RSS Feeds > Computer & Technik > Internet > Marketing > scip AG [Security - Consulting - Information - Process] | RSS Verzeichnis

scip AG [Security - Consulting - Information - Process]


Anzeigen einer beliebigen Anzahl von Sicherheitsl?cken aus der scip AG Datenbank.

Betreiber-URL: https://www.scip.ch
RSS-Feed-URL: https://www.scip.ch/alertRSS.xml
Die neuesten Einträge aus dem RSS-Feed von scip AG [Security - Consulting - Information - Process]:
CVE-2025-6621 | TOTOLINK CA300-PoE 6.2c.884 ap.so QuickSetting hour/minute os command injection
25.06.2025 09:19
A vulnerability classified as critical has been found in TOTOLINK CA300-PoE 6.2c.884. This affects the function QuickSetting of the file ap.so. The manipulation of the argument hour/minute leads to os...
CVE-2025-6620 | TOTOLINK CA300-PoE 6.2c.884 upgrade.so setUpgradeUboot FileName os command injection
25.06.2025 09:19
A vulnerability was found in TOTOLINK CA300-PoE 6.2c.884. It has been rated as critical. Affected by this issue is the function setUpgradeUboot of the file upgrade.so. The manipulation of the argument...
CVE-2025-6619 | TOTOLINK CA300-PoE 6.2c.884 upgrade.so setUpgradeFW FileName os command injection
25.06.2025 09:19
A vulnerability was found in TOTOLINK CA300-PoE 6.2c.884. It has been declared as critical. Affected by this vulnerability is the function setUpgradeFW of the file upgrade.so. The manipulation of the ...
CVE-2025-6618 | TOTOLINK CA300-PoE 6.2c.884 wps.so SetWLanApcliSettings PIN os command injection
25.06.2025 09:19
A vulnerability was found in TOTOLINK CA300-PoE 6.2c.884. It has been classified as critical. Affected is the function SetWLanApcliSettings of the file wps.so. The manipulation of the argument PIN lea...
CVE-2025-6617 | D-Link DIR-619L 2.06B01 /goform/formAdvanceSetup webpage stack-based overflow
25.06.2025 09:16
A vulnerability was found in D-Link DIR-619L 2.06B01 and classified as critical. This issue affects the function formAdvanceSetup of the file /goform/formAdvanceSetup. The manipulation of the argument...
CVE-2025-6616 | D-Link DIR-619L 2.06B01 formSetWAN_Wizard51 curTime stack-based overflow
25.06.2025 09:16
A vulnerability has been found in D-Link DIR-619L 2.06B01 and classified as critical. This vulnerability affects the function formSetWAN_Wizard51 of the file /goform/formSetWAN_Wizard51. The manipulat...
CVE-2025-6615 | D-Link DIR-619L 2.06B01 formAutoDetecWAN_wizard4 curTime stack-based overflow
25.06.2025 09:16
A vulnerability, which was classified as critical, was found in D-Link DIR-619L 2.06B01. This affects the function formAutoDetecWAN_wizard4 of the file /goform/formAutoDetecWAN_wizard4. The manipulati...
CVE-2025-6614 | D-Link DIR-619L 2.06B01 formSetWANType_Wizard5 curTime stack-based overflow
25.06.2025 09:16
A vulnerability, which was classified as critical, has been found in D-Link DIR-619L 2.06B01. Affected by this issue is the function formSetWANType_Wizard5 of the file /goform/formSetWANType_Wizard5. ...
CVE-2025-6613 | PHPGurukul Hospital Management System 4.0 manage-patient.php Name cross site scripting
25.06.2025 09:11
A vulnerability classified as problematic was found in PHPGurukul Hospital Management System 4.0. Affected by this vulnerability is an unknown functionality of the file /doctor/manage-patient.php. The...
CVE-2025-43880 | GROWI up to 7.1.5 redos (EUVD-2025-19081)
25.06.2025 07:58
A vulnerability classified as problematic has been found in GROWI up to 7.1.5. Affected is an unknown function. The manipulation leads to inefficient regular expression complexity. This vulnerability...
CVE-2025-6612 | code-projects Inventory Management System 1.0 removeCategories.php categoriesId sql injection
25.06.2025 07:58
A vulnerability was found in code-projects Inventory Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /php_action/removeCategories.php. The ...
