Exact snapshot results

353,537 CVE records

CVE ID descending · no relevance ranking

CVE-2025-9599

A weakness has been identified in itsourcecode Apartment Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /setting/month_setup.php. Executing manipulation of the argument txtMonthName can lead to sql injection. The attack can be launched remotely. The exploit has been made available to the public and could be exploited.

PUBLISHED
Vendor
itsourcecode
Product
Apartment Management System
Provider severity
HIGH, MEDIUM
Conflicts
2

CVE-2025-9598

A security flaw has been discovered in itsourcecode Apartment Management System 1.0. Affected is an unknown function of the file /setting/year_setup.php. Performing manipulation of the argument txtXYear results in sql injection. The attack can be initiated remotely. The exploit has been released to the public and may be exploited.

PUBLISHED
Vendor
itsourcecode
Product
Apartment Management System
Provider severity
HIGH, MEDIUM
Conflicts
2

CVE-2025-9597

A vulnerability was identified in itsourcecode Apartment Management System 1.0. This impacts an unknown function of the file /o_dashboard/rented_all_info.php. Such manipulation of the argument uid leads to sql injection. It is possible to launch the attack remotely. The exploit is publicly available and might be used.

PUBLISHED
Vendor
itsourcecode
Product
Apartment Management System
Provider severity
HIGH, MEDIUM
Conflicts
2

CVE-2025-9596

A vulnerability was determined in itsourcecode Sports Management System 1.0. This affects an unknown function of the file /login.php. This manipulation of the argument User causes sql injection. It is possible to initiate the attack remotely. The exploit has been publicly disclosed and may be utilized.

PUBLISHED
Vendor
itsourcecode
Product
Sports Management System
Provider severity
HIGH, MEDIUM
Conflicts
2

CVE-2025-9595

A vulnerability was found in code-projects Student Information Management System 1.0. The impacted element is an unknown function of the file /login.php. The manipulation of the argument uname results in cross site scripting. The attack may be performed from a remote location. The exploit has been made public and could be used.

PUBLISHED
Vendor
code-projects
Product
Student Information Management System
Provider severity
MEDIUM
Conflicts
2

CVE-2025-9594

A vulnerability has been found in itsourcecode Apartment Management System 1.0. The affected element is an unknown function of the file /report/complain_info.php. The manipulation of the argument vid leads to sql injection. The attack is possible to be carried out remotely. The exploit has been disclosed to the public and may be used.

PUBLISHED
Vendor
itsourcecode
Product
Apartment Management System
Provider severity
HIGH, MEDIUM
Conflicts
2

CVE-2025-9593

A flaw has been found in itsourcecode Apartment Management System 1.0. Impacted is an unknown function of the file /report/unit_status_info.php. Executing manipulation of the argument usid can lead to sql injection. The attack can be executed remotely. The exploit has been published and may be used.

PUBLISHED
Vendor
itsourcecode
Product
Apartment Management System
Provider severity
HIGH, MEDIUM
Conflicts
2

CVE-2025-9592

A vulnerability was detected in itsourcecode Apartment Management System 1.0. This issue affects some unknown processing of the file /report/bill_info.php. Performing manipulation of the argument vid results in sql injection. Remote exploitation of the attack is possible. The exploit is now public and may be used.

PUBLISHED
Vendor
itsourcecode
Product
Apartment Management System
Provider severity
HIGH, MEDIUM
Conflicts
2

CVE-2025-9591

A security vulnerability has been detected in ZrLog up to 3.1.5. This vulnerability affects unknown code of the file /api/admin/template/config of the component Theme Configuration Form. Such manipulation of the argument footerLink leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

PUBLISHED
Vendor
n/a
Product
ZrLog
Provider severity
LOW, MEDIUM
Conflicts
2

CVE-2025-9590

A vulnerability was identified in Weaver E-Mobile Mobile Management Platform up to 20250813. Affected by this vulnerability is an unknown functionality. The manipulation of the argument gohome leads to cross site scripting. The attack can be initiated remotely. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.

PUBLISHED
Vendor
Weaver
Product
E-Mobile Mobile Management Platform
Provider severity
LOW, MEDIUM
Conflicts
2

CVE-2025-9589

A vulnerability was determined in Cudy WR1200EA 2.3.7-20250113-121810. Affected is an unknown function of the file /etc/shadow. Executing manipulation can lead to use of default password. The attack needs to be launched locally. A high complexity level is associated with this attack. The exploitability is told to be difficult. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.

