RSS Feeds > Computer & Technik > Internet > Marketing > scip AG [Security - Consulting - Information - Process] | RSS Verzeichnis

scip AG [Security - Consulting - Information - Process]


Anzeigen einer beliebigen Anzahl von Sicherheitsl?cken aus der scip AG Datenbank.

Betreiber-URL: https://www.scip.ch
RSS-Feed-URL: https://www.scip.ch/alertRSS.xml
Die neuesten Einträge aus dem RSS-Feed von scip AG [Security - Consulting - Information - Process]:
CVE-2025-6167 | themanojdesai python-a2a up to 0.5.5 api.py create_workflow path traversal (Issue 40)
15.06.2025 21:21
A vulnerability classified as critical has been found in themanojdesai python-a2a up to 0.5.5. Affected is the function create_workflow of the file python_a2a/agent_flow/server/api.py. The manipulatio...
CVE-2025-6166 | frdel Agent-Zero up to 0.8.4 /python/api/image_get.py image_get path path traversal (Issue 383)
15.06.2025 21:17
A vulnerability was found in frdel Agent-Zero up to 0.8.4. It has been rated as problematic. This issue affects the function image_get of the file /python/api/image_get.py. The manipulation of the arg...
CVE-2025-6165 | TOTOLINK X15 1.0.0-B20230714.1105 HTTP POST Request /boafrm/formTmultiAP submit-url buffer overflow
15.06.2025 21:12
A vulnerability was found in TOTOLINK X15 1.0.0-B20230714.1105. It has been declared as critical. This vulnerability affects unknown code of the file /boafrm/formTmultiAP of the component HTTP POST Re...
CVE-2025-6164 | TOTOLINK A3002R 4.0.0-B20230531.1404 HTTP POST Request /boafrm/formMultiAP submit-url buffer overflow
15.06.2025 21:12
A vulnerability was found in TOTOLINK A3002R 4.0.0-B20230531.1404. It has been classified as critical. This affects an unknown part of the file /boafrm/formMultiAP of the component HTTP POST Request H...
CVE-2025-6163 | TOTOLINK A3002RU 3.0.0-B20230809.1615 HTTP POST Request /boafrm/formMultiAP submit-url buffer overflow
15.06.2025 21:12
A vulnerability was found in TOTOLINK A3002RU 3.0.0-B20230809.1615 and classified as critical. Affected by this issue is some unknown functionality of the file /boafrm/formMultiAP of the component HTT...
CVE-2025-6162 | TOTOLINK EX1200T 4.1.2cu.5232_B20210713 HTTP POST Request /boafrm/formMultiAP submit-url buffer overflow
15.06.2025 21:09
A vulnerability has been found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /boafrm/formMultiAP of the ...
CVE-2025-6161 | SourceCodester Simple Food Ordering System 1.0 /editproduct.php photo unrestricted upload
15.06.2025 21:08
A vulnerability, which was classified as critical, was found in SourceCodester Simple Food Ordering System 1.0. Affected is an unknown function of the file /editproduct.php. The manipulation of the ar...
CVE-2025-6160 | SourceCodester Client Database Management System 1.0 user_customer_create_order.php user_id sql injection
15.06.2025 21:06
A vulnerability, which was classified as critical, has been found in SourceCodester Client Database Management System 1.0. This issue affects some unknown processing of the file /user_customer_create_...
CVE-2025-6159 | code-projects Hostel Management System 1.0 /allocate_room.php search_box sql injection
15.06.2025 21:04
A vulnerability classified as critical was found in code-projects Hostel Management System 1.0. This vulnerability affects unknown code of the file /allocate_room.php. The manipulation of the argument...
CVE-2025-6158 | D-Link DIR-665 1.00 HTTP POST Request sub_AC78 stack-based overflow
15.06.2025 21:03
A vulnerability classified as critical has been found in D-Link DIR-665 1.00. This affects the function sub_AC78 of the component HTTP POST Request Handler. The manipulation leads to stack-based buffe...
CVE-2025-6157 | PHPGurukul Nipah Virus Testing Management System 1.0 registered-user-testing.php testtype sql injection
15.06.2025 21:01
A vulnerability was found in PHPGurukul Nipah Virus Testing Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /registered-user-test...
CVE-2025-6156 | PHPGurukul Nipah Virus Testing Management System 1.0 /bwdates-report-ds.php testtype sql injection
15.06.2025 21:01
A vulnerability was found in PHPGurukul Nipah Virus Testing Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /bwdates-rep...