CVE-2025-6611 | code-projects Inventory Management System 1.0 createBrand.php brandStatus sql injection
25.06.2025 07:58
A vulnerability was found in code-projects Inventory Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /php_action/createBrand.php. The manip...
CVE-2025-6610 | itsourcecode Employee Management System up to 1.0 editempprofile.php FirstName sql injection
25.06.2025 07:33
A vulnerability was found in itsourcecode Employee Management System up to 1.0. It has been classified as critical. This affects an unknown part of the file /admin/editempprofile.php. The manipulation...
CVE-2025-6609 | SourceCodester Best Salon Management System 1.0 bwdates-reports-details.php fromdate/todate sql injection
25.06.2025 07:29
A vulnerability was found in SourceCodester Best Salon Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /panel/bwdates-reports-details...
CVE-2025-6608 | SourceCodester Best Salon Management System 1.0 /panel/edit-services.php editid sql injection
25.06.2025 07:29
A vulnerability has been found in SourceCodester Best Salon Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /panel/edit-service...
CVE-2025-6607 | SourceCodester Best Salon Management System 1.0 /panel/stock.php ID sql injection
25.06.2025 07:29
A vulnerability, which was classified as critical, was found in SourceCodester Best Salon Management System 1.0. Affected is an unknown function of the file /panel/stock.php. The manipulation of the a...
CVE-2025-6606 | SourceCodester Best Salon Management System 1.0 /panel/add-services.php Type sql injection
25.06.2025 07:29
A vulnerability, which was classified as critical, has been found in SourceCodester Best Salon Management System 1.0. This issue affects some unknown processing of the file /panel/add-services.php. Th...
CVE-2025-6605 | SourceCodester Best Salon Management System 1.0 /panel/edit-staff.php editid sql injection
25.06.2025 07:29
A vulnerability classified as critical was found in SourceCodester Best Salon Management System 1.0. This vulnerability affects unknown code of the file /panel/edit-staff.php. The manipulation of the ...
CVE-2025-6604 | SourceCodester Best Salon Management System 1.0 /panel/add-staff.php Name sql injection
25.06.2025 07:29
A vulnerability classified as critical has been found in SourceCodester Best Salon Management System 1.0. This affects an unknown part of the file /panel/add-staff.php. The manipulation of the argumen...
CVE-2025-6603 | coldfunction qCUDA up to db0085400c2f2011eed46fbc04fdc0873141688e qcow.c qcow_make_empty s->l1_size integer overflow (Issue 10)
25.06.2025 07:24
A vulnerability was found in coldfunction qCUDA up to db0085400c2f2011eed46fbc04fdc0873141688e. It has been rated as problematic. Affected by this issue is the function qcow_make_empty of the file qCU...
CVE-2025-5015 | Parsons Parsons Utility Enterprise Data Management RSS Feed URL cross site scripting (icsa-25-175-06)
25.06.2025 07:15
A vulnerability was found in Parsons Parsons Utility Enterprise Data Management. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component RSS Fe...
CVE-2025-49153 | MICROSENS NMP Web+ up to 3.2.5 path traversal (icsa-25-175-07)
25.06.2025 07:14
A vulnerability was found in MICROSENS NMP Web+ up to 3.2.5. It has been classified as very critical. Affected is an unknown function. The manipulation leads to path traversal. This vulnerability is ...
CVE-2025-49152 | MICROSENS NMP Web+ up to 3.2.5 session expiration (icsa-25-175-07)
25.06.2025 07:13
A vulnerability was found in MICROSENS NMP Web+ up to 3.2.5 and classified as problematic. This issue affects some unknown processing. The manipulation leads to session expiration. The identification...
CVE-2025-49151 | MICROSENS NMP Web+ up to 3.2.5 hard-coded, security-relevant constants (icsa-25-175-07)
25.06.2025 07:13
A vulnerability has been found in MICROSENS NMP Web+ up to 3.2.5 and classified as critical. This vulnerability affects unknown code. The manipulation leads to use of hard-coded, security-relevant con...
CVE-2025-5927 | Everest Forms Pro Plugin up to 1.9.4 on WordPress delete_entry_files path traversal
25.06.2025 07:11
A vulnerability, which was classified as critical, was found in Everest Forms Pro Plugin up to 1.9.4 on WordPress. This affects the function delete_entry_files. The manipulation leads to path traversa...