PUBLISHED
Vendor
Cudy
Product
WR1200EA
Provider severity
LOW
Conflicts
1

CVE-2025-9588

Improper Neutralization of Special Elements used in an OS Command ('OS Command Injection') vulnerability in Iron Mountain Archiving Services Inc. EnVision allows Command Injection. This issue affects enVision: before 250563.

PUBLISHED
Vendor
Iron Mountain Archiving Services Inc.
Product
enVision
Provider severity
CRITICAL
Conflicts
0

CVE-2025-9587

The CTL Behance Importer Lite WordPress plugin through 1.0 does not properly sanitise and escape a parameter before using it in a SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection.

PUBLISHED
Vendor
Unknown
Product
CTL Behance Importer Lite
Provider severity
HIGH
Conflicts
0

CVE-2025-9586

A vulnerability was identified in Comfast CF-N1 2.6.0. This vulnerability affects the function wireless_device_dissoc of the file /usr/bin/webmgnt. Such manipulation of the argument mac leads to command injection. The attack may be performed from a remote location. The exploit is publicly available and might be used.

PUBLISHED
Vendor
Comfast
Product
CF-N1
Provider severity
MEDIUM
Conflicts
2

CVE-2025-9585

A vulnerability was determined in Comfast CF-N1 2.6.0. This affects the function wifilith_delete_pic_file of the file /usr/bin/webmgnt. This manipulation of the argument portal_delete_picname causes command injection. The attack is possible to be carried out remotely. The exploit has been publicly disclosed and may be utilized.

PUBLISHED
Vendor
Comfast
Product
CF-N1
Provider severity
MEDIUM
Conflicts
2

CVE-2025-9584

A vulnerability was found in Comfast CF-N1 2.6.0. Affected by this issue is the function update_interface_png of the file /usr/bin/webmgnt. The manipulation of the argument interface/display_name results in command injection. The attack can be executed remotely. The exploit has been made public and could be used.

PUBLISHED
Vendor
Comfast
Product
CF-N1
Provider severity
MEDIUM
Conflicts
2

CVE-2025-9583

A vulnerability has been found in Comfast CF-N1 2.6.0. Affected by this vulnerability is the function ping_config of the file /usr/bin/webmgnt. The manipulation leads to command injection. Remote exploitation of the attack is possible. The exploit has been disclosed to the public and may be used.

PUBLISHED
Vendor
Comfast
Product
CF-N1
Provider severity
MEDIUM
Conflicts
2

CVE-2025-9582

A flaw has been found in Comfast CF-N1 2.6.0. Affected is the function ntp_timezone of the file /usr/bin/webmgnt. Executing manipulation of the argument timestr can lead to command injection. The attack may be launched remotely. The exploit has been published and may be used.

PUBLISHED
Vendor
Comfast
Product
CF-N1
Provider severity
MEDIUM
Conflicts
2

CVE-2025-9581

A vulnerability was detected in Comfast CF-N1 2.6.0. This impacts the function multi_pppoe of the file /usr/bin/webmgnt. Performing manipulation of the argument phy_interface results in command injection. The attack may be initiated remotely. The exploit is now public and may be used.

PUBLISHED
Vendor
Comfast
Product
CF-N1
Provider severity
MEDIUM
Conflicts
2

CVE-2025-9580

A security vulnerability has been detected in LB-LINK BL-X26 1.2.8. This affects an unknown function of the file /goform/set_blacklist of the component HTTP Handler. Such manipulation of the argument mac leads to os command injection. The attack can be launched remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

PUBLISHED
Vendor
LB-LINK
Product
BL-X26
Provider severity
MEDIUM
Conflicts
2

CVE-2025-9579

A weakness has been identified in LB-LINK BL-X26 1.2.8. The impacted element is an unknown function of the file /goform/set_hidessid_cfg of the component HTTP Handler. This manipulation of the argument enable causes os command injection. The attack can be initiated remotely. The exploit has been made available to the public and could be exploited. The vendor was contacted early about this disclosure but did not respond in any way.

PUBLISHED
Vendor
LB-LINK
Product
BL-X26
Provider severity
MEDIUM
Conflicts
2

CVE-2025-9578

Local privilege escalation due to insecure folder permissions. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 40734.

PUBLISHED
Vendor
Acronis
Product
Acronis Cyber Protect Cloud Agent
Provider severity
HIGH
Conflicts
0

CVE-2025-9577

A security flaw has been discovered in TOTOLINK X2000R up to 2.0.0. The affected element is an unknown function of the file /etc/shadow.sample of the component Administrative Interface. The manipulation results in use of default credentials. Attacking locally is a requirement. Attacks of this nature are highly complex. The exploitability is described as difficult. The exploit has been released to the public and may be exploited.