CVE-2025-6155 | PHPGurukul Hostel Management System 1.0 login-hm.inc.php Username sql injection
15.06.2025 20:54
A vulnerability was found in PHPGurukul Hostel Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /includes/login-hm.inc.php. The manipulation of th...
CVE-2025-6154 | PHPGurukul Hostel Management System 1.0 /includes/login.inc.php student_roll_no sql injection
15.06.2025 20:54
A vulnerability was found in PHPGurukul Hostel Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /includes/login.inc.php. The manipulation of the...
CVE-2025-6153 | PHPGurukul Hostel Management System 1.0 /admin/students.php search_box sql injection
15.06.2025 20:54
A vulnerability has been found in PHPGurukul Hostel Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /admin/students.php. The manipulation of the a...
CVE-2025-6152 | Steel Browser up to 0.1.3 files.routes.ts handleFileUpload filename path traversal (Issue 129)
15.06.2025 20:48
A vulnerability, which was classified as critical, was found in Steel Browser up to 0.1.3. This affects the function handleFileUpload of the file api/src/modules/files/files.routes.ts. The manipulatio...
CVE-2025-6151 | TP-Link TL-WR940N V4 WanSlaacCfgRpm.htm dnsserver1 buffer overflow
15.06.2025 20:45
A vulnerability, which was classified as critical, has been found in TP-Link TL-WR940N V4. Affected by this issue is some unknown functionality of the file /userRpm/WanSlaacCfgRpm.htm. The manipulatio...
CVE-2025-6150 | TOTOLINK X15 1.0.0-B20230714.1105 HTTP POST Request /boafrm/formMultiAP submit-url buffer overflow
15.06.2025 20:43
A vulnerability classified as critical was found in TOTOLINK X15 1.0.0-B20230714.1105. Affected by this vulnerability is an unknown functionality of the file /boafrm/formMultiAP of the component HTTP ...
CVE-2025-6149 | TOTOLINK A3002R 4.0.0-B20230531.1404 HTTP POST Request /boafrm/formSysLog submit-url buffer overflow
15.06.2025 20:41
A vulnerability classified as critical has been found in TOTOLINK A3002R 4.0.0-B20230531.1404. Affected is an unknown function of the file /boafrm/formSysLog of the component HTTP POST Request Handler...
CVE-2025-6148 | TOTOLINK A3002RU 3.0.0-B20230809.1615 HTTP POST Request /boafrm/formSysLog submit-url buffer overflow
15.06.2025 20:41
A vulnerability was found in TOTOLINK A3002RU 3.0.0-B20230809.1615. It has been rated as critical. This issue affects some unknown processing of the file /boafrm/formSysLog of the component HTTP POST ...
CVE-2025-6147 | TOTOLINK A702R 4.0.0-B20230721.1521 HTTP POST Request /boafrm/formSysLog submit-url buffer overflow
15.06.2025 20:38
A vulnerability was found in TOTOLINK A702R 4.0.0-B20230721.1521. It has been declared as critical. This vulnerability affects unknown code of the file /boafrm/formSysLog of the component HTTP POST Re...
CVE-2025-6146 | TOTOLINK X15 1.0.0-B20230714.1105 HTTP POST Request /boafrm/formSysLog submit-url buffer overflow
15.06.2025 20:38
A vulnerability was found in TOTOLINK X15 1.0.0-B20230714.1105. It has been classified as critical. This affects an unknown part of the file /boafrm/formSysLog of the component HTTP POST Request Handl...
CVE-2025-6145 | TOTOLINK EX1200T 4.1.2cu.5232_B20210713 HTTP POST Request /boafrm/formSysLog submit-url buffer overflow
15.06.2025 20:35
A vulnerability was found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713 and classified as critical. Affected by this issue is some unknown functionality of the file /boafrm/formSysLog of the component HT...
CVE-2025-6144 | TOTOLINK EX1200T 4.1.2cu.5232_B20210713 HTTP POST Request /boafrm/formSysCmd submit-url buffer overflow
15.06.2025 20:35
A vulnerability has been found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /boafrm/formSysCmd of the c...
CVE-2025-6143 | TOTOLINK EX1200T 4.1.2cu.5232_B20210713 HTTP POST Request /boafrm/formNtp submit-url buffer overflow
15.06.2025 20:32
A vulnerability, which was classified as critical, was found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. Affected is an unknown function of the file /boafrm/formNtp of the component HTTP POST Request ...