CVE-2024-56917 | Netbox Community 4.1.7 Maintenance Banner cross site scripting (EUVD-2024-54697)
25.06.2025 07:10
A vulnerability, which was classified as problematic, has been found in Netbox Community 4.1.7. Affected by this issue is some unknown functionality of the component Maintenance Banner. The manipulati...
CVE-2024-56918 | Netbox Community 4.1.7 Login Form cross site scripting
25.06.2025 07:10
A vulnerability classified as problematic was found in Netbox Community 4.1.7. Affected by this vulnerability is an unknown functionality of the component Login Form. The manipulation leads to cross s...
CVE-2025-52888 | allure-framework allure2 up to 2.34.0 XML Parser DocumentBuilderFactory xml external entity reference (GHSA-h7qf-qmf3-85qg / EUVD-2025-19057)
25.06.2025 07:10
A vulnerability classified as critical has been found in allure-framework allure2 up to 2.34.0. Affected is the function DocumentBuilderFactory of the component XML Parser. The manipulation leads to x...
CVE-2024-56916 | Netbox Community 4.1.7 current value cross site scripting
25.06.2025 07:10
A vulnerability was found in Netbox Community 4.1.7. It has been rated as problematic. This issue affects some unknown processing. The manipulation of the argument current value leads to cross site sc...
CVE-2024-37743 | mmzdev KnowledgeGPT 0.0.5 Document Display Component code injection (EUVD-2024-54696)
25.06.2025 07:09
A vulnerability was found in mmzdev KnowledgeGPT 0.0.5. It has been declared as critical. This vulnerability affects unknown code of the component Document Display Component. The manipulation leads to...
CVE-2025-50699 | PHPGurukul Online DJ Booking Management System 2.0 view-user-queries.php cross site scripting (EUVD-2025-19041)
25.06.2025 07:09
A vulnerability was found in PHPGurukul Online DJ Booking Management System 2.0. It has been classified as problematic. This affects an unknown part of the file /admin/view-user-queries.php. The manip...
CVE-2025-50695 | PHPGurukul Online DJ Booking Management System 2.0 view-booking-detail.php cross site scripting (EUVD-2025-19040)
25.06.2025 07:08
A vulnerability was found in PHPGurukul Online DJ Booking Management System 2.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /admin/view-booking-deta...
CVE-2025-49852 | ControlID iDSecure On-premises up to 4.7.48.0 server-side request forgery (icsa-25-175-05 / EUVD-2025-19063)
25.06.2025 07:08
A vulnerability has been found in ControlID iDSecure On-premises up to 4.7.48.0 and classified as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to server...
CVE-2025-52882 | anthropics claude-code up to 1.0.23 missing origin validation in websockets (GHSA-9f65-56v6-gxw7 / EUVD-2025-19068)
25.06.2025 07:07
A vulnerability, which was classified as critical, was found in anthropics claude-code up to 1.0.23. Affected is an unknown function. The manipulation leads to missing origin validation in websockets....
CVE-2025-52880 | gotson komga up to 1.21.x EPUB File Parser improper control of interaction frequency (GHSA-m7mm-6jxp-2m4x / EUVD-2025-19058)
25.06.2025 07:07
A vulnerability, which was classified as problematic, has been found in gotson komga up to 1.21.x. This issue affects some unknown processing of the component EPUB File Parser. The manipulation leads ...
CVE-2025-52883 | Meshtastic up to 2.5.20 on Android Direct Message improper validation of specified type of input (GHSA-h4rg-g6f3-ghh7 / EUVD-2025-19065)
25.06.2025 07:06
A vulnerability classified as very critical was found in Meshtastic up to 2.5.20 on Android. This vulnerability affects unknown code of the component Direct Message Handler. The manipulation leads to ...
CVE-2025-52571 | hikariatama Hikka up to 1.6.1 improper authentication (GHSA-vwpq-wm8w-44wf / EUVD-2025-19067)
25.06.2025 07:06
A vulnerability classified as critical has been found in hikariatama Hikka up to 1.6.1. This affects an unknown part. The manipulation leads to improper authentication. This vulnerability is uniquely...
CVE-2025-49853 | ControlID iDSecure On-premises up to 4.7.48.0 sql injection (icsa-25-175-05 / EUVD-2025-19061)
25.06.2025 07:06
A vulnerability was found in ControlID iDSecure On-premises up to 4.7.48.0. It has been rated as critical. Affected by this issue is some unknown functionality. The manipulation leads to sql injection...
