Categoria: CVE

CVE-2025-20111 | Cisco NX-OS Software up to 10.5(1) Ethernet Frame insufficient granularity of access control (cisco-sa-n3kn9k-healthdos-eOqSWK4g)

A vulnerability classified as critical was found in Cisco NX-OS Software. This vulnerability affects unknown code of the component Ethernet Frame Handler. The manipulation leads to insufficient granularity of access control. This vulnerability was named CVE-2025-20111. The attack needs to be approached within the local network. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2024-46226 | HelpDeskZ up to 2.0.1 Administration Panel cross site scripting (Exploit 52068)

A vulnerability classified as problematic has been found in HelpDeskZ up to 2.0.1. This affects an unknown part of the component Administration Panel. The manipulation leads to cross site scripting. This vulnerability is uniquely identified as CVE-2024-46226. It is possible to initiate the attack remotely. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2025-25462 | PHPGurukul Land Record System 1.0 POST Request Parameter propertytype sql injection

A vulnerability was found in PHPGurukul Land Record System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the component POST Request Parameter Handler. The manipulation of the argument propertytype leads to sql injection. This vulnerability is handled as CVE-2025-25462. The attack may be launched remotely. There is no exploit...

Per saperne di più

CVE-2024-52925 | OPSWAT MetaDefender Kiosk up to 4.6.x code injection

A vulnerability was found in OPSWAT MetaDefender Kiosk up to 4.6.x and classified as critical. This issue affects some unknown processing. The manipulation leads to code injection. The identification of this vulnerability is CVE-2024-52925. It is possible to launch the attack on the physical device. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più

CVE-2025-25790 | FoxCMS 1.2.5 ZIP File LocalTemplate.php unrestricted upload

A vulnerability, which was classified as critical, was found in FoxCMS 1.2.5. This affects an unknown part of the file controllerLocalTemplate.php of the component ZIP File Handler. The manipulation leads to unrestricted upload. This vulnerability is uniquely identified as CVE-2025-25790. It is possible to initiate the attack remotely. There is no exploit...

Per saperne di più

CVE-2025-25784 | Jizhicms 2.5.4 ZIP File TemplateController.php unrestricted upload

A vulnerability, which was classified as critical, has been found in Jizhicms 2.5.4. Affected by this issue is some unknown functionality of the file cTemplateController.php of the component ZIP File Handler. The manipulation leads to unrestricted upload. This vulnerability is handled as CVE-2025-25784. The attack may be launched remotely. There is no exploit...

Per saperne di più

CVE-2025-1716 | mmaitre314 picklescan up to 0.0.20 pip.main incomplete blacklist

A vulnerability was found in mmaitre314 picklescan up to 0.0.20. It has been rated as critical. This issue affects the function pip.main. The manipulation leads to incomplete blacklist. The identification of this vulnerability is CVE-2025-1716. The attack may be initiated remotely. There is no exploit available. It is recommended to upgrade the affected...

Per saperne di più
Caricamento