7.5

CVSS3.1

CVE-2023-42227 -

Pat Infinite Solutions HelpdeskAdvanced <= 11.0.33 is vulnerable to Directory Traversal via the WSCView/Save function.

πŸ“… Published: Jan. 13, 2025, midnight πŸ”„ Last Modified: April 17, 2025, 5:43 p.m.

6.5

CVSS3.1

CVE-2024-46921 -

An issue was discovered in Samsung Mobile Processor and Modem Exynos 9820, 9825, 980, 990, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 9110, W1000, Modem 5123, Modem 5300, Modem 5400. UE does not limit the number of attempts for the RRC Setup procedure in the 5G SA, leading to a denial of servi…

πŸ“… Published: Jan. 13, 2025, midnight πŸ”„ Last Modified: June 20, 2025, 4:01 p.m.

4.3

CVSS3.1

CVE-2024-48883 -

An issue was discovered in Samsung Mobile Processor, Wearable Processor, and Modem Exynos 9820, 9825, 980, 990, 850, 1080, 2100, 1280, 2200, 1330, 1380, 1480, 2400, 9110, W920, W930, W1000, Modem 5123, and Modem 5300. The UE incorrectly handles a malformed uplink scheduling message, resulting in an…

πŸ“… Published: Jan. 13, 2025, midnight πŸ”„ Last Modified: June 20, 2025, 4:06 p.m.

5.3

CVSS4.0

CVE-2025-0402 - 1902756969 reggie CommonController.java upload unrestricted upload

A vulnerability classified as critical was found in 1902756969 reggie 1.0. Affected by this vulnerability is the function upload of the file src/main/java/com/itheima/reggie/controller/CommonController.java. The manipulation of the argument file leads to unrestricted upload. The attack can be launc…

πŸ“… Published: Jan. 12, 2025, 11:31 p.m. πŸ”„ Last Modified: Oct. 21, 2025, 11:43 a.m.

6.9

CVSS4.0

CVE-2025-0401 - 1902756969 reggie CommonController.java download path traversal

A vulnerability classified as critical has been found in 1902756969 reggie 1.0. Affected is the function download of the file src/main/java/com/itheima/reggie/controller/CommonController.java. The manipulation of the argument name leads to path traversal. It is possible to launch the attack remotel…

πŸ“… Published: Jan. 12, 2025, 11:31 p.m. πŸ”„ Last Modified: Oct. 21, 2025, 11:43 a.m.

5.1

CVSS4.0

CVE-2025-0400 - StarSea99 starsea-mall update cross site scripting

A vulnerability was found in StarSea99 starsea-mall 1.0. It has been rated as problematic. This issue affects some unknown processing of the file /admin/categories/update. The manipulation of the argument categoryName leads to cross site scripting. The attack may be initiated remotely. The exploit …

πŸ“… Published: Jan. 12, 2025, 11 p.m. πŸ”„ Last Modified: Oct. 10, 2025, 7:14 p.m.

5.1

CVSS4.0

CVE-2025-0399 - StarSea99 starsea-mall uploadController.java UploadController unrestricted upload

A vulnerability was found in StarSea99 starsea-mall 1.0. It has been declared as critical. This vulnerability affects the function UploadController of the file src/main/java/com/siro/mall/controller/common/uploadController.java. The manipulation of the argument file leads to unrestricted upload. Th…

πŸ“… Published: Jan. 12, 2025, 11 p.m. πŸ”„ Last Modified: Oct. 10, 2025, 7:14 p.m.

1.6

CVSS3.1

CVE-2024-42181 - HCL MyXalytics is affected by a cleartext transmission of sensitive information vulnerability

HCL MyXalytics is affected by a cleartext transmission of sensitive information vulnerability. The application transmits sensitive or security-critical data in cleartext in a communication channel that can be sniffed by unauthorized actors.

πŸ“… Published: Jan. 12, 2025, 10:04 p.m. πŸ”„ Last Modified: May 16, 2025, 1:45 p.m.

1.6

CVSS3.1

CVE-2024-42180 - HCL MyXalytics is affected by a malicious file upload vulnerability

HCL MyXalytics is affected by a malicious file upload vulnerability. The application accepts invalid file uploads, including incorrect content types, double extensions, null bytes, and special characters, allowing attackers to upload and execute malicious files.

πŸ“… Published: Jan. 12, 2025, 9:53 p.m. πŸ”„ Last Modified: May 16, 2025, 1:45 p.m.

2

CVSS3.1

CVE-2024-42179 - HCL MyXalytics is affected by sensitive information disclosure vulnerability

HCL MyXalytics is affected by sensitive information disclosure vulnerability. The HTTP response header exposes the Microsoft-HTTP APIβˆ•2.0 as the server's name & version.

πŸ“… Published: Jan. 12, 2025, 9:46 p.m. πŸ”„ Last Modified: May 16, 2025, 1:49 p.m.
Total resulsts: 347742
Page 7031 of 34,775
Β« previous page Β» next page
Filters