5.4

CVSS3.1

CVE-2025-27810 -

Mbed TLS before 2.28.10 and 3.x before 3.6.3, in some cases of failed memory allocation or hardware errors, uses uninitialized stack memory to compose the TLS Finished message, potentially leading to authentication bypasses such as replays.

πŸ“… Published: March 25, 2025, midnight πŸ”„ Last Modified: Oct. 30, 2025, 3:05 p.m.

9.8

CVSS3.1

CVE-2025-27831 - Ghostscript: Text buffer overflow with long characters

An issue was discovered in Artifex Ghostscript before 10.05.0. The DOCXWRITE TXTWRITE device has a text buffer overflow via long characters to devices/vector/doc_common.c.

πŸ“… Published: March 25, 2025, midnight πŸ”„ Last Modified: Nov. 3, 2025, 8:18 p.m.

7.5

CVSS3.1

CVE-2025-30118 -

An issue was discovered on the Audi Universal Traffic Recorder 2.88. It has Susceptibility to denial of service. It uses the same default credentials for all devices and does not implement proper multi-device authentication, allowing attackers to deny the owner access by occupying the only availabl…

πŸ“… Published: March 25, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.4

CVSS3.1

CVE-2025-27809 -

Mbed TLS before 2.28.10 and 3.x before 3.6.3, on the client side, accepts servers that have trusted certificates for arbitrary hostnames unless the TLS client application calls mbedtls_ssl_set_hostname.

πŸ“… Published: March 25, 2025, midnight πŸ”„ Last Modified: July 17, 2025, 3:57 p.m.

9.8

CVSS3.1

CVE-2024-55028 -

A template injection vulnerability in the Dashboard of NASA Fprime v3.4.3 allows attackers to execute arbitrary code via uploading a crafted Vue file.

πŸ“… Published: March 25, 2025, midnight πŸ”„ Last Modified: April 3, 2025, 5:34 p.m.

9.8

CVSS3.1

CVE-2025-25373 -

The Memory Management Module of NASA cFS (Core Flight System) Aquila has insecure permissions, which can be exploited to gain an RCE on the platform.

πŸ“… Published: March 25, 2025, midnight πŸ”„ Last Modified: April 30, 2026, 6:58 p.m.

7.8

CVSS3.1

CVE-2025-27835 - Ghostscript: Buffer overflow when converting glyphs to unicode

An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs when converting glyphs to Unicode in psi/zbfont.c.

πŸ“… Published: March 25, 2025, midnight πŸ”„ Last Modified: Nov. 3, 2025, 8:18 p.m.

9.8

CVSS3.1

CVE-2024-55030 -

A command injection vulnerability in the Command Dispatcher Service of NASA Fprime v3.4.3 allows attackers to execute arbitrary commands.

πŸ“… Published: March 25, 2025, midnight πŸ”„ Last Modified: April 3, 2025, 3:13 p.m.

7.8

CVSS3.1

CVE-2025-27834 - Ghostscript: Buffer overflow caused by an oversized Type 4 function in a PDF

An issue was discovered in Artifex Ghostscript before 10.05.0. A buffer overflow occurs via an oversized Type 4 function in a PDF document to pdf/pdf_func.c.

πŸ“… Published: March 25, 2025, midnight πŸ”„ Last Modified: April 1, 2025, 4:44 p.m.

9.8

CVSS3.1

CVE-2024-42533 -

SQL injection vulnerability in the authentication module in Convivance StandVoice 4.5 through 6.2 allows remote attackers to execute arbitrary code via the GEST_LOGIN parameter.

πŸ“… Published: March 25, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 348432
Page 6154 of 34,844
Β« previous page Β» next page
Filters