CVE-2025-5990 | Arcadia Crafty Controller up to 4.2.3/4.3.2/4.4.9 Server Name Form/API Key Form cross site scripting (Issue 567 / EUVD-2025-18347)
15.06.2025 20:28
A vulnerability, which was classified as problematic, has been found in Arcadia Crafty Controller up to 4.2.3/4.3.2/4.4.9. This issue affects some unknown processing of the component Server Name Form/...
CVE-2024-25573 | Ping Identity PingFederate up to 11.2.10/11.3.9/12.0.6/12.1.4 Administrative Console cross site scripting
15.06.2025 20:27
A vulnerability classified as problematic was found in Ping Identity PingFederate up to 11.2.10/11.3.9/12.0.6/12.1.4. This vulnerability affects unknown code of the component Administrative Console. T...
CVE-2025-22854 | Ping Identity PingFederate up to 1.5.1 Non-200 HTTP Response status code (EUVD-2025-18340)
15.06.2025 20:26
A vulnerability classified as problematic has been found in Ping Identity PingFederate up to 1.5.1. This affects an unknown part of the component Non-200 HTTP Response Handler. The manipulation leads ...
CVE-2025-21085 | Ping Identity PingFederate up to 11.3.12/12.0.8/12.1.8/12.2.3 OAuth2 duplicate key in associative list (EUVD-2025-18342)
15.06.2025 20:26
A vulnerability was found in Ping Identity PingFederate up to 11.3.12/12.0.8/12.1.8/12.2.3. It has been rated as problematic. Affected by this issue is some unknown functionality of the component OAut...
CVE-2025-6142 | Intera InHire up to 20250530 29chcotoo9 server-side request forgery
15.06.2025 20:26
A vulnerability was found in Intera InHire up to 20250530. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation of the argument 29chcotoo9 lea...
CVE-2025-1411 | IBM Security Verify Directory up to 10.0.3.1 unnecessary privileges (EUVD-2025-18339)
15.06.2025 15:41
A vulnerability was found in IBM Security Verify Directory up to 10.0.3.1. It has been classified as critical. Affected is an unknown function. The manipulation leads to execution with unnecessary pri...
CVE-2025-36041 | IBM MQ Operator up to 3.5.3 CD certificate validation (EUVD-2025-18343)
15.06.2025 15:41
A vulnerability was found in IBM MQ Operator up to 3.5.3 CD and classified as critical. This issue affects some unknown processing. The manipulation leads to improper certificate validation. The iden...
CVE-2025-6141 | GNU ncurses up to 6.5-20250322 tinfo/parse_entry.c postprocess_termcap stack-based overflow
15.06.2025 13:13
A vulnerability has been found in GNU ncurses up to 6.5-20250322 and classified as problematic. This vulnerability affects the function postprocess_termcap of the file tinfo/parse_entry.c. The manipul...
CVE-2025-6140 | spdlog up to 1.15.1 pattern_formatter-inl.h scoped_padder resource consumption (Issue 3360)
15.06.2025 13:02
A vulnerability, which was classified as problematic, was found in spdlog up to 1.15.1. This affects the function scoped_padder in the library include/spdlog/pattern_formatter-inl.h. The manipulation ...
CVE-2025-6139 | TOTOLINK T10 4.1.8cu.5207 /etc/shadow.sample hard-coded password
15.06.2025 12:57
A vulnerability, which was classified as problematic, has been found in TOTOLINK T10 4.1.8cu.5207. Affected by this issue is some unknown functionality of the file /etc/shadow.sample. The manipulation...
CVE-2025-6138 | TOTOLINK T10 4.1.8cu.5207 HTTP POST Request /cgi-bin/cstecgi.cgi setWizardCfg ssid5g buffer overflow
15.06.2025 12:57
A vulnerability classified as critical was found in TOTOLINK T10 4.1.8cu.5207. Affected by this vulnerability is the function setWizardCfg of the file /cgi-bin/cstecgi.cgi of the component HTTP POST R...
CVE-2025-6137 | TOTOLINK T10 4.1.8cu.5207 HTTP POST Request /cgi-bin/cstecgi.cgi setWiFiScheduleCfg desc buffer overflow
15.06.2025 12:57
A vulnerability classified as critical has been found in TOTOLINK T10 4.1.8cu.5207. Affected is the function setWiFiScheduleCfg of the file /cgi-bin/cstecgi.cgi of the component HTTP POST Request Hand...
