March 3, 2026, midnight πŸ”„ Last Modified: April 18, 2026, 10 a.m.

2.7

CVSS3.1

CVE-2026-26883 - SQL Injection in Delete Appointment Endpoint of Online Men’s Salon Management System

Sourcecodester Online Men's Salon Management System v1.0 is vulnerable to SQL Injection in /msms/classes/Master.php?f=delete_appointment.

πŸ“… Published: March 3, 2026, midnight πŸ”„ Last Modified: April 16, 2026, 2:15 p.m.

4.1

CVSS3.1

CVE-2021-35483 -

The Applications component of Nokia IMPACT version through 19.11.2.10-20210118042150283 allows an authenticated user to arbitrarily upload JavaScript files via the /ui/rest-proxy/application fileupload parameter. This can occur during the adding of a new application, or during the editing of an exi…

πŸ“… Published: March 3, 2026, midnight πŸ”„ Last Modified: March 5, 2026, 9:50 p.m.

7.2

CVSS3.1

CVE-2025-63910 -

An authenticated arbitrary file upload vulnerability in Cohesity TranZman Migration Appliance Release 4.0 Build 14614 allows attackers with Administrator privileges to execute arbitrary code via uploading a crafted patch file.

πŸ“… Published: March 3, 2026, midnight πŸ”„ Last Modified: March 5, 2026, 12:25 a.m.

9.8

CVSS3.1

CVE-2025-57622 -

An issue in Step-Video-T2V allows a remote attacker to execute arbitrary code via the /vae-api , /caption-api , feature = pickle.loads(request.get_data()) component

πŸ“… Published: March 3, 2026, midnight πŸ”„ Last Modified: March 12, 2026, 4:16 p.m.
Total resulsts: 348415
Page 1291 of 34,842
Β« previous page Β» next page
Filters