PUBLISHED
Vendor
TOTOLINK
Product
X2000R
Provider severity
LOW
Conflicts
1

CVE-2025-9576

A vulnerability was identified in seeedstudio ReSpeaker LinkIt7688. Impacted is an unknown function of the file /etc/shadow of the component Administrative Interface. The manipulation leads to use of default credentials. An attack has to be approached locally. A high degree of complexity is needed for the attack. The exploitability is considered difficult. The exploit is publicly available and might be used. The vendor was contacted early about this disclosure but did not respond in any way.

PUBLISHED
Vendor
seeedstudio
Product
ReSpeaker
Provider severity
LOW
Conflicts
1

CVE-2025-9575

A vulnerability was determined in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 1.0.013.001/1.0.04.001/1.0.04.002/1.1.05.003/1.2.07.001. This issue affects the function cgiMain of the file /cgi-bin/upload.cgi. Executing manipulation of the argument filename can lead to os command injection. The attack may be performed from a remote location. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way

PUBLISHED
Vendor
Linksys, Linksys, Linksys, Linksys, Linksys, Linksys
Product
RE9000, RE6350, RE6500, RE6250, RE7000, RE6300
Provider severity
MEDIUM
Conflicts
3

CVE-2025-9574

Missing Authentication for Critical Function vulnerability in ABB ALS-mini-s4 IP, ABB ALS-mini-s8 IP.This issue affects .  All firmware versions with the Serial Number from 2000 to 5166

PUBLISHED
Vendor
ABB, ABB
Product
ALS-mini-s4 IP, ALS-mini-s8 IP
Provider severity
CRITICAL
Conflicts
2

CVE-2025-9573

The ns_backup extension through 13.0.2 for TYPO3 allows command injection.

PUBLISHED
Vendor
TYPO3
Product
Extension "TYPO3 Backup Plus"
Provider severity
HIGH
Conflicts
0

CVE-2025-9572

n authorization flaw in Foreman's GraphQL API allows low-privileged users to access metadata beyond their assigned permissions. Unlike the REST API, which correctly enforces access controls, the GraphQL endpoint does not apply proper filtering, leading to an authorization bypass.

PUBLISHED
Vendor
Red Hat, Red Hat, The Foreman, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat
Product
Red Hat Satellite 6.18 for RHEL 9, Red Hat Satellite 6.16 for RHEL 8, Foreman, Red Hat Satellite 6.18 for RHEL 9, Red Hat Satellite 6.16 for RHEL 9, Red Hat Satellite 6.18 for RHEL 9, Red Hat Satellite 6.15 for RHEL 8, Red Hat Satellite 6.17 for RHEL 9, Red Hat Satellite 6.16 for RHEL 8, Red Hat Satellite 6.16 for RHEL 9, Red Hat Satellite 6.15 for RHEL 8
Provider severity
MEDIUM
Conflicts
1

CVE-2025-9571

A remote code execution (RCE) vulnerability exists in Google Cloud Data Fusion. A user with permissions to upload artifacts to a Data Fusion instance can execute arbitrary code within the core AppFabric component. This could allow the attacker to gain control over the Data Fusion instance, potentially leading to unauthorized access to sensitive data, modification of data pipelines, and exploration of the underlying infrastructure. The following CDAP versions include the necessary update to pro

PUBLISHED
Vendor
Google Cloud
Product
Cloud Data Fusion
Provider severity
HIGH
Conflicts
0

CVE-2025-9570

The eHRD CTMS developed by Sunnet has an Arbitrary File Reading vulnerability, allowing remote attackers with administrator privileges to exploit Relative Path Traversal to download arbitrary system files.

PUBLISHED
Vendor
Sunnet
Product
eHRD CTMS
Provider severity
MEDIUM
Conflicts
1

CVE-2025-9569

The eHRD developed by Sunnet has a Reflected Cross-site Scripting vulnerability, allowing unauthenticated remote attackers to execute arbitrary JavaScript codes in user's browser through phishing attacks.

PUBLISHED
Vendor
Sunnet
Product
eHRD CTMS
Provider severity
MEDIUM
Conflicts
1

CVE-2025-9568

The eHRD developed by Sunnet has a Reflected Cross-site Scripting vulnerability, allowing unauthenticated remote attackers to execute arbitrary JavaScript codes in user's browser through phishing attacks.