CVE-2025-6136 | Projectworlds Life Insurance Management System 1.0 /insertPayment.php recipt_no sql injection
15.06.2025 12:53
A vulnerability was found in Projectworlds Life Insurance Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /insertPayment.php. The manipulat...
CVE-2025-6135 | Projectworlds Life Insurance Management System 1.0 /insertNominee.php client_id/nominee_id sql injection
15.06.2025 12:53
A vulnerability was found in Projectworlds Life Insurance Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /insertNominee.php. The manipulat...
CVE-2025-6134 | Projectworlds Life Insurance Management System 1.0 /insertClient.php client_id sql injection
15.06.2025 12:53
A vulnerability was found in Projectworlds Life Insurance Management System 1.0. It has been classified as critical. This affects an unknown part of the file /insertClient.php. The manipulation of the...
CVE-2025-6133 | Projectworlds Life Insurance Management System 1.0 /insertagent.php agent_id sql injection
15.06.2025 12:53
A vulnerability was found in Projectworlds Life Insurance Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /insertagent.php. The manip...
CVE-2025-6132 | Chanjet CRM 1.0 departmentsetting.php gblOrgID sql injection
15.06.2025 12:48
A vulnerability has been found in Chanjet CRM 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /sysconfig/departmentsetting.php. The manipulation ...
CVE-2025-6131 | PHP Food Ordering System in PHP CodeIgniter 1.0 POST Request Parameter /admin/store/edit/ Restaurant Name/Address cross site scripting
15.06.2025 12:47
A vulnerability, which was classified as problematic, was found in PHP Food Ordering System in PHP CodeIgniter 1.0. Affected is an unknown function of the file /admin/store/edit/ of the component POST...
CVE-2025-6130 | TOTOLINK EX1200T 4.1.2cu.5232_B20210713 HTTP POST Request /boafrm/formStats buffer overflow
15.06.2025 12:44
A vulnerability, which was classified as critical, has been found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. This issue affects some unknown processing of the file /boafrm/formStats of the component ...
CVE-2025-6129 | TOTOLINK EX1200T 4.1.2cu.5232_B20210713 HTTP POST Request /boafrm/formSaveConfig submit-url buffer overflow
15.06.2025 12:44
A vulnerability classified as critical was found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. This vulnerability affects unknown code of the file /boafrm/formSaveConfig of the component HTTP POST Reque...
CVE-2025-6128 | TOTOLINK EX1200T 4.1.2cu.5232_B20210713 HTTP POST Request /boafrm/formWirelessTbl submit-url buffer overflow
15.06.2025 12:44
A vulnerability classified as critical has been found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. This affects an unknown part of the file /boafrm/formWirelessTbl of the component HTTP POST Request Ha...
CVE-2025-6127 | PHPGurukul Nipah Virus Testing Management System 1.0 /search-report.php serachdata cross site scripting
15.06.2025 12:41
A vulnerability was found in PHPGurukul Nipah Virus Testing Management System 1.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /search-report.php...
CVE-2025-6126 | PHPGurukul Rail Pass Management System 1.0 /contact.php Name cross site scripting
15.06.2025 12:38
A vulnerability was found in PHPGurukul Rail Pass Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /contact.php. The m...
CVE-2025-6125 | PHPGurukul Rail Pass Management System 1.0 /admin/aboutus.php pagedes cross site scripting
15.06.2025 12:38
A vulnerability was found in PHPGurukul Rail Pass Management System 1.0. It has been classified as problematic. Affected is an unknown function of the file /admin/aboutus.php. The manipulation of the ...
CVE-2025-6124 | code-projects Restaurant Order System 1.0 /tablelow.php ID sql injection
15.06.2025 12:32
A vulnerability was found in code-projects Restaurant Order System 1.0 and classified as critical. This issue affects some unknown processing of the file /tablelow.php. The manipulation of the argumen...
CVE-2025-6123 | code-projects Restaurant Order System 1.0 /payment.php tabidNoti sql injection
15.06.2025 12:32
A vulnerability has been found in code-projects Restaurant Order System 1.0 and classified as critical. This vulnerability affects unknown code of the file /payment.php. The manipulation of the argume...
CVE-2025-6122 | code-projects Restaurant Order System 1.0 /table.php ID sql injection
15.06.2025 12:32
A vulnerability, which was classified as critical, was found in code-projects Restaurant Order System 1.0. This affects an unknown part of the file /table.php. The manipulation of the argument ID lead...
