CVE Feed

    Dashboard / CVE

    4.8
    Medium

    CVE-2025-2979

    Last Modified: 9 Oct 2025

    A vulnerability classified as problematic has been found in WCMS 11. This affects an unknown part of the file /index.php?anonymous/setregister of the component Registration. The manipulation of the argument Username leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 31 Mar 2025
    6.1
    Medium

    CVE-2025-0613

    Last Modified: 13 May 2025

    The Photo Gallery by 10Web WordPress plugin before 1.8.34 does not sanitised and escaped comment added on images by unauthenticated users, leading to an Unauthenticated Stored-XSS attack when comments are displayed

    Published: 31 Mar 2025
    5.3
    Medium

    CVE-2025-2978

    Last Modified: 9 Oct 2025

    A vulnerability was found in WCMS 11. It has been rated as critical. Affected by this issue is some unknown functionality of the file /index.php?articleadmin/upload/?&CKEditor=container&CKEditorFuncNum=1 of the component Article Publishing Page. The manipulation of the argument Upload leads to unrestricted upload. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 31 Mar 2025
    5.1
    Medium

    CVE-2025-2977

    Last Modified: 4 Nov 2025

    A vulnerability was found in GFI KerioConnect 10.0.6. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component PDF File Handler. The manipulation leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 31 Mar 2025
    7.5
    High

    CVE-2025-31103

    Last Modified: 13 May 2025

    Untrusted data deserialization vulnerability exists in a-blog cms. Processing a specially crafted request may store arbitrary files on the server where the product is running. This can be leveraged to execute an arbitrary script on the server.

    Published: 31 Mar 2025
    9.8
    Critical

    CVE-2025-26689

    Last Modified: 15 Apr 2026

    Direct request ('Forced Browsing') issue exists in CHOCO TEI WATCHER mini (IB-MCT001) all versions. If a remote attacker sends a specially crafted HTTP request to the product, the product data may be obtained or deleted, and/or the product settings may be altered.

    Published: 31 Mar 2025
    9.8
    Critical

    CVE-2025-25211

    Last Modified: 15 Apr 2026

    Weak password requirements issue exists in CHOCO TEI WATCHER mini (IB-MCT001) all versions. If this issue is exploited, a brute-force attack may allow an attacker unauthorized access and login.

    Published: 31 Mar 2025
    4.6
    Medium

    CVE-2025-24852

    Last Modified: 15 Apr 2026

    Storing passwords in a recoverable format issue exists in CHOCO TEI WATCHER mini (IB-MCT001) all versions. If this issue is exploited, an attacker who can access the microSD card used on the product may obtain the product login password.

    Published: 31 Mar 2025
    7.5
    High

    CVE-2025-24517

    Last Modified: 15 Apr 2026

    Use of client-side authentication issue exists in CHOCO TEI WATCHER mini (IB-MCT001) all versions. If this issue is exploited, a remote attacker may obtain the product login password without authentication.

    Published: 31 Mar 2025
    5.1
    Medium

    CVE-2025-2976

    Last Modified: 4 Nov 2025

    A vulnerability was found in GFI KerioConnect 10.0.6. It has been classified as problematic. Affected is an unknown function of the component File Upload. The manipulation leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 31 Mar 2025
    5.1
    Medium

    CVE-2025-2975

    Last Modified: 4 Nov 2025

    A vulnerability was found in GFI KerioConnect 10.0.6 and classified as problematic. This issue affects some unknown processing of the file Settings/Email/Signature/EditHtmlSource of the component Signature Handler. The manipulation leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 31 Mar 2025
    8.3
    High

    CVE-2025-3014

    Last Modified: 15 Apr 2026

    Insecure Direct Object References (IDOR) in access control in Tracking 2.1.4 on NightWolf Penetration Testing allows an attacker to access via manipulating request parameters or object references.

    Published: 31 Mar 2025
    8.3
    High

    CVE-2025-3013

    Last Modified: 15 Apr 2026

    Insecure Direct Object References (IDOR) in access control in Customer Portal before 2.1.4 on NightWolf Penetration Testing allows an attacker to access via manipulating request parameters or object references.

