8.8

CVSS3.1

CVE-2025-45468 -

Insecure permissions in fc-stable-diffusion-plus v1.0.18 allows attackers to escalate privileges and compromise the customer cloud account.

πŸ“… Published: May 22, 2025, midnight πŸ”„ Last Modified: Oct. 21, 2025, 9:18 p.m.

7.8

CVSS3.1

CVE-2024-40458 -

An issue in Ocuco Innovation Tracking.exe v.2.10.24.51 allows a local attacker to escalate privileges via the modification of TCP packets.

πŸ“… Published: May 22, 2025, midnight πŸ”„ Last Modified: May 30, 2025, 1:17 a.m.

8.8

CVSS3.1

CVE-2025-45471 -

Insecure permissions in measure-cold-start v1.4.1 allows attackers to escalate privileges and compromise the customer cloud account.

πŸ“… Published: May 22, 2025, midnight πŸ”„ Last Modified: Oct. 14, 2025, 8:33 p.m.

8.8

CVSS3.1

CVE-2024-52874 -

In Infoblox NETMRI before 7.6.1, authenticated users can perform SQL injection attacks.

πŸ“… Published: May 22, 2025, midnight πŸ”„ Last Modified: May 30, 2025, 1:18 a.m.

9.8

CVSS3.1

CVE-2024-41198 -

An issue in Ocuco Innovation - REPORTS.EXE v2.10.24.13 allows attackers to bypass authentication and escalate privileges to Administrator via a crafted TCP packet.

πŸ“… Published: May 22, 2025, midnight πŸ”„ Last Modified: May 30, 2025, 1:15 a.m.

7.2

CVSS3.1

CVE-2025-32813 -

An issue was discovered in Infoblox NETMRI before 7.6.1. Remote Unauthenticated Command Injection can occur.

πŸ“… Published: May 22, 2025, midnight πŸ”„ Last Modified: June 3, 2025, 1:53 p.m.

7.8

CVSS3.1

CVE-2024-40459 -

An issue in Ocuco Innovation APPMANAGER.EXE v.2.10.24.51 allows a local attacker to escalate privileges via the application manager function

πŸ“… Published: May 22, 2025, midnight πŸ”„ Last Modified: May 30, 2025, 1:17 a.m.

5.1

CVSS4.0

CVE-2025-5059 - Campcodes Online Shopping Portal edit-subcategory.php unrestricted upload

A vulnerability classified as critical has been found in Campcodes Online Shopping Portal 1.0. This affects an unknown part of the file /admin/edit-subcategory.php. The manipulation of the argument productimage1/productimage2/productimage3 leads to unrestricted upload. It is possible to initiate th…

πŸ“… Published: May 21, 2025, 10:31 p.m. πŸ”„ Last Modified: May 28, 2025, 2:02 a.m.

8.6

CVSS4.0

CVE-2025-34025 - Versa Concerto Insecure Docker Mount Container Escape

The Versa Concerto SD-WAN orchestration platform is vulnerable to an privileges escalation and container escape vulnerability caused by unsafe default mounting of host binary paths that allow the container to modify host paths. The escape can be used to trigger remote code execution or direct host …

πŸ“… Published: May 21, 2025, 10:11 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

3.5

CVSS3.1

CVE-2025-48070 - Plane has insecure permissions in UserSerializer

Plane is open-source project management software. Versions prior to 0.23 have insecure permissions in UserSerializer that allows users to change fields that are meant to be read-only, such as email. This can lead to account takeover when chained with another vulnerability such as cross-site scripti…

πŸ“… Published: May 21, 2025, 10:11 p.m. πŸ”„ Last Modified: June 24, 2025, 9:44 a.m.
Total resulsts: 345139
Page 4890 of 34,514
Β« previous page Β» next page
Filters