4.3
CVE-2025-24982 -
Cross-site request forgery vulnerability exists in Activity Log WinterLock versions prior to 1.2.5. If a user views a malicious page while logged in, the log data may be deleted.
0.0
CVE-2025-25049 -
This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because it is Unused
0.0
CVE-2025-24492 -
This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because it is Unused
0.0
CVE-2025-24321 -
This CVE ID has been rejected or withdrawn by its CVE Numbering Authority because it is Unused
3.7
CVE-2025-22475 -
Dell PowerProtect DD, versions prior to DDOS 8.3.0.0, 7.10.1.50, and 7.13.1.10 contains a use of a Cryptographic Primitive with a Risky Implementation vulnerability. A remote attacker could potentially exploit this vulnerability, leading to Information tampering.
9.8
CVE-2024-48445 -
An issue in compop.ca ONLINE MALL v.3.5.3 allows a remote attacker to execute arbitrary code via the rid, tid, et, and ts parameters.
8.5
CVE-2025-1003 - HP Anyware Agent for Linux β Potential Authentication Bypass
A potential vulnerability has been identified in HP Anyware Agent for Linux which might allow for authentication bypass which may result in escalation of privilege. HP is releasing a software update to mitigate this potential vulnerability.
2.6
CVE-2025-0148 - Zoom Jenkins Marketplace plugin - Missing Password Field Masking
Missing password field masking in the Zoom Jenkins Marketplace plugin before version 1.6 may allow an unauthenticated user to conduct a disclosure of information via adjacent network access.
9.4
CVE-2025-24901 - SQL Injection endpoint 'deletar_permissao.php' parameter 'c', 'a', 'r' in WeGIA
WeGIA is a Web Manager for Charitable Institutions. A SQL Injection vulnerability was discovered in the WeGIA application, `deletar_permissao.php` endpoint. This vulnerability could allow an authorized attacker to execute arbitrary SQL queries, allowing access to or deletion of sensitive informatiβ¦
9.4
CVE-2025-24902 - SQL Injection endpoint 'salvar_cargo.php' parameter 'id_cargo' in WeGIA
WeGIA is a Web Manager for Charitable Institutions. A SQL Injection vulnerability was discovered in the WeGIA application, `salvar_cargo.php` endpoint. This vulnerability could allow an authorized attacker to execute arbitrary SQL queries, allowing access to or deletion of sensitive information. Tβ¦