Aggregator
CVE-2020-37142 | 10-Strike Network Inventory Explorer 8.54 Add Computer stack-based overflow (Exploit 48253)
3 months 1 week ago
A vulnerability was found in 10-Strike Network Inventory Explorer 8.54 and classified as critical. The impacted element is the function Add. Such manipulation of the argument Computer leads to stack-based buffer overflow.
This vulnerability is documented as CVE-2020-37142. The attack can be executed remotely. Additionally, an exploit exists.
vuldb.com
CVE-2020-37125 | Edimax EW-7438RPn Mini 1.27 POST /goform/mp os command injection (Exploit 48318)
3 months 1 week ago
A vulnerability has been found in Edimax EW-7438RPn Mini 1.27 and classified as critical. The affected element is an unknown function of the file /goform/mp of the component POST Handler. This manipulation causes os command injection.
This vulnerability is registered as CVE-2020-37125. Remote exploitation of the attack is possible. Furthermore, an exploit is available.
vuldb.com
CVE-2020-37121 | CODE::BLOCKS 16.01 M3U Playlist File stack-based overflow (Exploit 48344)
3 months 1 week ago
A vulnerability, which was classified as critical, was found in CODE::BLOCKS 16.01. Impacted is an unknown function of the component M3U Playlist File Handler. The manipulation results in stack-based buffer overflow.
This vulnerability is cataloged as CVE-2020-37121. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2020-37120 | Rubo Medical Imaging Rubo DICOM Viewer 2.0 stack-based overflow (Exploit 48351)
3 months 1 week ago
A vulnerability, which was classified as critical, has been found in Rubo Medical Imaging Rubo DICOM Viewer 2.0. This issue affects some unknown processing. The manipulation leads to stack-based buffer overflow.
This vulnerability is listed as CVE-2020-37120. The attack may be initiated remotely. In addition, an exploit is available.
vuldb.com
CVE-2020-37152 | PHP-Fusion 9.03.50 panels.php panel_content cross site scripting
3 months 1 week ago
A vulnerability classified as problematic was found in PHP-Fusion 9.03.50. This vulnerability affects unknown code of the file panels.php. Executing a manipulation of the argument panel_content can lead to cross site scripting.
This vulnerability is tracked as CVE-2020-37152. The attack can be launched remotely. No exploit exists.
vuldb.com
CVE-2020-37144 | Exagate Sysguard 6001 /kulyon.php cross-site request forgery (Exploit 48234)
3 months 1 week ago
A vulnerability classified as problematic has been found in Exagate Sysguard 6001. This affects an unknown part of the file /kulyon.php. Performing a manipulation results in cross-site request forgery.
This vulnerability is identified as CVE-2020-37144. The attack can be initiated remotely. Additionally, an exploit exists.
vuldb.com
Beast
3 months 1 week ago
You must login to view this content
cohenido
CVE-2020-37137 | PHP-Fusion 9.03.50 POST Parameter panels.php add_panel_form panel_content eval injection (Exploit 48278)
3 months 1 week ago
A vulnerability described as critical has been identified in PHP-Fusion 9.03.50. Affected by this issue is the function add_panel_form of the file panels.php of the component POST Parameter Handler. Such manipulation of the argument panel_content leads to improper neutralization of directives in dynamically evaluated code.
This vulnerability is referenced as CVE-2020-37137. It is possible to launch the attack remotely. Furthermore, an exploit is available.
vuldb.com
CVE-2020-37123 | wcchandler Pinger 1.0 ping.php ping/socket os command injection (Exploit 48323)
3 months 1 week ago
A vulnerability marked as critical has been reported in wcchandler Pinger 1.0. Affected by this vulnerability is an unknown functionality of the file ping.php. This manipulation of the argument ping/socket causes os command injection.
The identification of this vulnerability is CVE-2020-37123. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2026-25519 | OpenSlides up to 4.2.28 access control (GHSA-vv4h-8wfc-pf8c / EUVD-2026-5342)
3 months 1 week ago
A vulnerability classified as critical has been found in OpenSlides up to 4.2.28. Affected by this issue is some unknown functionality. This manipulation causes improper access controls.
This vulnerability is registered as CVE-2026-25519. Remote exploitation of the attack is possible. No exploit is available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2023-47150 | IBM Common Cryptographic Architecture up to 7.5.36 AES resource consumption (EUVD-2023-51285 / XFDB-270602)
3 months 1 week ago
A vulnerability was found in IBM Common Cryptographic Architecture up to 7.5.36. It has been classified as problematic. Affected by this vulnerability is an unknown functionality of the component AES. This manipulation causes resource consumption.