CVE-2025-6121 | D-Link DIR-632 FW103B08 HTTP POST Request get_pure_content Content-Length stack-based overflow
15.06.2025 12:28
A vulnerability, which was classified as critical, has been found in D-Link DIR-632 FW103B08. Affected by this issue is the function get_pure_content of the component HTTP POST Request Handler. The ma...
CVE-2025-6120 | Open Asset Import Library Assimp up to 5.4.3 HL1MDLLoader.cpp read_meshes heap-based overflow (Issue 6220)
15.06.2025 12:23
A vulnerability classified as critical was found in Open Asset Import Library Assimp up to 5.4.3. Affected by this vulnerability is the function read_meshes in the library assimp/code/AssetLib/MDL/Hal...
CVE-2025-6119 | Open Asset Import Library Assimp up to 5.4.3 BVHLoader.cpp ReadNodeChannels pNode use after free (Issue 6219)
15.06.2025 12:23
A vulnerability classified as critical has been found in Open Asset Import Library Assimp up to 5.4.3. Affected is the function Assimp::BVHLoader::ReadNodeChannels in the library assimp/code/AssetLib/...
CVE-2025-6118 | Das Parking Management System 停车场管理系统 6.2.0 API /vehicle/search vehicleTypeCode sql injection
15.06.2025 12:17
A vulnerability was found in Das Parking Management System 停车场管理系统 6.2.0. It has been rated as critical. This issue affects some unknown processing of the file /vehicle/search of the com...
CVE-2025-6117 | Das Parking Management System 停车场管理系统 6.2.0 API /Reservations/Search Value sql injection
15.06.2025 12:17
A vulnerability was found in Das Parking Management System 停车场管理系统 6.2.0. It has been declared as critical. This vulnerability affects unknown code of the file /Reservations/Search of th...
CVE-2025-6116 | Das Parking Management System 停车场管理系统 6.2.0 API Search Value sql injection
15.06.2025 12:17
A vulnerability was found in Das Parking Management System 停车场管理系统 6.2.0. It has been classified as critical. This affects an unknown part of the file /IntraFieldVehicle/Search of the co...
CVE-2025-6115 | D-Link DIR-619L 2.06B01 form_macfilter mac_hostname_%d/sched_name_%d stack-based overflow
15.06.2025 12:13
A vulnerability was found in D-Link DIR-619L 2.06B01 and classified as critical. Affected by this issue is the function form_macfilter. The manipulation of the argument mac_hostname_%d/sched_name_%d l...
CVE-2025-6114 | D-Link DIR-619L 2.06B01 form_portforwarding ingress_name_%d/sched_name_%d/name_%d stack-based overflow
15.06.2025 12:13
A vulnerability has been found in D-Link DIR-619L 2.06B01 and classified as critical. Affected by this vulnerability is the function form_portforwarding of the file /goform/form_portforwarding. The ma...
CVE-2025-6113 | Tenda FH1203 2.0.1.6 /goform/AdvSetLanip fromadvsetlanip lanMask buffer overflow
15.06.2025 12:07
A vulnerability, which was classified as critical, was found in Tenda FH1203 2.0.1.6. Affected is the function fromadvsetlanip of the file /goform/AdvSetLanip. The manipulation of the argument lanMask...
CVE-2025-6112 | Tenda FH1205 2.0.0.7 /goform/AdvSetLanip fromadvsetlanip lanMask buffer overflow
15.06.2025 12:06
A vulnerability, which was classified as critical, has been found in Tenda FH1205 2.0.0.7. This issue affects the function fromadvsetlanip of the file /goform/AdvSetLanip. The manipulation of the argu...
CVE-2025-6111 | Tenda FH1205 2.0.0.7(775) /goform/VirtualSer fromVirtualSer page stack-based overflow
15.06.2025 12:06
A vulnerability classified as critical was found in Tenda FH1205 2.0.0.7(775). This vulnerability affects the function fromVirtualSer of the file /goform/VirtualSer. The manipulation of the argument p...
CVE-2025-6110 | Tenda FH1201 1.2.0.14(408) /goform/SafeMacFilter page stack-based overflow
15.06.2025 12:04
A vulnerability classified as critical has been found in Tenda FH1201 1.2.0.14(408). This affects an unknown part of the file /goform/SafeMacFilter. The manipulation of the argument page leads to stac...