PUBLISHED
Vendor
Sunnet
Product
eHRD CTMS
Provider severity
MEDIUM
Conflicts
1

CVE-2025-9567

The eHRD developed by Sunnet has a Reflected Cross-site Scripting vulnerability, allowing unauthenticated remote attackers to execute arbitrary JavaScript codes in user's browser through phishing attacks.

PUBLISHED
Vendor
Sunnet
Product
eHRD CTMS
Provider severity
MEDIUM
Conflicts
1

CVE-2025-9566

There's a vulnerability in podman where an attacker may use the kube play command to overwrite host files when the kube file container a Secrete or a ConfigMap volume mount and such volume contains a symbolic link to a host file path. In a successful attack, the attacker can only control the target file to be overwritten but not the content to be written into the file. Binary-Affected: podman Upstream-version-introduced: v4.0.0 Upstream-version-fixed: v5.6.1

PUBLISHED
Vendor
Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat, Red Hat
Product
Red Hat Hardened Images, Red Hat OpenShift Container Platform 4.16, Red Hat OpenShift Container Platform 4.18, Red Hat OpenShift Container Platform 4.20, Red Hat OpenShift Container Platform 4.20, Red Hat OpenShift Container Platform 4.16, Red Hat Enterprise Linux 9.4 Extended Update Support, Red Hat OpenShift Container Platform 4.14, Red Hat OpenShift Container Platform 4.18, Red Hat Enterprise Linux 9, Red Hat OpenShift Container Platform 4.12, Red Hat OpenShift Container Platform 4.14, Red Hat OpenShift Container Platform 4.19, Red Hat OpenShift Container Platform 4.18, Red Hat OpenShift Container Platform 4.19, Red Hat OpenShift Container Platform 4.15, Red Hat Enterprise Linux 9.2 Update Services for SAP Solutions, Red Hat OpenShift Container Platform 4.14, Red Hat OpenShift Container Platform 4.17, Red Hat OpenShift Container Platform 4.15, Red Hat OpenShift Container Platform 4.15, Red Hat OpenShift Container Platform 4.19, Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support, Red Hat OpenShift Container Platform 4.16, Red Hat OpenShift Container Platform 4.12, Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions, Red Hat OpenShift Container Platform 4.13, Red Hat Enterprise Linux 8, Red Hat Enterprise Linux 9, Red Hat OpenShift Container Platform 4, Red Hat Enterprise Linux 8.6 Telecommunications Update Service, Red Hat OpenShift Container Platform 4.14, Red Hat OpenShift Container Platform 4.18, Red Hat OpenShift Container Platform 4.12, Red Hat Enterprise Linux 8.8 Update Services for SAP Solutions, Red Hat OpenShift Dev Spaces (RHOSDS) 3.24, Red Hat OpenShift Container Platform 4.12, Red Hat Enterprise Linux 10, Red Hat Enterprise Linux 8.8 Telecommunications Update Service, Red Hat OpenShift Container Platform 4.18, Red Hat OpenShift Container Platform 4.19, Red Hat OpenShift Dev Spaces (RHOSDS) 3.24, Red Hat OpenShift Container Platform 4.18, Red Hat Enterprise Linux 9, Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions, Red Hat Enterprise Linux 10, Red Hat OpenShift Container Platform 4.18, Red Hat OpenShift Container Platform 4.19
Provider severity
HIGH
Conflicts
1

CVE-2025-9565

The Blocksy Companion plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's blocksy_newsletter_subscribe shortcode in all versions up to, and including, 2.1.10 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

PUBLISHED
Vendor
creativethemeshq
Product
Blocksy Companion
Provider severity
MEDIUM
Conflicts
0

CVE-2025-9562

The Redirection for Contact Form 7 plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's qs_date shortcode in all versions up to, and including, 3.2.6 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

PUBLISHED
Vendor
themeisle
Product
Redirection for Contact Form 7
Provider severity
MEDIUM
Conflicts
0

CVE-2025-9561

The AP Background plugin for WordPress is vulnerable to arbitrary file uploads due to missing authorization and insufficient file validation within the advParallaxBackAdminSaveSlider() handler in versions 3.8.1 to 3.8.2. This makes it possible for authenticated attackers, with Subscriber-level access and above, to upload arbitrary files on the affected site's server which may make remote code execution possible.