CVE-2025-49851 | ControlID iDSecure On-premises up to 4.7.48.0 improper authentication (icsa-25-175-05 / EUVD-2025-19062)
25.06.2025 07:05
A vulnerability was found in ControlID iDSecure On-premises up to 4.7.48.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to impr...
CVE-2025-5087 | Kaleris Navis N4 ULC up to 3.x zlib Compression cleartext transmission (icsa-25-175-01 / EUVD-2025-19055)
25.06.2025 07:05
A vulnerability was found in Kaleris Navis N4 ULC up to 3.x. It has been classified as problematic. Affected is an unknown function of the component zlib Compression Handler. The manipulation leads to...
CVE-2025-2566 | Kaleris Navis N4 ULC up to 3.x Java deserialization (icsa-25-175-01 / EUVD-2025-19054)
25.06.2025 07:02
A vulnerability was found in Kaleris Navis N4 ULC up to 3.x and classified as critical. This issue affects some unknown processing of the component Java Handler. The manipulation leads to deserializat...
CVE-2025-53073 | Sentry up to 25.5.1 Issue Endpoint direct request
25.06.2025 07:02
A vulnerability has been found in Sentry up to 25.5.1 and classified as problematic. This vulnerability affects unknown code of the component Issue Endpoint. The manipulation leads to direct request. ...
CVE-2025-4378 | Ataturk University ATA-AOF Mobile Application prior 20.06.2025 cleartext transmission
25.06.2025 07:02
A vulnerability, which was classified as problematic, was found in Ataturk University ATA-AOF Mobile Application. This affects an unknown part. The manipulation leads to cleartext transmission of sens...
CVE-2025-44531 | Realtek RTL8762EKF-EVB RTL8762E SDK 1.4.0 Pairing Public Key denial of service (EUVD-2025-19037)
25.06.2025 07:01
A vulnerability, which was classified as problematic, has been found in Realtek RTL8762EKF-EVB RTL8762E SDK 1.4.0. Affected by this issue is some unknown functionality of the component Pairing Public ...
CVE-2025-4383 | Art-in Bilişim Teknolojileri ve Yazılım Hizm Wi-Fi Cloud Hotspot prior 30.05.2025 excessive authentication (EUVD-2025-19046)
25.06.2025 07:01
A vulnerability classified as problematic was found in Art-in Bilişim Teknolojileri ve Yazılım Hizm Wi-Fi Cloud Hotspot. Affected by this vulnerability is an unknown functionality. The manipulation...
CVE-2025-23260 | NVIDIA AIStore AIS Operator privileges assignment
25.06.2025 07:00
A vulnerability classified as problematic has been found in NVIDIA AIStore. Affected is an unknown function of the component AIS Operator. The manipulation leads to incorrect privilege assignment. Th...
CVE-2025-49147 | Umbraco CMS up to 10.8.110/13.9.1 Anonymously Authenticated Endpoint exposure of sensitive system information to an unauthorized control sphere (GHSA-pgvc-6h2p-q4f6 / EUVD-2025-19053)
25.06.2025 07:00
A vulnerability was found in Umbraco CMS up to 10.8.110/13.9.1. It has been rated as problematic. This issue affects some unknown processing of the component Anonymously Authenticated Endpoint. The ma...
CVE-2025-50693 | PHPGurukul Online DJ Booking Management System 2.0 /request-details.php resource injection (EUVD-2025-19042)
25.06.2025 07:00
A vulnerability was found in PHPGurukul Online DJ Booking Management System 2.0. It has been declared as critical. This vulnerability affects unknown code of the file /request-details.php. The manipul...
CVE-2025-52884 | risc0 risc0-ethereum up to 2.1.0 Steel.validateCommitment invalid special elements (GHSA-gjv3-89hh-9xq2 / EUVD-2025-19064)
25.06.2025 07:00
A vulnerability was found in risc0 risc0-ethereum up to 2.1.0. It has been classified as problematic. This affects the function Steel.validateCommitment. The manipulation leads to improper handling of...
CVE-2025-52572 | hikariatama Hikka up to 1.7.0-wip Web Interface improper authentication (GHSA-7x3c-335v-wxjj / EUVD-2025-19066)
25.06.2025 06:59
A vulnerability was found in hikariatama Hikka up to 1.7.0-wip and classified as critical. Affected by this issue is some unknown functionality of the component Web Interface. The manipulation leads t...