This vulnerability appears as CVE-2023-47150. The attack may be initiated remotely. There is no available exploit.
Upgrading the affected component is recommended.
vuldb.com
CVE-2026-25518 | cert-manager up to 1.18.4/1.19.2 cert-manager-controller array index (GHSA-gx3x-vq4p-mhhv / EUVD-2026-5341)
3 months 1 week ago
A vulnerability marked as problematic has been reported in cert-manager up to 1.18.4/1.19.2. This impacts an unknown function of the component cert-manager-controller. Performing a manipulation results in improper validation of array index.
This vulnerability is reported as CVE-2026-25518. The attack is possible to be carried out remotely. No exploit exists.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2024-40685 | IBM Operations Analytics up to 1.3.8.3 Log Analysis cross-site request forgery (EUVD-2024-55398)
3 months 1 week ago
A vulnerability was found in IBM Operations Analytics up to 1.3.8.3 and classified as problematic. Impacted is an unknown function of the component Log Analysis. Executing a manipulation can lead to cross-site request forgery.
The identification of this vulnerability is CVE-2024-40685. The attack may be launched remotely. There is no exploit available.
It is suggested to upgrade the affected component.
vuldb.com
CVE-2025-2134 | IBM Jazz Reporting Service up to 7.0.3iFix020/7.1iFix006 Resource Pooling resource pool (EUVD-2025-206775)
3 months 1 week ago
A vulnerability was found in IBM Jazz Reporting Service up to 7.0.3iFix020/7.1iFix006. It has been classified as problematic. The affected element is an unknown function of the component Resource Pooling. The manipulation leads to insufficient resource pool.
This vulnerability is referenced as CVE-2025-2134. The attack needs to be initiated within the local network. No exploit is available.
Upgrading the affected component is recommended.
vuldb.com
CVE-2024-43181 | IBM Concert up to 2.1.0 session expiration (EUVD-2024-55397)
3 months 1 week ago
A vulnerability was found in IBM Concert up to 2.1.0. It has been rated as critical. Affected by this vulnerability is an unknown functionality. Performing a manipulation results in session expiration.
This vulnerability is identified as CVE-2024-43181. The attack can be initiated remotely. There is not any exploit available.
Upgrading the affected component is advised.
vuldb.com
CVE-2024-51451 | IBM Concert up to 2.1.0 Header Host http headers for scripting syntax (EUVD-2024-55396)
3 months 1 week ago
A vulnerability identified as critical has been detected in IBM Concert up to 2.1.0. The impacted element is an unknown function of the component Header Handler. This manipulation of the argument Host causes improper neutralization of http headers for scripting syntax.
This vulnerability is registered as CVE-2024-51451. Remote exploitation of the attack is possible. No exploit is available.
You should upgrade the affected component.
vuldb.com
CVE-2026-1553 | Canvas up to 1.0.3 on Drupal authorization (sa-contrib-2026-006 / EUVD-2026-5339)
3 months 1 week ago
A vulnerability was found in Canvas up to 1.0.3 on Drupal. It has been classified as critical. This impacts an unknown function. This manipulation causes incorrect authorization.
The identification of this vulnerability is CVE-2026-1553. It is possible to initiate the attack remotely. There is no exploit available.
Upgrading the affected component is recommended.
vuldb.com
CVE-2026-25521 | locutusjs locutus up to 2.0.38 prototype pollution (GHSA-rxrv-835q-v5mh / EUVD-2026-5340)
3 months 1 week ago
A vulnerability categorized as problematic has been discovered in locutusjs locutus up to 2.0.38. Affected by this issue is some unknown functionality. Executing a manipulation can lead to improperly controlled modification of object prototype attributes.
This vulnerability is tracked as CVE-2026-25521. The attack is restricted to local execution. No exploit exists.
It is advisable to upgrade the affected component.
vuldb.com
CVE-2025-27550 | IBM Jazz Reporting Service up to 7.0.3iFix020/7.1iFix006 exposure of sensitive system information to an unauthorized control sphere (EUVD-2025-206774)
3 months 1 week ago
A vulnerability labeled as problematic has been found in IBM Jazz Reporting Service up to 7.0.3iFix020/7.1iFix006. This vulnerability affects unknown code. The manipulation results in exposure of sensitive system information to an unauthorized control sphere.
This vulnerability is cataloged as CVE-2025-27550. The attack must originate from the local network. There is no exploit available.
The affected component should be upgraded.
vuldb.com