6.5

CVSS3.1

CVE-2025-45490 -

Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability in the runtime.ddnsStatus DynDNS function via the password parameter.

πŸ“… Published: May 6, 2025, midnight πŸ”„ Last Modified: May 13, 2025, 8:19 p.m.

9.8

CVSS3.1

CVE-2025-45491 -

Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability in the runtime.ddnsStatus DynDNS function via the username parameter.

πŸ“… Published: May 6, 2025, midnight πŸ”„ Last Modified: May 13, 2025, 8:19 p.m.

5.5

CVSS3.1

CVE-2025-45250 -

MrDoc v0.95 and before is vulnerable to Server-Side Request Forgery (SSRF) in the validate_url function of the app_doc/utils.py file.

πŸ“… Published: May 6, 2025, midnight πŸ”„ Last Modified: June 27, 2025, 3:33 p.m.

9.8

CVSS3.1

CVE-2025-44073 -

SeaCMS v13.3 was discovered to contain a SQL injection vulnerability via the component admin_comment_news.php.

πŸ“… Published: May 6, 2025, midnight πŸ”„ Last Modified: June 12, 2025, 5:09 p.m.

4.8

CVSS3.1

CVE-2025-4373 - Glib: buffer underflow on glib through glib/gstring.c via function g_string_insert_unichar

A flaw was found in GLib, which is vulnerable to an integer overflow in the g_string_insert_unichar() function. When the position at which to insert the character is large, the position will overflow, leading to a buffer underwrite.

πŸ“… Published: May 6, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.1

CVSS3.1

CVE-2023-33770 -

Real Estate Management System v1.0 was discovered to contain a SQL injection vulnerability via the message parameter at /contact.php.

πŸ“… Published: May 6, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.5

CVSS3.1

CVE-2025-45489 -

Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability in the runtime.ddnsStatus DynDNS function via the hostname parameter.

πŸ“… Published: May 6, 2025, midnight πŸ”„ Last Modified: May 13, 2025, 8:19 p.m.

6.5

CVSS3.1

CVE-2025-45488 -

Linksys E5600 v1.1.0.26 was discovered to contain a command injection vulnerability in the runtime.ddnsStatus DynDNS function via the mailex parameter.

πŸ“… Published: May 6, 2025, midnight πŸ”„ Last Modified: May 13, 2025, 8:19 p.m.

6.5

CVSS3.1

CVE-2025-44900 -

In Tenda RX3 V1.0br_V16.03.13.11 in the GetParentControlInfo function of the web url /goform/GetParentControlInfo, the manipulation of the parameter mac leads to stack overflow.

πŸ“… Published: May 6, 2025, midnight πŸ”„ Last Modified: June 4, 2025, 5:25 p.m.

8.7

CVSS4.0

CVE-2025-4298 - Tenda AC1206 setcfm formSetCfm buffer overflow

A vulnerability was found in Tenda AC1206 up to 15.03.06.23. It has been declared as critical. This vulnerability affects the function formSetCfm of the file /goform/setcfm. The manipulation leads to buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public…

πŸ“… Published: May 5, 2025, 11:31 p.m. πŸ”„ Last Modified: May 13, 2025, 8:06 p.m.
Total resulsts: 346547
Page 5282 of 34,655
Β« previous page Β» next page
Filters