CVE-2025-52471 | espressif esp-idf 5.1.6/5.2.5/5.3.3/5.4.1 ESP-NOW Protocol esp_now_register_recv_cb data_len integer underflow (GHSA-hqhh-cp47-fv5g / EUVD-2025-19059)
25.06.2025 06:58
A vulnerability has been found in espressif esp-idf 5.1.6/5.2.5/5.3.3/5.4.1 and classified as very critical. Affected by this vulnerability is the function esp_now_register_recv_cb of the component ES...
CVE-2025-53021 | Moodle up to 3.11.18 sesskey session fixiation (EUVD-2025-19060)
25.06.2025 06:58
A vulnerability, which was classified as critical, was found in Moodle up to 3.11.18. Affected is an unknown function. The manipulation of the argument sesskey leads to session fixiation. This vulnera...
CVE-2025-36004 | IBM i 7.2/7.3/7.4/7.5 uncontrolled search path (EUVD-2025-19080)
25.06.2025 06:57
A vulnerability, which was classified as critical, has been found in IBM i 7.2/7.3/7.4/7.5. This issue affects some unknown processing. The manipulation leads to uncontrolled search path. The identif...
CVE-2025-0966 | IBM InfoSphere Information Server 11.7 sql injection (EUVD-2025-19079)
25.06.2025 06:57
A vulnerability classified as critical was found in IBM InfoSphere Information Server 11.7. This vulnerability affects unknown code. The manipulation leads to sql injection. This vulnerability was na...
CVE-2025-23265 | NVIDIA Megatron LM code injection (EUVD-2025-19044)
25.06.2025 06:57
A vulnerability classified as critical has been found in NVIDIA Megatron LM. This affects an unknown part. The manipulation leads to code injection. This vulnerability is uniquely identified as CVE-2...
CVE-2025-23264 | NVIDIA Megatron LM Python code injection (EUVD-2025-19045)
25.06.2025 06:57
A vulnerability was found in NVIDIA Megatron LM. It has been rated as critical. Affected by this issue is some unknown functionality of the component Python. The manipulation leads to code injection. ...
CVE-2021-41691 | OS4Ed Open Source Information System Community 8.0 POST Request /TransferredOutModal.php student_id/TRANSFER{SCHOOL} sql injection
25.06.2025 06:56
A vulnerability was found in OS4Ed Open Source Information System Community 8.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /TransferredOu...
CVE-2025-6557 | Google Chrome up to 137.0.7151.103 on Windows DevTools ui layer (ID 406631 / EUVD-2025-19071)
25.06.2025 06:50
A vulnerability was found in Google Chrome on Windows. It has been classified as critical. Affected is an unknown function of the component DevTools. The manipulation leads to improper restriction of ...
CVE-2025-6555 | Google Chrome up to 137.0.7151.103 Animation use after free (ID 407328 / EUVD-2025-19073)
25.06.2025 06:50
A vulnerability was found in Google Chrome and classified as critical. This issue affects some unknown processing of the component Animation. The manipulation leads to use after free. The identificat...
CVE-2025-6556 | Google Chrome up to 137.0.7151.103 Loader access control (ID 400624 / EUVD-2025-19072)
25.06.2025 06:50
A vulnerability has been found in Google Chrome and classified as critical. This vulnerability affects unknown code of the component Loader. The manipulation leads to improper access controls. This v...
CVE-2025-6583 | SourceCodester Best Salon Management System 1.0 /view-appointment.php viewid sql injection (EUVD-2025-19077)
24.06.2025 17:46
A vulnerability, which was classified as critical, was found in SourceCodester Best Salon Management System 1.0. This affects an unknown part of the file /view-appointment.php. The manipulation of the...
CVE-2025-6582 | SourceCodester Best Salon Management System 1.0 edit-customer-detailed.php editid sql injection (EUVD-2025-19078)
24.06.2025 17:46
A vulnerability, which was classified as critical, has been found in SourceCodester Best Salon Management System 1.0. Affected by this issue is some unknown functionality of the file /edit-customer-de...
CVE-2025-6581 | SourceCodester Best Salon Management System 1.0 /add-customer.php sql injection (EUVD-2025-19076)
24.06.2025 17:46
A vulnerability classified as critical was found in SourceCodester Best Salon Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /add-customer.php. The manip...
