5.3

CVSS4.0

CVE-2025-7103 - BoyunCMS curl Index.php server-side request forgery

A vulnerability was found in BoyunCMS up to 1.4.20. It has been rated as critical. This issue affects some unknown processing of the file /application/pay/controller/Index.php of the component curl. The manipulation leads to server-side request forgery. The attack may be initiated remotely. The exp…

πŸ“… Published: July 7, 2025, 1:32 a.m. πŸ”„ Last Modified: July 7, 2025, 4:15 p.m.

5.3

CVSS4.0

CVE-2025-7102 - BoyunCMS Server.php sql injection

A vulnerability was found in BoyunCMS up to 1.4.20. It has been declared as critical. This vulnerability affects unknown code of the file application/update/controller/Server.php. The manipulation of the argument phone leads to sql injection. The attack can be initiated remotely. The exploit has be…

πŸ“… Published: July 7, 2025, 1:02 a.m. πŸ”„ Last Modified: July 7, 2025, 4:15 p.m.

5.3

CVSS4.0

CVE-2025-7101 - BoyunCMS Configuration File install_ok.php code injection

A vulnerability was found in BoyunCMS up to 1.4.20. It has been classified as critical. This affects an unknown part of the file /install/install_ok.php of the component Configuration File Handler. The manipulation of the argument db_pass leads to code injection. It is possible to initiate the atta…

πŸ“… Published: July 7, 2025, 12:32 a.m. πŸ”„ Last Modified: July 7, 2025, 4:15 p.m.

5.3

CVSS4.0

CVE-2025-7100 - BoyunCMS Index.php unrestricted upload

A vulnerability was found in BoyunCMS up to 1.4.20 and classified as critical. Affected by this issue is some unknown functionality of the file /application/user/controller/Index.php. The manipulation of the argument image leads to unrestricted upload. The attack may be launched remotely. The explo…

πŸ“… Published: July 7, 2025, 12:02 a.m. πŸ”„ Last Modified: July 7, 2025, 4:15 p.m.

0.0

CVE-2024-37657 -

An open redirect vulnerability in gnuboard5 v.5.5.16 allows a remote attacker to obtain sensitive information via thebbs/login.php component.

πŸ“… Published: July 7, 2025, midnight πŸ”„ Last Modified: July 7, 2025, 6:15 p.m.

0.0

CVE-2024-37656 -

An open redirect vulnerability in gnuboard5 v.5.5.16 allows a remote attacker to obtain sensitive information via the insufficient URL parameter verification in bbs/logout.php.

πŸ“… Published: July 7, 2025, midnight πŸ”„ Last Modified: July 7, 2025, 6:15 p.m.

0.0

CVE-2024-37658 -

An open redirect vulnerability in gnuboard5 v.5.5.16 allows a remote attacker to obtain sensitive information via the bbs/member_confirm.php.

πŸ“… Published: July 7, 2025, midnight πŸ”„ Last Modified: July 7, 2025, 6:15 p.m.

0.0

CVE-2024-25178 -

LuaJIT through 2.1 has an out-of-bounds read in the stack-overflow handler in lj_state.c

πŸ“… Published: July 7, 2025, midnight πŸ”„ Last Modified: July 7, 2025, 5:15 p.m.

0.0

CVE-2024-25176 -

LuaJIT through 2.1 has a stack-buffer-overflow in lj_strfmt_wfnum in lj_strfmt_num.c.

πŸ“… Published: July 7, 2025, midnight πŸ”„ Last Modified: July 7, 2025, 5:15 p.m.

0.0

CVE-2024-25177 -

LuaJIT through 2.1 has an unsinking of IR_FSTORE for NULL metatable, which leads to Denial of Service (DoS).

πŸ“… Published: July 7, 2025, midnight πŸ”„ Last Modified: July 7, 2025, 5:15 p.m.
Total resulsts: 300725
Page 16 of 30,073
Β« previous page Β» next page
Filters