8.5

CVSS4.0

CVE-2025-0396 - exelban stats XPC Service shouldAcceptNewConnection command injection

A vulnerability, which was classified as critical, has been found in exelban stats up to 2.11.21. This issue affects the function shouldAcceptNewConnection of the component XPC Service. The manipulation leads to command injection. It is possible to launch the attack on the local host. Upgrading to …

πŸ“… Published: Jan. 12, 2025, noon πŸ”„ Last Modified: Jan. 13, 2025, 3:18 p.m.

5.4

CVSS3.1

CVE-2021-29669 - IBM Jazz Foundation cross-site scripting

IBM Jazz Foundation 6.0.6, 6.0.6.1, 7.0, 7.0.1, and 7.0.2 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credentials disclosure within a trusted session.

πŸ“… Published: Jan. 12, 2025, 1:30 a.m. πŸ”„ Last Modified: March 13, 2025, 4:25 p.m.

5.4

CVSS3.1

CVE-2024-49785 - IBM watsonx.ai cross-site scripting

IBM watsonx.ai 1.1 through 2.0.3 and IBM watsonx.ai on Cloud Pak for Data 4.8 through 5.0.3 is vulnerable to cross-site scripting. This vulnerability allows an authenticated user to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to credent…

πŸ“… Published: Jan. 12, 2025, 1:10 a.m. πŸ”„ Last Modified: Aug. 19, 2025, 12:38 p.m.

0.0

CVE-2025-23128 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: Jan. 11, 2025, 2:31 p.m. πŸ”„ Last Modified: Jan. 11, 2025, 3:15 p.m.

0.0

CVE-2025-23127 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: Jan. 11, 2025, 2:31 p.m. πŸ”„ Last Modified: Jan. 11, 2025, 3:15 p.m.

0.0

CVE-2025-23126 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: Jan. 11, 2025, 2:31 p.m. πŸ”„ Last Modified: Jan. 11, 2025, 3:15 p.m.

0.0

CVE-2025-23125 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: Jan. 11, 2025, 2:31 p.m. πŸ”„ Last Modified: Jan. 11, 2025, 3:15 p.m.

0.0

CVE-2025-23124 -

This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

πŸ“… Published: Jan. 11, 2025, 2:31 p.m. πŸ”„ Last Modified: Jan. 11, 2025, 3:15 p.m.

5.3

CVSS4.0

CVE-2025-0392 - Guangzhou Huayi Intelligent Technology Jeewms graphReportController.do datagridGraph sql injection

A vulnerability, which was classified as critical, was found in Guangzhou Huayi Intelligent Technology Jeewms up to 20241229. Affected is the function datagridGraph of the file /graphReportController.do. The manipulation of the argument store_code leads to sql injection. It is possible to launch th…

πŸ“… Published: Jan. 11, 2025, 11 a.m. πŸ”„ Last Modified: Sept. 11, 2025, 8:46 p.m.

5.3

CVSS4.0

CVE-2025-0391 - Guangzhou Huayi Intelligent Technology Jeewms CgFormBuildController. java saveOrUpdate sql injection

A vulnerability, which was classified as critical, has been found in Guangzhou Huayi Intelligent Technology Jeewms up to 20241229. This issue affects the function saveOrUpdate of the file org/jeecgframework/web/cgform/controller/build/CgFormBuildController. java. The manipulation leads to sql injec…

πŸ“… Published: Jan. 11, 2025, 9 a.m. πŸ”„ Last Modified: Sept. 11, 2025, 8:52 p.m.
Total resulsts: 343748
Page 6633 of 34,375
Β« previous page Β» next page
Filters