8.8

CVSS4.0

CVE-2019-25335 - PRO-7070 Hazฤฑr Profesyonel Web Sitesi 1.0 - Authentication Bypass

PRO-7070 Hazฤฑr Profesyonel Web Sitesi version 1.0 contains an authentication bypass vulnerability in the administration panel login page. Attackers can bypass authentication by using '=' 'or' as both username and password to gain unauthorized access to the administrative interface.

๐Ÿ“… Published: Feb. 12, 2026, 10:49 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.6

CVSS4.0

CVE-2020-37167 - ClamAV ClamBC < 0.103.0-rc - 'ClamBC' Executable Regular Expression Error

ClamAV versions prior to 0.103.0-rc contain a vulnerability in function name processing through theย ClamBC bytecode interpreter that allows attackers to manipulate bytecode function names. Attackers can exploit the weak input validation in function name encoding to potentially execute malicious bytโ€ฆ

๐Ÿ“… Published: Feb. 12, 2026, 10:48 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.1

CVSS4.0

CVE-2019-25342 - Centova Cast 3.2.12 - Denial of Service

Centova Cast 3.2.12 contains a denial of service vulnerability that allows attackers to overwhelm the system by repeatedly calling the database export API endpoint. Attackers can trigger 100% CPU load by sending multiple concurrent requests to the /api.php endpoint with crafted parameters.

๐Ÿ“… Published: Feb. 12, 2026, 10:48 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.7

CVSS4.0

CVE-2019-25341 - iNetTools for iOS 8.20 - 'Whois' Denial of Service

iNetTools for iOS 8.20 contains a denial of service vulnerability in the Whois feature that allows attackers to crash the application by manipulating input. Attackers can paste a specially crafted 98-character buffer into the Domain Name field to trigger an application crash.

๐Ÿ“… Published: Feb. 12, 2026, 10:48 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.7

CVSS4.0

CVE-2019-25340 - SpotAuditor 5.3.2 - 'Base64' Denial Of Service

SpotAuditor 5.3.2 contains a denial of service vulnerability in its Base64 decryption feature that allows attackers to crash the application by supplying an oversized buffer. Attackers can generate a malformed input file with 2000 repeated characters to trigger an application crash when pasted intoโ€ฆ

๐Ÿ“… Published: Feb. 12, 2026, 10:48 p.m. ๐Ÿ”„ Last Modified: March 5, 2026, 1:26 a.m.

6.7

CVSS4.0

CVE-2019-25339 - GHIA CamIP 1.2 for iOS - 'Password' Denial of Service

GHIA CamIP 1.2 for iOS contains a denial of service vulnerability in the password input field that allows attackers to crash the application. Attackers can paste a 33-character buffer of repeated characters into the password field to trigger an application crash on iOS devices.

๐Ÿ“… Published: Feb. 12, 2026, 10:48 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.9

CVSS4.0

CVE-2019-25338 - Dokuwiki 2018-04-22b - Username Enumeration

DokuWiki 2018-04-22b contains a username enumeration vulnerability in its password reset functionality that allows attackers to identify valid user accounts. Attackers can submit different usernames to the password reset endpoint and distinguish between existing and non-existing accounts by analyziโ€ฆ

๐Ÿ“… Published: Feb. 12, 2026, 10:48 p.m. ๐Ÿ”„ Last Modified: March 5, 2026, 1:26 a.m.

5.3

CVSS4.0

CVE-2019-25337 - OwnCloud 8.1.8 - Username Disclosure

OwnCloud 8.1.8 contains a username enumeration vulnerability that allows remote attackers to discover user accounts by manipulating the share.php endpoint. Attackers can send crafted GET requests to /index.php/core/ajax/share.php with a wildcard search parameter to retrieve comprehensive user inforโ€ฆ

๐Ÿ“… Published: Feb. 12, 2026, 10:48 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.4

CVSS4.0

CVE-2019-25336 - SpotAuditor 5.3.2 - 'Base64' Local Buffer Overflow (SEH)

SpotAuditor 5.3.2 contains a local buffer overflow vulnerability in the Base64 Encrypted Password tool that allows attackers to execute arbitrary code by crafting a malicious payload. Attackers can generate a specially crafted Base64 encoded payload to trigger a Structured Exception Handler (SEH) oโ€ฆ

๐Ÿ“… Published: Feb. 12, 2026, 10:48 p.m. ๐Ÿ”„ Last Modified: March 5, 2026, 1:26 a.m.

6.7

CVSS4.0

CVE-2019-25334 - Product Key Explorer 4.2.0.0 - 'Name' Denial of Service

Product Key Explorer 4.2.0.0 contains a denial of service vulnerability that allows local attackers to crash the application by overflowing the registration name input field. Attackers can create a specially crafted text file with repeated characters to trigger a buffer overflow when pasted into thโ€ฆ

๐Ÿ“… Published: Feb. 12, 2026, 10:48 p.m. ๐Ÿ”„ Last Modified: March 25, 2026, 8:23 p.m.
Total resulsts: 348484
Page 1582 of 34,849
ยซ previous page ยป next page
Filters