CVE-2025-6580 | SourceCodester Best Salon Management System 1.0 Login Username sql injection (EUVD-2025-19075)
24.06.2025 17:46
A vulnerability classified as critical has been found in SourceCodester Best Salon Management System 1.0. Affected is an unknown function of the component Login. The manipulation of the argument Usern...
CVE-2025-6579 | code-projects Car Rental System 1.0 /message_admin.php Message sql injection (EUVD-2025-19069)
24.06.2025 17:41
A vulnerability was found in code-projects Car Rental System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /message_admin.php. The manipulation of the argu...
CVE-2025-6578 | code-projects Simple Online Hotel Reservation System 1.0 delete_account.php admin_id sql injection (EUVD-2025-19070)
24.06.2025 17:40
A vulnerability was found in code-projects Simple Online Hotel Reservation System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /admin/delete_account.php. ...
CVE-2025-5585 | SiteOrigin Widgets Bundle Plugin up to 1.68.5 on WordPress data-url cross site scripting
24.06.2025 17:38
A vulnerability was found in SiteOrigin Widgets Bundle Plugin up to 1.68.5 on WordPress. It has been classified as problematic. This affects an unknown part. The manipulation of the argument data-url ...
CVE-2025-3415 | Grafana up to 12.0.1 DingDing Alerting Integration URL information disclosure
24.06.2025 17:37
A vulnerability was found in Grafana up to 12.0.1 and classified as problematic. Affected by this issue is some unknown functionality of the component DingDing Alerting Integration URL. The manipulati...
CVE-2025-27828 | Mitel MiContact Center Business up to 10.0.0.4/10.1.0.5/10.2.0.4 Legacy Chat cross site scripting (EUVD-2025-19033)
24.06.2025 17:36
A vulnerability has been found in Mitel MiContact Center Business up to 10.0.0.4/10.1.0.5/10.2.0.4 and classified as problematic. Affected by this vulnerability is an unknown functionality of the comp...
CVE-2025-36537 | TeamViewer Full Client/Host MSI Rollback permission (EUVD-2025-19030)
24.06.2025 17:36
A vulnerability, which was classified as critical, was found in TeamViewer Full Client and Host. Affected is an unknown function of the component MSI Rollback. The manipulation leads to permission iss...
CVE-2025-6032 | podman Machine Init Command certificate validation (EUVD-2025-19013)
24.06.2025 17:35
A vulnerability, which was classified as problematic, has been found in podman. This issue affects some unknown processing of the component Machine Init Command Handler. The manipulation leads to impr...
CVE-2025-27827 | Mitel MiContact Center Business up to 10.2.0.3 Legacy Chat information disclosure (EUVD-2025-19009)
24.06.2025 17:34
A vulnerability classified as problematic was found in Mitel MiContact Center Business up to 10.2.0.3. This vulnerability affects unknown code of the component Legacy Chat. The manipulation leads to i...
CVE-2025-5318 | libssh sftp_handle out-of-bounds
24.06.2025 17:34
A vulnerability classified as critical has been found in libssh. This affects the function sftp_handle. The manipulation leads to out-of-bounds read. This vulnerability is uniquely identified as CVE-...
CVE-2025-6424 | Mozilla Firefox up to 139 FontFaceSet use after free (Nessus ID 240338)
24.06.2025 15:35
A vulnerability was found in Mozilla Firefox up to 139. It has been rated as critical. Affected by this issue is some unknown functionality of the component FontFaceSet. The manipulation leads to use ...
CVE-2025-6431 | Mozilla Firefox up to 139 on Android Link
24.06.2025 15:35
A vulnerability was found in Mozilla Firefox up to 139 on Android. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component Link Handler. The ma...
CVE-2025-6430 | Mozilla Firefox up to 139 HTTP Header Content-Disposition cross site scripting (Nessus ID 240336)
24.06.2025 15:35
A vulnerability was found in Mozilla Firefox up to 139. It has been classified as problematic. Affected is an unknown function of the component HTTP Header Handler. The manipulation of the argument Co...
CVE-2025-6428 | Mozilla Firefox up to 139 on Android URL querystring redirect
24.06.2025 15:34
A vulnerability was found in Mozilla Firefox up to 139 on Android and classified as problematic. This issue affects some unknown processing of the component URL Handler. The manipulation of the argume...
