8.7

CVSS4.0

CVE-2025-24861 - Outback Power Mojave Inverter Command Injection

An attacker may inject commands via specially-crafted post requests.

๐Ÿ“… Published: Feb. 13, 2025, 9:20 p.m. ๐Ÿ”„ Last Modified: March 4, 2025, 7:24 p.m.

8.7

CVSS4.0

CVE-2025-25281 - Outback Power Mojave Inverter Exposure of Sensitive Information to an Unauthorized Actor

An attacker may modify the URL to discover sensitive information about the target network.

๐Ÿ“… Published: Feb. 13, 2025, 9:18 p.m. ๐Ÿ”„ Last Modified: April 10, 2025, 7:40 p.m.

8.7

CVSS4.0

CVE-2025-26473 - Outback Power Mojave Inverter Use of GET Request Method With Sensitive Query Strings

The Mojave Inverter uses the GET method for sensitive information.

๐Ÿ“… Published: Feb. 13, 2025, 9:17 p.m. ๐Ÿ”„ Last Modified: March 19, 2025, 10:34 a.m.

9.3

CVSS4.0

CVE-2025-1283 - Dingtian DT-R0 Series Authentication Bypass Using an Alternate Path or Channel

The Dingtian DT-R0 Series is vulnerable to an exploit that allows attackers to bypass login requirements by directly navigating to the main page.

๐Ÿ“… Published: Feb. 13, 2025, 9:11 p.m. ๐Ÿ”„ Last Modified: April 10, 2025, 6:55 p.m.

7.3

CVSS3.1

CVE-2024-11347 - Access of Resource Using Incompatible Type in Postscript interpreter

Integer Overflow or Wraparound vulnerability in Lexmark International CX, XC, CS, et. Al. (Postscript interpreter modules) allows Forced Integer Overflow.The vulnerability can be leveraged by an attacker to execute arbitrary code as an unprivileged user.

๐Ÿ“… Published: Feb. 13, 2025, 6:55 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.3

CVSS3.1

CVE-2024-11346 - Access of Resource Using Incompatible Type in Postscript interpreter

: Access of Resource Using Incompatible Type ('Type Confusion') vulnerability in Lexmark International CX, XC, CS, et. Al. (Postscript interpreter modules) allows Resource Injection.This issue affects CX, XC, CS, et. Al.: from 001.001:0 through 081.231, from *.*.P001 through *.*.P233, from *.*.P001โ€ฆ

๐Ÿ“… Published: Feb. 13, 2025, 6:54 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.3

CVSS3.1

CVE-2024-11344 - Type confusion vulnerability in the Postscript interpreter in various Lexmark devices

A type confusion vulnerability has been identified in the Postscript interpreter in various Lexmark devices. The vulnerability can be leveraged by an attacker to execute arbitrary code.

๐Ÿ“… Published: Feb. 13, 2025, 6:51 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

9.1

CVSS3.1

CVE-2025-1127 - Combination Path Traversal and Concurrent Execution vulnerability exists within the embedded web seโ€ฆ

The vulnerability can be leveraged by an attacker to execute arbitrary code as an unprivileged user and/or modify the contents of any data on the filesystem.

๐Ÿ“… Published: Feb. 13, 2025, 6:49 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

7.3

CVSS3.1

CVE-2024-11345 - Heap-based memory vulnerability in the Postscript interpreter in various Lexmark devices

A heap-based memory vulnerability has been identified in the Postscript interpreter in various Lexmark devices. The vulnerability can be leveraged by an attacker to execute arbitrary code.

๐Ÿ“… Published: Feb. 13, 2025, 6:46 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

4.5

CVSS3.1

CVE-2025-24889 - Path traversal in sd-log Qubes virtual machine

The SecureDrop Client is a desktop application for journalists to communicate with sources and work with submissions on the SecureDrop Workstation. Prior to versions 0.14.1 and 1.0.1, an attacker who has already gained code execution in a virtual machine on the SecureDrop Workstation could gain codโ€ฆ

๐Ÿ“… Published: Feb. 13, 2025, 5:34 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 346617
Page 6481 of 34,662
ยซ previous page ยป next page
Filters