CVE-2025-6109 | javahongxi whatsmars 2021.4.0 InitializrController.java initialize artifactId path traversal
15.06.2025 12:02
A vulnerability was found in javahongxi whatsmars 2021.4.0. It has been rated as problematic. Affected by this issue is the function initialize of the file /whatsmars-archetypes/whatsmars-initializr/s...
CVE-2025-6108 | hansonwang99 Spring-Boot-In-Action up to 807fd37643aa774b94fd004cc3adbd29ca17e9aa File Upload ImageUploadService.java watermarkTest filename path traversal
15.06.2025 11:59
A vulnerability was found in hansonwang99 Spring-Boot-In-Action up to 807fd37643aa774b94fd004cc3adbd29ca17e9aa. It has been declared as critical. Affected by this vulnerability is the function waterma...
CVE-2025-6107 | comfyanonymous comfyui 0.3.40 /comfy/utils.py set_attr dynamically-determined object attributes
15.06.2025 11:52
A vulnerability was found in comfyanonymous comfyui 0.3.40. It has been classified as problematic. Affected is the function set_attr of the file /comfy/utils.py. The manipulation leads to dynamically-...
CVE-2025-6106 | WuKongOpenSource WukongCRM 9.0 AdminRoleController.java cross-site request forgery
15.06.2025 11:50
A vulnerability was found in WuKongOpenSource WukongCRM 9.0 and classified as problematic. This issue affects some unknown processing of the file AdminRoleController.java. The manipulation leads to cr...
CVE-2025-6105 | jflyfox jfinal_cms 5.0.1 HOME.java Logout cross-site request forgery
15.06.2025 11:48
A vulnerability has been found in jflyfox jfinal_cms 5.0.1 and classified as problematic. This vulnerability affects unknown code of the file HOME.java. The manipulation of the argument Logout leads t...
CVE-2025-6104 | Wifi-soft UniBox Controller up to 20250506 /billing/pms_check.php ipaddress os command injection
15.06.2025 11:46
A vulnerability, which was classified as critical, was found in Wifi-soft UniBox Controller up to 20250506. This affects an unknown part of the file /billing/pms_check.php. The manipulation of the arg...
CVE-2025-6103 | Wifi-soft UniBox Controller up to 20250506 test_accesscodelogin.php Password os command injection
15.06.2025 11:46
A vulnerability, which was classified as critical, has been found in Wifi-soft UniBox Controller up to 20250506. Affected by this issue is some unknown functionality of the file /billing/test_accessco...
CVE-2025-6102 | Wifi-soft UniBox Controller up to 20250506 logout.php mac_address os command injection
15.06.2025 11:46
A vulnerability classified as critical was found in Wifi-soft UniBox Controller up to 20250506. Affected by this vulnerability is an unknown functionality of the file /authentication/logout.php. The m...
CVE-2025-6101 | letta-ai letta up to 0.4.1 letta/letta/interface.py function_message function_name/function_args eval injection (Issue 2613)
15.06.2025 11:40
A vulnerability classified as critical has been found in letta-ai letta up to 0.4.1. Affected is the function function_message of the file letta/letta/interface.py. The manipulation of the argument fu...
CVE-2025-6100 | realguoshuai open-video-cms 1.0 /v1/video/list sort sql injection
15.06.2025 11:35
A vulnerability was found in realguoshuai open-video-cms 1.0. It has been rated as critical. This issue affects some unknown processing of the file /v1/video/list. The manipulation of the argument sor...
CVE-2025-6099 | szluyu99 gin-vue-blog up to 61dd11ccd296e8642a318ada3ef7b3f7776d2410 PATCH Request manager.go improper authorization
15.06.2025 09:07
A vulnerability was found in szluyu99 gin-vue-blog up to 61dd11ccd296e8642a318ada3ef7b3f7776d2410. It has been declared as critical. This vulnerability affects unknown code of the file gin-blog-server...
CVE-2025-6098 | UTT 进取 750W up to 5.0 API /goform/setSysAdm strcpy passwd1 buffer overflow (EUVD-2025-18354)
15.06.2025 09:01
A vulnerability was found in UTT 进取 750W up to 5.0. It has been classified as critical. This affects the function strcpy of the file /goform/setSysAdm of the component API. The manipulation of the...
CVE-2025-6097 | UTT 进取 750W up to 5.0 Administrator Password /goform/setSysAdm formDefineManagement passwd1 unverified password change (EUVD-2025-18351)
15.06.2025 09:01
A vulnerability was found in UTT 进取 750W up to 5.0 and classified as critical. Affected by this issue is the function formDefineManagement of the file /goform/setSysAdm of the component Administra...