CVE-2025-6435 | Mozilla Firefox up to 139 File Extension (EUVD-2025-19016)
24.06.2025 15:34
A vulnerability has been found in Mozilla Firefox up to 139 and classified as problematic. This vulnerability affects unknown code of the component File Extension Handler. The manipulation leads to an...
CVE-2025-6434 | Mozilla Firefox up to 139 HTTPS-Only Feature clickjacking
24.06.2025 15:34
A vulnerability, which was classified as problematic, was found in Mozilla Firefox up to 139. This affects an unknown part of the component HTTPS-Only Feature. The manipulation leads to clickjacking. ...
CVE-2025-6433 | Mozilla Firefox up to 139 TLS certificate validation
24.06.2025 15:31
A vulnerability, which was classified as problematic, has been found in Mozilla Firefox up to 139. Affected by this issue is some unknown functionality of the component TLS Handler. The manipulation l...
CVE-2025-6432 | Mozilla Firefox up to 139 Multi-Account Container information disclosure
24.06.2025 15:31
A vulnerability classified as problematic was found in Mozilla Firefox up to 139. Affected by this vulnerability is an unknown functionality of the component Multi-Account Container Handler. The manip...
CVE-2025-6429 | Mozilla Firefox up to 139 Embed Tag (Nessus ID 240336)
24.06.2025 15:31
A vulnerability classified as problematic has been found in Mozilla Firefox up to 139. Affected is an unknown function of the component Embed Tag Handler. The manipulation leads to an unknown weakness...
CVE-2025-6427 | Mozilla Firefox up to 139 Content Security Policy connect-src ui layer (Nessus ID 240334)
24.06.2025 15:30
A vulnerability was found in Mozilla Firefox up to 139. It has been rated as problematic. This issue affects some unknown processing of the component Content Security Policy Handler. The manipulation ...
CVE-2025-6426 | Mozilla Firefox up to 139 on macOS Executable File ui layer (Nessus ID 240336)
24.06.2025 15:30
A vulnerability was found in Mozilla Firefox up to 139 on macOS. It has been declared as problematic. This vulnerability affects unknown code of the component Executable File Handler. The manipulation...
CVE-2025-6436 | Mozilla Thunderbird up to 139 memory corruption (Nessus ID 240334)
24.06.2025 15:30
A vulnerability was found in Mozilla Thunderbird up to 139. It has been classified as critical. This affects an unknown part. The manipulation leads to memory corruption. This vulnerability is unique...
CVE-2025-6436 | Mozilla Firefox up to 139 memory corruption (Nessus ID 240334)
24.06.2025 15:30
A vulnerability was found in Mozilla Firefox up to 139 and classified as critical. Affected by this issue is some unknown functionality. The manipulation leads to memory corruption. This vulnerabilit...
CVE-2025-6425 | Mozilla Firefox up to 139 WebCompat Extension information disclosure (Nessus ID 240338)
24.06.2025 15:30
A vulnerability has been found in Mozilla Firefox up to 139 and classified as problematic. Affected by this vulnerability is an unknown functionality of the component WebCompat Extension. The manipula...
CVE-2025-39205 | Hitachi Energy MicroSCADA X SYS600 up to 10.6 TLS Protocol certificate validation (EUVD-2025-19012)
24.06.2025 15:29
A vulnerability, which was classified as problematic, was found in Hitachi Energy MicroSCADA X SYS600 up to 10.6. Affected is an unknown function of the component TLS Protocol Handler. The manipulatio...
CVE-2025-39204 | Hitachi Energy MicroSCADA X SYS600 up to 10.6 Web Interface information disclosure (EUVD-2025-19015)
24.06.2025 14:27
A vulnerability, which was classified as problematic, has been found in Hitachi Energy MicroSCADA X SYS600 up to 10.6. This issue affects some unknown processing of the component Web Interface. The ma...
CVE-2025-39201 | Hitachi Energy MicroSCADA X SYS600 up to 10.6 Notify Service default permission (EUVD-2025-19004)
24.06.2025 14:27
A vulnerability classified as critical was found in Hitachi Energy MicroSCADA X SYS600 up to 10.6. This vulnerability affects unknown code of the component Notify Service. The manipulation leads to in...
CVE-2025-1718 | Hitachi Energy Relion 670/650 and SAM600-IO up to 2.2.6.3 unusual condition
24.06.2025 14:26
A vulnerability classified as critical has been found in Hitachi Energy Relion 670 and 650 and SAM600-IO up to 2.2.6.3. This affects an unknown part. The manipulation leads to improper check for unusu...