PUBLISHED
Vendor
hovanesvn
Product
AP Background
Provider severity
HIGH
Conflicts
0

CVE-2025-9560

The Colibri Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's colibri_newsletter shortcode in all versions up to, and including, 1.0.334 due to insufficient input sanitization and output escaping on user supplied attributes. This makes it possible for authenticated attackers, with contributor-level access and above, to inject arbitrary web scripts in pages that will execute whenever a user accesses an injected page.

PUBLISHED
Vendor
extendthemes
Product
Colibri Page Builder
Provider severity
MEDIUM
Conflicts
0

CVE-2025-9559

Pega Platform versions 8.7.5 to Infinity 24.2.2 are affected by a Insecure Direct Object Reference issue in a user interface component that can only be used to read data.

PUBLISHED
Vendor
Pegasystems
Product
Pega Infinity
Provider severity
MEDIUM
Conflicts
0

CVE-2025-9558

There is a potential OOB Write vulnerability in the gen_prov_start function in pb_adv.c. The full length of the received data is copied into the link.rx.buf receiver buffer without any validation on the data size.

PUBLISHED
Vendor
zephyrproject-rtos
Product
Zephyr
Provider severity
HIGH
Conflicts
0

CVE-2025-9557

‭An out-of-bound write can lead to an arbitrary code execution. Even on devices with some form of memory protection, this can still lead to‬ ‭a crash and a resultant denial of service.‬

PUBLISHED
Vendor
zephyrproject-rtos
Product
Zephyr
Provider severity
HIGH
Conflicts
0

CVE-2025-9556

Langchaingo supports the use of jinja2 syntax when parsing prompts, which is in turn parsed using the gonja library v1.5.3. Gonja supports include and extends syntax to read files, which leads to a server side template injection vulnerability within langchaingo, allowing an attacker to insert a statement into a prompt to read the "etc/passwd" file.

PUBLISHED
Vendor
Langchaingo
Product
Langchaingo
Provider severity
CRITICAL
Conflicts
0

CVE-2025-9554

Vulnerability in Drupal Owl Carousel 2.This issue affects Owl Carousel 2: *.*.

PUBLISHED
Vendor
Drupal
Product
Owl Carousel 2
Provider severity
MEDIUM
Conflicts
0

CVE-2025-9553

Vulnerability in Drupal API Key manager.This issue affects API Key manager: *.*.

PUBLISHED
Vendor
Drupal
Product
API Key manager
Provider severity
MEDIUM
Conflicts
0

CVE-2025-9552

Vulnerability in Drupal Synchronize composer.Json With Contrib Modules.This issue affects Synchronize composer.Json With Contrib Modules: *.*.

PUBLISHED
Vendor
Drupal
Product
Synchronize composer.json With Contrib Modules
Provider severity
MEDIUM
Conflicts
0

CVE-2025-9551

Improper Restriction of Excessive Authentication Attempts vulnerability in Drupal Protected Pages allows Brute Force.This issue affects Protected Pages: from 0.0.0 before 1.8.0, from 7.X-1.0 before 7.X-2.5.

PUBLISHED
Vendor
Drupal
Product
Protected Pages
Provider severity
MEDIUM
Conflicts
0

CVE-2025-9550

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Drupal Facets allows Cross-Site Scripting (XSS).This issue affects Facets: from 0.0.0 before 2.0.10, from 3.0.0 before 3.0.1.

PUBLISHED
Vendor
Drupal
Product
Facets
Provider severity
MEDIUM
Conflicts
0

CVE-2025-9549

Missing Authorization vulnerability in Drupal Facets allows Forceful Browsing.This issue affects Facets: from 0.0.0 before 2.0.10, from 3.0.0 before 3.0.1.

PUBLISHED
Vendor
Drupal
Product
Facets
Provider severity
MEDIUM
Conflicts
0

CVE-2025-9548

A potential null pointer dereference vulnerability was reported in the Lenovo Power Management Driver that could allow a local authenticated user to cause a Windows blue screen error.

PUBLISHED
Vendor
Lenovo
Product
Power Management Driver
Provider severity
MEDIUM
Conflicts
1

CVE-2025-9544

The Doppler Forms WordPress plugin through 2.5.1 registers an AJAX action install_extension without verifying user capabilities or using a nonce. As a result, any authenticated user — including those with the Subscriber role — can install and activate additional Doppler Forms WordPress plugin through 2.5.1 (limited to those whitelisted by the main Doppler Forms WordPress plugin through 2.5.1).

PUBLISHED
Vendor
Unknown
Product
Doppler Forms
Provider severity
MEDIUM
Conflicts
0