6.5

CVSS3.1

CVE-2025-29450 -

An issue in twonav v.2.1.18-20241105 allows a remote attacker to obtain sensitive information via the site settings component.

πŸ“… Published: April 17, 2025, midnight πŸ”„ Last Modified: April 23, 2025, 6:09 p.m.

7.8

CVSS3.1

CVE-2021-47670 - can: peak_usb: fix use after free bugs

In the Linux kernel, the following vulnerability has been resolved: can: peak_usb: fix use after free bugs After calling peak_usb_netif_rx_ni(skb), dereferencing skb is unsafe. Especially, the can_frame cf which aliases skb memory is accessed after the peak_usb_netif_rx_ni(). Reordering the line…

πŸ“… Published: April 17, 2025, midnight πŸ”„ Last Modified: May 4, 2025, 7:15 a.m.

9.8

CVSS3.1

CVE-2025-28009 -

A SQL Injection vulnerability exists in the `u` parameter of the progress-body-weight.php endpoint of Dietiqa App v1.0.20.

πŸ“… Published: April 17, 2025, midnight πŸ”„ Last Modified: April 23, 2025, 6:53 p.m.

6.3

CVSS3.1

CVE-2025-29722 -

A CSRF vulnerability in Commercify v1.0 allows remote attackers to perform unauthorized actions on behalf of authenticated users. The issue exists due to missing CSRF protection on sensitive endpoints.

πŸ“… Published: April 17, 2025, midnight πŸ”„ Last Modified: April 23, 2025, 6:49 p.m.

7.6

CVSS3.1

CVE-2025-29451 -

An issue in Seo Panel 4.11.0 allows a remote attacker to obtain sensitive information via the Mail Setting component.

πŸ“… Published: April 17, 2025, midnight πŸ”„ Last Modified: April 23, 2025, 6:09 p.m.

9.8

CVSS3.1

CVE-2025-29047 -

Buffer Overflow vulnerability inALFA WiFi CampPro router ALFA_CAMPRO-co-2.29 allows a remote attacker to execute arbitrary code via the hiddenIndex in the function StorageEditUser

πŸ“… Published: April 17, 2025, midnight πŸ”„ Last Modified: April 30, 2025, 3:32 p.m.

9.8

CVSS3.1

CVE-2025-29044 -

Buffer Overflow vulnerability in Netgear- R61 router V1.0.1.28 allows a remote attacker to execute arbitrary code via the QUERY_STRING key value

πŸ“… Published: April 17, 2025, midnight πŸ”„ Last Modified: April 21, 2025, 6:42 p.m.

9.8

CVSS3.1

CVE-2025-29042 -

An issue in dlink DIR 832x 240802 allows a remote attacker to execute arbitrary code via the macaddr key value to the function 0x42232c

πŸ“… Published: April 17, 2025, midnight πŸ”„ Last Modified: April 25, 2025, 6:32 p.m.

3.3

CVSS3.1

CVE-2025-43708 -

VisiCut 2.1 allows stack consumption via an XML document with nested set elements, as demonstrated by a java.util.HashMap StackOverflowError when reference='../../../set/set[2]' is used, aka an "insecure deserialization" issue.

πŸ“… Published: April 17, 2025, midnight πŸ”„ Last Modified: Sept. 24, 2025, 12:51 a.m.

7.5

CVSS3.1

CVE-2025-25455 -

Tenda AC10 V4.0si_V16.03.10.20 is vulnerable to Buffer Overflow in AdvSetMacMtuWan via wanMTU2.

πŸ“… Published: April 17, 2025, midnight πŸ”„ Last Modified: April 22, 2025, 4:41 p.m.
Total resulsts: 343935
Page 5230 of 34,394
Β« previous page Β» next page
Filters