8.8

CVSS3.1

CVE-2025-34510 - Sitecore XM, XC, and XP Post-Auth RCE via Zip Slip

Sitecore Experience Manager (XM), Experience Platform (XP), and Experience Commerce (XC) versions 9.0 through 9.3 and 10.0 through 10.4 are affected by a Zip Slip vulnerability. A remote, authenticated attacker can exploit this issue by sending a crafted HTTP request to upload a ZIP archive contain…

📅 Published: June 17, 2025, 6:46 p.m. 🔄 Last Modified: Feb. 26, 2026, 5:50 p.m.

6.8

CVSS3.1

CVE-2025-49487 -

An uncontrolled search path vulnerability in the Trend Micro Worry-Free Business Security Services (WFBSS) agent could have allowed an attacker with physical access to a machine to execute arbitrary code on affected installations. An attacker must have had physical access to the target system in…

📅 Published: June 17, 2025, 6:43 p.m. 🔄 Last Modified: Oct. 9, 2025, 5:03 p.m.

6.7

CVSS3.1

CVE-2025-49158 -

An uncontrolled search path vulnerability in the Trend Micro Apex One security agent could allow a local attacker to escalation privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit thi…

📅 Published: June 17, 2025, 6:42 p.m. 🔄 Last Modified: Sept. 9, 2025, 3:24 p.m.

7.8

CVSS3.1

CVE-2025-49157 -

A link following vulnerability in the Trend Micro Apex One Damage Cleanup Engine could allow a local attacker to escalation privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vu…

📅 Published: June 17, 2025, 6:42 p.m. 🔄 Last Modified: Sept. 9, 2025, 3:24 p.m.

7

CVSS3.1

CVE-2025-49156 -

A link following vulnerability in the Trend Micro Apex One scan engine could allow a local attacker to escalation privileges on affected installations. Please note: an attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerabilit…

📅 Published: June 17, 2025, 6:42 p.m. 🔄 Last Modified: Sept. 9, 2025, 3:24 p.m.

8.8

CVSS3.1

CVE-2025-49155 -

An uncontrolled search path vulnerability in the Trend Micro Apex One Data Loss Prevention module could allow an attacker to inject malicious code leading to arbitrary code execution on affected installations.

📅 Published: June 17, 2025, 6:42 p.m. 🔄 Last Modified: Sept. 9, 2025, 3:24 p.m.

8.7

CVSS3.1

CVE-2025-49154 -

An insecure access control vulnerability in Trend Micro Apex One and Trend Micro Worry-Free Business Security could allow a local attacker to overwrite key memory-mapped files which could then have severe consequences for the security and stability of affected installations. Please note: an atta…

📅 Published: June 17, 2025, 6:42 p.m. 🔄 Last Modified: Oct. 6, 2025, 7:11 p.m.

8.4

CVSS4.0

CVE-2025-49850 - Out-of-bounds Read in Write in LS Electric GMWin 4

A Heap-based Buffer Overflow vulnerability exists within the parsing of PRJ files. The issues result from the lack of proper validation of user-supplied data, which can result in different memory corruption issues within the application, such as reading and writing past the end of allocated data st…

📅 Published: June 17, 2025, 6:35 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

8.4

CVSS4.0

CVE-2025-49849 - Out-of-bounds Read in Write in LS Electric GMWin 4

An Out-of-bounds Read vulnerability exists within the parsing of PRJ files. The issues result from the lack of proper validation of user-supplied data, which can result in different memory corruption issues within the application, such as reading and writing past the end of allocated data structure…

📅 Published: June 17, 2025, 6:34 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.

8.4

CVSS4.0

CVE-2025-49848 - Out-of-bounds Write in Write in LS Electric GMWin 4

An Out-of-bounds Write vulnerability exists within the parsing of PRJ files. The issues result from the lack of proper validation of user-supplied data, which can result in different memory corruption issues within the application, such as reading and writing past the end of allocated data structur…

📅 Published: June 17, 2025, 6:31 p.m. 🔄 Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 5002 of 34,919
« previous page » next page
Filters