7.2

CVSS3.1

CVE-2024-55904 - IBM DevOps Deploy / IBM UrbanCode Deploy command injection

IBM DevOps Deploy 8.0 through 8.0.1.4, 8.1 through 8.1.0.0 / IBM UrbanCode Deploy 7.0 through 7.0.5.25, 7.1 through 7.1.2.21, 7.2 through 7.2.3.14, and 7.3 through 7.3.2.9 could allow a remote privileged authenticated attacker to execute arbitrary commands on the system by sending specially crafted…

πŸ“… Published: Feb. 14, 2025, 3:23 a.m. πŸ”„ Last Modified: Aug. 18, 2025, 6:14 p.m.

5.5

CVSS3.1

CVE-2024-10404 - Clear text password seen in switch-asset-collectors-mw in Brocade SANnav supportsave

CalInvocationHandler in Brocade SANnav before 2.3.1b logs sensitive information in clear text. The vulnerability could allow an authenticated, local attacker to view Brocade Fabric OS switch sensitive information in clear text. An attacker with administrative privileges could retrieve sensitive…

πŸ“… Published: Feb. 14, 2025, 3:13 a.m. πŸ”„ Last Modified: Aug. 26, 2025, 8:02 p.m.

8.1

CVSS3.1

CVE-2025-26519 -

musl libc 0.9.13 through 1.2.5 before 1.2.6 has an out-of-bounds write vulnerability when an attacker can trigger iconv conversion of untrusted EUC-KR text to UTF-8.

πŸ“… Published: Feb. 14, 2025, midnight πŸ”„ Last Modified: Dec. 10, 2025, 8:03 p.m.

8.6

CVSS3.1

CVE-2025-26819 -

Monero through 0.18.3.4 before ec74ff4 does not have response limits on HTTP server connections.

πŸ“… Published: Feb. 14, 2025, midnight πŸ”„ Last Modified: Sept. 30, 2025, 8:18 p.m.

7.5

CVSS3.1

CVE-2025-25997 -

Directory Traversal vulnerability in FeMiner wms v.1.0 allows a remote attacker to obtain sensitive information via the databak.php component.

πŸ“… Published: Feb. 14, 2025, midnight πŸ”„ Last Modified: May 13, 2025, 2:24 p.m.

6.1

CVSS3.1

CVE-2025-25990 -

Cross Site Scripting vulnerability in hooskcms v.1.7.1 allows a remote attacker to obtain sensitive information via the /install/index.php component.

πŸ“… Published: Feb. 14, 2025, midnight πŸ”„ Last Modified: April 18, 2025, 1:50 a.m.

5.1

CVSS3.1

CVE-2025-25993 -

SQL Injection vulnerability in FeMiner wms wms 1.0 allows a remote attacker to obtain sensitive information via the parameter "itemid."

πŸ“… Published: Feb. 14, 2025, midnight πŸ”„ Last Modified: May 2, 2025, 7:43 p.m.

4.3

CVSS3.1

CVE-2024-57969 -

app/Model/Attribute.php in MISP before 2.4.198 ignores an ACL during a GUI attribute search.

πŸ“… Published: Feb. 14, 2025, midnight πŸ”„ Last Modified: July 9, 2025, 3 p.m.

6.5

CVSS3.1

CVE-2024-57725 -

An issue in the Arcadyan Livebox Fibra PRV3399B_B_LT allows a remote or local attacker to modify the GPON link value without authentication, causing an internet service disruption via the /firstconnection.cgi endpoint.

πŸ“… Published: Feb. 14, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

4.8

CVSS3.1

CVE-2025-25988 -

Cross Site Scripting vulnerability in hooskcms v.1.8 allows a remote attacker to cause a denial of service via the custom Link title parameter and the Title parameter.

πŸ“… Published: Feb. 14, 2025, midnight πŸ”„ Last Modified: April 18, 2025, 1:53 a.m.
Total resulsts: 346560
Page 6472 of 34,656
Β« previous page Β» next page
Filters