7.2

CVSS3.1

CVE-2025-25021 - IBM QRadar Suite Software and IBM Cloud Pak for Security code injection

IBM QRadar Suite Software 1.10.12.0 through 1.11.2.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 could allow a privileged execute code in case management script creation due to the improper generation of code.

πŸ“… Published: June 3, 2025, 3:17 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 6:27 p.m.

9.6

CVSS3.1

CVE-2025-25022 - IBM QRadar Suite Software and IBM Cloud Pak for Security information disclosure

IBM QRadar Suite Software 1.10.12.0 through 1.11.2.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 could allow an unauthenticated user in the environment to obtain highly sensitive information in configuration files.

πŸ“… Published: June 3, 2025, 3:16 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 6:27 p.m.

4.8

CVSS3.1

CVE-2025-25019 - IBM QRadar Suite Software and IBM Cloud Pak for Security session fixation

IBM QRadar Suite Software 1.10.12.0 through 1.11.2.0 and IBM Cloud Pak for Security 1.10.0.0 through 1.10.11.0 does not invalidate session after a logout which could allow a user to impersonate another user on the system.

πŸ“… Published: June 3, 2025, 3:14 p.m. πŸ”„ Last Modified: Aug. 24, 2025, noon

4.8

CVSS4.0

CVE-2025-5506 - TOTOLINK A3002RU NAT Mapping Page cross site scripting

A vulnerability was found in TOTOLINK A3002RU 2.1.1-B20230720.1011. It has been classified as problematic. Affected is an unknown function of the component NAT Mapping Page. The manipulation of the argument Comment leads to cross site scripting. It is possible to launch the attack remotely. The exp…

πŸ“… Published: June 3, 2025, 3 p.m. πŸ”„ Last Modified: June 17, 2025, 8:40 p.m.

4.8

CVSS4.0

CVE-2025-5505 - TOTOLINK A3002RU Virtual Server Page formPortFw cross site scripting

A vulnerability was found in TOTOLINK A3002RU 2.1.1-B20230720.1011 and classified as problematic. This issue affects some unknown processing of the file /boafrm/formPortFw of the component Virtual Server Page. The manipulation of the argument service_type leads to cross site scripting. The attack m…

πŸ“… Published: June 3, 2025, 3 p.m. πŸ”„ Last Modified: June 17, 2025, 8:40 p.m.

5.5

CVSS3.1

CVE-2024-45655 - IBM Application Gateway incorrect permission assignment

IBM Application Gateway 19.12 through 24.09 could allow a local privileged user to perform unauthorized actions due to incorrect permissions assignment.

πŸ“… Published: June 3, 2025, 2:48 p.m. πŸ”„ Last Modified: Aug. 24, 2025, 11:59 a.m.

6.5

CVSS3.1

CVE-2025-46548 - Apache Pekko Management, Apache Pekko Management, Apache Pekko Management, Akka Management, Akka Ma…

If you enable Basic Authentication in Pekko Management using the Java DSL, the authenticator may not be properly applied. Users that rely on authentication instead of making sure the Management API ports are only available to trusted users are recommended to upgrade to version 1.1.1, which fixes …

πŸ“… Published: June 3, 2025, 2:45 p.m. πŸ”„ Last Modified: July 2, 2025, 2:19 p.m.

7.8

CVSS3.1

CVE-2025-36564 -

Dell Encryption Admin Utilities versions prior to 11.10.2 contain an Improper Link Resolution vulnerability. A local malicious user could potentially exploit this vulnerability, leading to privilege escalation.

πŸ“… Published: June 3, 2025, 2:41 p.m. πŸ”„ Last Modified: Feb. 26, 2026, 6:27 p.m.

5.3

CVSS4.0

CVE-2025-5504 - TOTOLINK X2000R formWsc command injection

A vulnerability has been found in TOTOLINK X2000R 1.0.0-B20230726.1108 and classified as critical. This vulnerability affects unknown code of the file /boafrm/formWsc. The manipulation of the argument peerRptPin leads to command injection. The attack can be initiated remotely. The exploit has been …

πŸ“… Published: June 3, 2025, 2:31 p.m. πŸ”„ Last Modified: June 17, 2025, 8:40 p.m.

8.7

CVSS4.0

CVE-2025-5503 - TOTOLINK X15 formMapReboot stack-based overflow

A vulnerability, which was classified as critical, was found in TOTOLINK X15 1.0.0-B20230714.1105. This affects the function formMapReboot of the file /boafrm/formMapReboot. The manipulation of the argument deviceMacAddr leads to stack-based buffer overflow. It is possible to initiate the attack re…

πŸ“… Published: June 3, 2025, 2:31 p.m. πŸ”„ Last Modified: June 17, 2025, 8:40 p.m.
Total resulsts: 346624
Page 4932 of 34,663
Β« previous page Β» next page
Filters