    Published: 31 Mar 2025
    5.1
    Medium

    CVE-2025-2974

    Last Modified: 2 Oct 2025

    A vulnerability has been found in CodeCanyon Perfex CRM up to 3.2.1 and classified as problematic. This vulnerability affects unknown code of the file /contract of the component Contracts. The manipulation of the argument content leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

    Published: 31 Mar 2025
    9.8
    Critical

    CVE-2025-3011

    Last Modified: 15 Apr 2026

    SOOP-CLM from PiExtract has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary SQL commands to read, modify, and delete database contents.

    Published: 31 Mar 2025
    5.3
    Medium

    CVE-2025-2973

    Last Modified: 10 Apr 2025

    A vulnerability, which was classified as critical, was found in code-projects College Management System 1.0. This affects an unknown part of the file /Admin/student.php. The manipulation of the argument profile_image leads to unrestricted upload. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used.

    Published: 31 Mar 2025
    —
    Unknown

    CVE-2025-2972

    Last Modified: 4 Apr 2025

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

    Published: 31 Mar 2025
    —
    Unknown

    CVE-2025-2971

    Last Modified: 7 Apr 2025

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

    Published: 31 Mar 2025
    —
    Unknown

    CVE-2025-2970

    Last Modified: 4 Apr 2025

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

    Published: 31 Mar 2025
    —
    Unknown

    CVE-2025-2969

    Last Modified: 4 Apr 2025

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

    Published: 31 Mar 2025
    9.4
    Critical

    CVE-2025-1268

    Last Modified: 15 Apr 2026

    Out-of-bounds vulnerability in EMF Recode processing of Generic Plus PCL6 Printer Driver / Generic Plus UFR II Printer Driver / Generic Plus LIPS4 Printer Driver / Generic Plus LIPSLX Printer Driver / Generic Plus PS Printer Driver / Generic FAX Printer Driver / UFRII LT Printer Driver / CARPS2 Printer Driver / PDF Driver / LIPS4 Printer Driver / LIPSLX Printer Driver / UFR II Printer Driver / PS Printer Driver / PCL6 Printer Driver

    Published: 31 Mar 2025
    —
    Unknown

    CVE-2025-2968

    Last Modified: 4 Apr 2025

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

    Published: 31 Mar 2025
    —
    Unknown

    CVE-2025-2967

    Last Modified: 4 Apr 2025

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

    Published: 31 Mar 2025
    9
    Critical

    CVE-2025-30095

    Last Modified: 15 Apr 2026

    VyOS 1.3 through 1.5 (fixed in 1.4.2) or any Debian-based system using dropbear in combination with live-build has the same Dropbear private host keys across different installations. Thus, an attacker can conduct active man-in-the-middle attacks against SSH connections if Dropbear is enabled as the SSH daemon. I n VyOS, this is not the default configuration for the system SSH daemon, but is for the console service. To mitigate this, one can run "rm -f /etc/dropbear/*key*" and/or "rm -f /etc/dropbear-initramfs/*key*" and then dropbearkey -t rsa -s 4096 -f /etc/dropbear_rsa_host_key and reload the service or reboot the system before using Dropbear as the SSH daemon (this clears out all keys mistakenly built into the release image) or update to the latest version of VyOS 1.4 or 1.5. Note that this vulnerability is not unique to VyOS and may appear in any Debian-based Linux distribution that uses Dropbear in combination with live-build, which has a safeguard against this behavior in OpenSSH but no equivalent one for Dropbear.

    Published: 31 Mar 2025
    9.6
    Critical

    CVE-2025-29266

    Last Modified: 15 Apr 2026

    Unraid 7.0.0 before 7.0.1 allows remote users to access the Unraid WebGUI and web console as root without authentication if a container is running in Host networking mode with Use Tailscale enabled.