CVE-2025-6096 | codesiddhant Jasmin Ransomware up to 1.0.1 /dashboard.php Search sql injection (EUVD-2025-18350)
15.06.2025 08:57
A vulnerability has been found in codesiddhant Jasmin Ransomware up to 1.0.1 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /dashboard.php. The mani...
CVE-2025-6095 | codesiddhant Jasmin Ransomware 1.0.1 /checklogin.php username/password sql injection (EUVD-2025-18352)
15.06.2025 08:57
A vulnerability, which was classified as critical, was found in codesiddhant Jasmin Ransomware 1.0.1. Affected is an unknown function of the file /checklogin.php. The manipulation of the argument user...
CVE-2025-6094 | FoxCMS up to 1.2.5 Download.php batchCope ids sql injection (EUVD-2025-18349)
15.06.2025 08:55
A vulnerability, which was classified as critical, has been found in FoxCMS up to 1.2.5. This issue affects the function batchCope of the file app/admin/controller/Download.php. The manipulation of th...
CVE-2025-6093 | uYanki board-stm32f103rc-berial up to 84daed541609cb7b46854cc6672a275d1007e295 heartrate1_hal.c heartrate1_i2c_hal_write num stack-based overflow (EUVD-2025-18353)
15.06.2025 08:52
A vulnerability classified as critical was found in uYanki board-stm32f103rc-berial up to 84daed541609cb7b46854cc6672a275d1007e295. This vulnerability affects the function heartrate1_i2c_hal_write of ...
CVE-2025-47869 | Apache NuttX RTOS up to 12.8.x xmlrpc buffer overflow
15.06.2025 08:41
A vulnerability classified as critical has been found in Apache NuttX RTOS up to 12.8.x. This affects an unknown part of the component xmlrpc. The manipulation leads to buffer overflow. This vulnerab...
CVE-2025-47868 | Apache NuttX RTOS up to 12.8.x bdf-converter infinite loop
15.06.2025 08:41
A vulnerability was found in Apache NuttX RTOS up to 12.8.x. It has been rated as problematic. Affected by this issue is some unknown functionality of the component bdf-converter. The manipulation lea...
CVE-2025-6092 | comfyanonymous comfyui up to 0.3.39 Incomplete Fix CVE-2024-10099 /upload/image cross site scripting (EUVD-2025-18346)
15.06.2025 01:14
A vulnerability was found in comfyanonymous comfyui up to 0.3.39. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /upload/image of the compo...
CVE-2025-6091 | H3C GR-3000AX V100R007L50 /routing/goform/aspForm UpdateWanParamsMulti/UpdateIpv6Params param buffer overflow (EUVD-2025-18345)
15.06.2025 01:09
A vulnerability was found in H3C GR-3000AX V100R007L50. It has been classified as critical. Affected is the function UpdateWanParamsMulti/UpdateIpv6Params of the file /routing/goform/aspForm. The mani...
CVE-2025-6090 | H3C GR-5400AX V100R009L50 /routing/goform/aspForm UpdateWanparamsMulti/UpdateIpv6params param buffer overflow (EUVD-2025-18341)
15.06.2025 01:09
A vulnerability was found in H3C GR-5400AX V100R009L50 and classified as critical. This issue affects the function UpdateWanparamsMulti/UpdateIpv6params of the file /routing/goform/aspForm. The manipu...
CVE-2025-6089 | Astun Technology iShare Maps 5.4.0 atCheckJS.aspx ref redirect (EUVD-2025-18344)
15.06.2025 01:04
A vulnerability has been found in Astun Technology iShare Maps 5.4.0 and classified as problematic. This vulnerability affects unknown code of the file atCheckJS.aspx. The manipulation of the argument...
CVE-2025-5337 | MetaSlider Slider, Gallery, and Carousel Plugin up to 3.98.0 on WordPress aria-label cross site scripting (EUVD-2025-18336)
14.06.2025 13:53
A vulnerability, which was classified as problematic, was found in MetaSlider Slider, Gallery, and Carousel Plugin up to 3.98.0 on WordPress. This affects an unknown part. The manipulation of the argu...
CVE-2025-25215 | Dell ControlVault3/ControlVault3 Plus cv_close release of reference (dsa-2025-053 / EUVD-2025-18306)
14.06.2025 13:21
A vulnerability, which was classified as critical, has been found in Dell ControlVault3 and ControlVault3 Plus. Affected by this issue is the function cv_close. The manipulation leads to release of re...