CVE-2025-3092 | Helmholz/MB connect line myREX24/myREX24.virtual/mbCONNECT24/mymbCONNECT24 observable response discrepancy (VDE-2025-035 / EUVD-2025-19011)
24.06.2025 14:26
A vulnerability was found in Helmholz/MB connect line myREX24, myREX24.virtual, mbCONNECT24 and mymbCONNECT24. It has been rated as problematic. Affected by this issue is some unknown functionality. T...
CVE-2025-3091 | MB connect line/Helmholz mbCONNECT24/mymbCONNECT24/myREX24/myREX24.virtual prior 2.16.5 authorization (VDE-2025-035 / EUVD-2025-19010)
24.06.2025 14:25
A vulnerability was found in MB connect line/Helmholz mbCONNECT24, mymbCONNECT24, myREX24 and myREX24.virtual. It has been declared as critical. Affected by this vulnerability is an unknown functional...
CVE-2025-39202 | Hitachi Energy MicroSCADA X SYS600 up to 10.6 Monitor Pro Interface privileges management (EUVD-2025-19003)
24.06.2025 14:25
A vulnerability was found in Hitachi Energy MicroSCADA X SYS600 up to 10.6. It has been classified as critical. Affected is an unknown function of the component Monitor Pro Interface. The manipulation...
CVE-2025-2403 | Hitachi Energy Relion 670/650 and SAM600-IO 2.2.2.6/2.2.3.7/2.2.4.4/2.2.5.6/2.2.6.2 Line Distance Communication Module allocation of resources (EUVD-2025-19005)
24.06.2025 14:25
A vulnerability was found in Hitachi Energy Relion 670 and 650 and SAM600-IO 2.2.2.6/2.2.3.7/2.2.4.4/2.2.5.6/2.2.6.2 and classified as critical. This issue affects some unknown processing of the compo...
CVE-2025-39203 | Hitachi Energy MicroSCADA X SYS600 up to 10.6 IEC 61850 integrity check (EUVD-2025-19002)
24.06.2025 14:24
A vulnerability has been found in Hitachi Energy MicroSCADA X SYS600 up to 10.6 and classified as critical. This vulnerability affects unknown code of the component IEC 61850. The manipulation leads t...
CVE-2025-3090 | MB connect line/Helmholz mbCONNECT24/mymbCONNECT24/myREX24/myREX24.virtual up to 2.17.x missing authentication (VDE-2025-034)
24.06.2025 10:25
A vulnerability, which was classified as critical, was found in MB connect line/Helmholz mbCONNECT24, mymbCONNECT24, myREX24 and myREX24.virtual up to 2.17.x. This affects an unknown part. The manipul...
CVE-2025-6570 | PHPGurukul Hospital Management System 4.0 /doctor/search.php searchdata sql injection (EUVD-2025-19050)
24.06.2025 10:19
A vulnerability, which was classified as critical, has been found in PHPGurukul Hospital Management System 4.0. Affected by this issue is some unknown functionality of the file /doctor/search.php. The...
CVE-2025-6569 | code-projects School Fees Payment System 1.0 /student.php sname/contact/about/emailid/transcation_remark cross site scripting (EUVD-2025-19047)
24.06.2025 10:16
A vulnerability classified as problematic was found in code-projects School Fees Payment System 1.0. Affected by this vulnerability is an unknown functionality of the file /student.php. The manipulati...
CVE-2025-6568 | TOTOLINK EX1200T 4.1.2cu.5232_B20210713 HTTP POST Request /boafrm/formIpv6Setup submit-url buffer overflow (EUVD-2025-19031)
24.06.2025 10:15
A vulnerability classified as critical has been found in TOTOLINK EX1200T 4.1.2cu.5232_B20210713. Affected is an unknown function of the file /boafrm/formIpv6Setup of the component HTTP POST Request H...
RSS Feed eintragen

Machen Sie Ihren RSS-Feed bekannt und erhöhen Sie die Sichtbarkeit Ihrer Website!

RSS-Feed eintragen
RSS-Reader
RSS-Reader finden Sie unter unsere Übersicht: RSS-Reader
Die neuesten Feeds
Die Top-Feeds
meist gelesenen Feeds