    Published: 31 Mar 2025
    9.8
    Critical

    CVE-2024-54806

    Last Modified: 17 Apr 2025

    Netgear WNR854T 1.5.2 (North America) is vulnerable to Arbitrary command execution in cmd.cgi which allows for the execution of system commands via the web interface.

    Published: 31 Mar 2025
    9.8
    Critical

    CVE-2025-22939

    Last Modified: 18 Aug 2025

    A command injection vulnerability in the telnet service of Adtran 411 ONT L80.00.0011.M2 allows attackers to escalate privileges to root and execute arbitrary commands.

    Published: 31 Mar 2025
    9.8
    Critical

    CVE-2024-54802

    Last Modified: 22 Apr 2025

    In Netgear WNR854T 1.5.2 (North America), the UPNP service (/usr/sbin/upnp) is vulnerable to stack-based buffer overflow in the M-SEARCH Host header.

    Published: 31 Mar 2025
    9.8
    Critical

    CVE-2024-54803

    Last Modified: 22 Apr 2025

    Netgear WNR854T 1.5.2 (North America) is vulnerable to Command Injection. An attacker can send a specially crafted request to post.cgi, updating the nvram parameter pppoe_peer_mac and forcing a reboot. This will result in command injection.

    Published: 31 Mar 2025
    9.8
    Critical

    CVE-2024-54804

    Last Modified: 17 Apr 2025

    Netgear WNR854T 1.5.2 (North America) is vulnerable to Command Injection. An attacker can send a specially crafted request to post.cgi, updating the nvram parameter wan_hostname and forcing a reboot. This will result in command injection.

    Published: 31 Mar 2025
    9.8
    Critical

    CVE-2024-54805

    Last Modified: 17 Apr 2025

    Netgear WNR854T 1.5.2 (North America) is vulnerable to Command Injection. An attacker can send a specially crafted request to post.cgi, updating the nvram parameter get_email. After which, they can visit the send_log.cgi endpoint which uses the parameter in a system call to achieve command execution.

    Published: 31 Mar 2025
    9.8
    Critical

    CVE-2024-54807

    Last Modified: 17 Apr 2025

    In Netgear WNR854T 1.5.2 (North America), the UPNP service is vulnerable to command injection in the function addmap_exec which parses the NewInternalClient parameter of the AddPortMapping SOAPAction into a system call without sanitation. An attacker can send a specially crafted SOAPAction request for AddPortMapping via the router's WANIPConn1 service to achieve arbitrary command execution.

    Published: 31 Mar 2025
    9.8
    Critical

    CVE-2024-54808

    Last Modified: 17 Apr 2025

    Netgear WNR854T 1.5.2 (North America) contains a stack-based buffer overflow vulnerability in the SetDefaultConnectionService function due to an unconstrained use of sscanf. The vulnerability allows for control of the program counter and can be utilized to achieve arbitrary code execution.

    Published: 31 Mar 2025
    9.8
    Critical

    CVE-2024-54809

    Last Modified: 17 Apr 2025

    Netgear Inc WNR854T 1.5.2 (North America) contains a stack-based buffer overflow vulnerability in the parse_st_header function due to use of a request header parameter in a strncpy where size is determined based on the input specified. By sending a specially crafted packet, an attacker can take control of the program counter and hijack control flow of the program to execute arbitrary system commands.

    Published: 31 Mar 2025
    5.4
    Medium

    CVE-2024-55093

    Last Modified: 23 Apr 2025

    phpIPAM through 1.7.3 has a reflected Cross-Site Scripting (XSS) vulnerability in the install scripts.

    Published: 31 Mar 2025
    7.8
    High

    CVE-2025-21893

    Last Modified: 4 May 2025

    In the Linux kernel, the following vulnerability has been resolved: keys: Fix UAF in key_put() Once a key's reference count has been reduced to 0, the garbage collector thread may destroy it at any time and so key_put() is not allowed to touch the key after that point. The most key_put() is normally allowed to do is to touch key_gc_work as that's a static global variable. However, in an effort to speed up the reclamation of quota, this is now done in key_put() once the key's usage is reduced to 0 - but now the code is looking at the key after the deadline, which is forbidden. Fix this by using a flag to indicate that a key can be gc'd now rather than looking at the key's refcount in the garbage collector.