CVE-2025-24919 | Dell ControlVault3/ControlVault3 Plus cvhDecapsulateCmd deserialization (dsa-2025-053 / EUVD-2025-18307)
14.06.2025 13:21
A vulnerability classified as critical was found in Dell ControlVault3 and ControlVault3 Plus. Affected by this vulnerability is the function cvhDecapsulateCmd. The manipulation leads to deserializati...
CVE-2025-33108 | IBM Backup Recovery and Media Services for i 7.4/7.5 unnecessary privileges (EUVD-2025-18318)
14.06.2025 08:14
A vulnerability classified as critical has been found in IBM Backup Recovery and Media Services for i 7.4/7.5. Affected is an unknown function. The manipulation leads to execution with unnecessary pri...
CVE-2025-35452 | PTZOptics/ValueHD Camera Administrative Web Interface hard-coded credentials (icsa-25-162-10)
13.06.2025 23:39
A vulnerability was found in PTZOptics/ValueHD Camera. It has been rated as very critical. This issue affects some unknown processing of the component Administrative Web Interface. The manipulation le...
CVE-2025-35451 | PTZOptics/ValueHD Camera SSH/Telnet other hard-coded credentials (icsa-25-162-10)
13.06.2025 23:38
A vulnerability was found in PTZOptics/ValueHD Camera. It has been declared as critical. This vulnerability affects unknown code of the component SSH/Telnet. The manipulation of the argument other lea...
CVE-2025-49385 | Trend Micro Maximum Security Platinum Host Service link following
13.06.2025 23:37
A vulnerability was found in Trend Micro Maximum Security. It has been classified as critical. This affects an unknown part of the component Platinum Host Service. The manipulation leads to link follo...
CVE-2025-5336 | Click to Chat Plugin up to 4.22 on WordPress data-no_number cross site scripting (EUVD-2025-18334)
13.06.2025 23:36
A vulnerability was found in Click to Chat Plugin up to 4.22 on WordPress and classified as problematic. Affected by this issue is some unknown functionality. The manipulation of the argument data-no_...
CVE-2025-6063 | XiSearch bar Plugin up to 2.6 on WordPress Setting cross-site request forgery (EUVD-2025-18322)
13.06.2025 23:36
A vulnerability has been found in XiSearch bar Plugin up to 2.6 on WordPress and classified as problematic. Affected by this vulnerability is an unknown functionality of the component Setting Handler....
CVE-2025-4667 | Appointment Booking Calendar Plugin up to 1.6.8.30 on WordPress Shortcode cross site scripting (EUVD-2025-18338)
13.06.2025 23:36
A vulnerability, which was classified as problematic, was found in Appointment Booking Calendar Plugin up to 1.6.8.30 on WordPress. Affected is the function ssa_admin_upcoming_appointments/ssa_admin_u...
CVE-2025-4592 | AI Image Lab Plugin up to 1.0.6 on WordPress API Key cross-site request forgery (EUVD-2025-18332)
13.06.2025 23:35
A vulnerability, which was classified as problematic, has been found in AI Image Lab Plugin up to 1.0.6 on WordPress. This issue affects some unknown processing of the component API Key Handler. The m...
CVE-2025-6061 | kk Youtube Video Plugin up to 0.2 on WordPress Shortcode kkytv cross site scripting (EUVD-2025-18323)
13.06.2025 23:35
A vulnerability classified as problematic was found in kk Youtube Video Plugin up to 0.2 on WordPress. This vulnerability affects the function kkytv of the component Shortcode Handler. The manipulatio...
CVE-2025-5589 | StreamWeasels Kick Integration Plugin up to 1.1.3 on WordPress status-classic-offline-text cross site scripting (EUVD-2025-18335)
13.06.2025 23:35
A vulnerability classified as problematic has been found in StreamWeasels Kick Integration Plugin up to 1.1.3 on WordPress. This affects an unknown part. The manipulation of the argument status-classi...
RSS Feed eintragen

Machen Sie Ihren RSS-Feed bekannt und erhöhen Sie die Sichtbarkeit Ihrer Website!

RSS-Feed eintragen
RSS-Reader
RSS-Reader finden Sie unter unsere Übersicht: RSS-Reader
Die neuesten Feeds
Die Top-Feeds
meist gelesenen Feeds