5.1

CVSS3.1

CVE-2025-25992 -

SQL Injection vulnerability in FeMiner wms 1.0 allows a remote attacker to obtain sensitive information via the inquire_inout_item.php component.

πŸ“… Published: Feb. 14, 2025, midnight πŸ”„ Last Modified: May 2, 2025, 7:44 p.m.

6.9

CVSS4.0

CVE-2025-26789 -

An issue was discovered in Logpoint AgentX before 1.5.0. A vulnerability caused by limited access controls allowed li-admin users to access sensitive information about AgentX Manager in a Logpoint deployment.

πŸ“… Published: Feb. 14, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.9

CVSS3.1

CVE-2025-26157 -

A SQL Injection vulnerability was found in /bpms/index.php in Source Code and Project Beauty Parlour Management System V1.1, which allows remote attackers to execute arbitrary code via the name POST request parameter.

πŸ“… Published: Feb. 14, 2025, midnight πŸ”„ Last Modified: June 6, 2025, 5:58 p.m.

5.4

CVSS3.1

CVE-2024-57790 -

IXON B.V. IXrouter IX2400 (Industrial Edge Gateway) v3.0 was discovered to contain hardcoded root credentials stored in the non-volatile flash memory. This vulnerability allows physically proximate attackers to gain root access via UART or SSH.

πŸ“… Published: Feb. 14, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.1

CVSS3.1

CVE-2025-25991 -

SQL Injection vulnerability in hooskcms v.1.7.1 allows a remote attacker to obtain sensitive information via the /install/index.php component.

πŸ“… Published: Feb. 14, 2025, midnight πŸ”„ Last Modified: April 18, 2025, 1:48 a.m.

8.4

CVSS3.1

CVE-2025-26788 -

StrongKey FIDO Server before 4.15.1 treats a non-discoverable (namedcredential) flow as a discoverable transaction.

πŸ“… Published: Feb. 14, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.5

CVSS3.1

CVE-2025-25740 -

D-Link DIR-853 A1 FW1.20B07 was discovered to contain a stack-based buffer overflow vulnerability via the PSK parameter in the SetQuickVPNSettings module.

πŸ“… Published: Feb. 14, 2025, midnight πŸ”„ Last Modified: May 2, 2025, 5:53 p.m.

9.8

CVSS3.1

CVE-2024-56973 -

Insecure Permissions vulnerability in Alvaria, Inc Unified IP Unified Director before v.7.2SP2 allows a remote attacker to execute arbitrary code via the source and filename parameters to the ProcessUploadFromURL.jsp component.

πŸ“… Published: Feb. 14, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.8

CVSS3.1

CVE-2025-25745 -

D-Link DIR-853 A1 FW1.20B07 was discovered to contain a stack-based buffer overflow vulnerability via the Password parameter in the SetQuickVPNSettings module.

πŸ“… Published: Feb. 14, 2025, midnight πŸ”„ Last Modified: May 2, 2025, 5:53 p.m.

5.9

CVSS4.0

CVE-2024-12054 - ZF Roll Stability Support Plus (RSSPlus) Authentication Bypass By Primary Weakness

ZF Roll Stability Support Plus (RSSPlus) is vulnerable to an authentication bypass vulnerability targeting deterministic RSSPlus SecurityAccess service seeds, which may allow an attacker to remotely (proximal/adjacent with RF equipment or via pivot from J2497 telematics devices) call diagnostic…

πŸ“… Published: Feb. 13, 2025, 10:08 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 346565
Page 6474 of 34,657
Β« previous page Β» next page
Filters