    Published: 31 Mar 2025
    9.8
    Critical

    CVE-2025-22937

    Last Modified: 18 Aug 2025

    An issue in Adtran 411 ONT vL80.00.0011.M2 allows attackers to escalate privileges via unspecified vectors.

    Published: 31 Mar 2025
    9.8
    Critical

    CVE-2025-22938

    Last Modified: 18 Aug 2025

    Adtran 411 ONT L80.00.0011.M2 was discovered to contain weak default passwords.

    Published: 31 Mar 2025
    9.1
    Critical

    CVE-2025-22940

    Last Modified: 18 Aug 2025

    Incorrect access control in Adtran 411 ONT L80.00.0011.M2 allows unauthorized attackers to arbitrarily set the admin password.

    Published: 31 Mar 2025
    9.8
    Critical

    CVE-2025-22941

    Last Modified: 18 Aug 2025

    A command injection vulnerability in the web interface of Adtran 411 ONT L80.00.0011.M2 allows attackers to escalate privileges to root and execute arbitrary commands.

    Published: 31 Mar 2025
    —
    Unknown

    CVE-2025-2966

    Last Modified: 4 Apr 2025

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

    Published: 30 Mar 2025
    —
    Unknown

    CVE-2025-2965

    Last Modified: 4 Apr 2025

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

    Published: 30 Mar 2025
    —
    Unknown

    CVE-2025-2964

    Last Modified: 4 Apr 2025

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

    Published: 30 Mar 2025
    —
    Unknown

    CVE-2025-2963

    Last Modified: 3 Apr 2025

    This CVE ID has been rejected or withdrawn by its CVE Numbering Authority.

    Published: 30 Mar 2025
    5.3
    Medium

    CVE-2025-2961

    Last Modified: 15 Apr 2026

    A vulnerability classified as problematic was found in opensolon up to 3.1.0. This vulnerability affects the function render_mav of the file /aa of the component org.noear.solon.core.handle.RenderManager. The manipulation of the argument template with the input ../org/example/HelloApp.class leads to path traversal: '../filedir'. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

    Published: 30 Mar 2025
    9.8
    Critical

    CVE-2024-13804

    Last Modified: 15 Apr 2026

    Unauthenticated RCE in HPE Insight Cluster Management Utility

    Published: 30 Mar 2025
    7.1
    High

    CVE-2025-2960

    Last Modified: 15 Apr 2025

    A vulnerability classified as problematic has been found in TRENDnet TEW-637AP and TEW-638APB 1.2.7/1.3.0.106. This affects the function sub_41DED0 of the file /bin/goahead of the component HTTP Request Handler. The manipulation leads to null pointer dereference. Access to the local network is required for this attack. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 30 Mar 2025
    7.1
    High

    CVE-2025-2959

    Last Modified: 15 Apr 2025

    A vulnerability was found in TRENDnet TEW-410APB 1.3.06b. It has been rated as problematic. Affected by this issue is the function sub_4019A0 of the file /usr/sbin/httpd of the component HTTP Request Handler. The manipulation leads to null pointer dereference. The attack needs to be initiated within the local network. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 30 Mar 2025
    7.1
    High

    CVE-2025-2958

    Last Modified: 18 Jul 2025

    A vulnerability was found in TRENDnet TEW-818DRU 1.0.14.6. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /usr/sbin/httpd of the component HTTP Request Handler. The manipulation leads to denial of service. The attack needs to be done within the local network. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 30 Mar 2025
    7.1
    High

    CVE-2025-2957

    Last Modified: 15 Apr 2026

    A vulnerability was found in TRENDnet TEW-411BRP+ 2.07. It has been classified as problematic. Affected is the function sub_401DB0 of the file /usr/sbin/httpd of the component HTTP Request Handler. The manipulation leads to null pointer dereference. The attack can only be initiated within the local network. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

    Published: 30 Mar 2025