A vulnerability, which was classified as critical, was found in F5 BIG-IP Next Central Manager up to 20.1.0. This vulnerability affects unknown code. Such manipulation leads to improper certificate validation.
This vulnerability is uniquely identified as CVE-2024-33612. The attack can be launched remotely. No exploit exists.
You should upgrade the affected component.
A vulnerability categorized as problematic has been discovered in Envoy up to 1.30.7/1.31.3/1.32.1. This affects an unknown part of the component IP Configuration Handler. Such manipulation leads to incorrect control flow.
This vulnerability is traded as CVE-2024-53269. Access to the local network is required for this attack to succeed. There is no exploit available.
It is advisable to upgrade the affected component.
A vulnerability was found in Drupal SpamSpan filter up to 3.2.0. It has been classified as problematic. This impacts an unknown function. This manipulation causes cross site scripting.
This vulnerability is tracked as CVE-2025-31687. The attack is possible to be carried out remotely. No exploit exists.
Upgrading the affected component is recommended.
A vulnerability was found in Drupal Configuration Split up to 1.9.x/2.0.1. It has been declared as problematic. Affected is an unknown function. Such manipulation leads to cross-site request forgery.
This vulnerability is listed as CVE-2025-31688. The attack may be performed from a remote location. There is no available exploit.
It is recommended to upgrade the affected component.
A vulnerability was found in Apple iOS and iPadOS and classified as problematic. The impacted element is an unknown function of the component Lock Screen. Such manipulation leads to improper access controls.
This vulnerability is traded as CVE-2025-30438. An attack has to be approached locally. There is no exploit available.
It is suggested to upgrade the affected component.
A vulnerability was found in Apple macOS. It has been classified as problematic. This affects an unknown function of the component Lock Screen. Performing manipulation results in improper access controls.
This vulnerability is known as CVE-2025-30438. Attacking locally is a requirement. No exploit is available.
Upgrading the affected component is recommended.
A vulnerability was found in Apple visionOS. It has been declared as problematic. This impacts an unknown function of the component Lock Screen. Executing manipulation can lead to improper access controls.
This vulnerability is handled as CVE-2025-30438. It is possible to launch the attack on the local host. There is not any exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, was found in Drupal OAuth2 Client up to 4.1.2. This impacts an unknown function. Executing manipulation can lead to cross-site request forgery.
This vulnerability is tracked as CVE-2025-31684. The attack can be launched remotely. No exploit exists.
You should upgrade the affected component.
A vulnerability identified as critical has been detected in projectworlds Online Examination System 1.0. This affects an unknown part of the file /Procedure3b_yearwiseVisit.php. Performing manipulation of the argument Visit_year results in sql injection.
This vulnerability was named CVE-2025-4706. The attack may be initiated remotely. In addition, an exploit is available.
A vulnerability was found in Linux Kernel up to 6.15-rc1 and classified as problematic. This impacts the function qdisc_tree_reduce_backlog of the component codel. The manipulation results in privilege escalation.
This vulnerability is identified as CVE-2025-37798. The attack can only be performed from the local network. There is not any exploit available.
It is suggested to upgrade the affected component.
A vulnerability categorized as critical has been discovered in projectworlds Online Lawyer Management System 1.0. The impacted element is an unknown function of the file /user_registation.php. The manipulation of the argument email results in sql injection.
This vulnerability is reported as CVE-2025-4931. The attack can be launched remotely. Moreover, an exploit is present.
A vulnerability, which was classified as critical, was found in projectworlds Hospital Database Management System 1.0. This issue affects some unknown processing of the file /medicines_info.php. Such manipulation of the argument Med_ID leads to sql injection.
This vulnerability is listed as CVE-2025-4739. The attack may be performed from a remote location. In addition, an exploit is available.
A vulnerability classified as problematic has been found in Linux Kernel up to 5.15.178/6.1.130/6.6.82/6.12.18/6.13.6. Impacted is an unknown function of the component gpio. Performing manipulation results in deserialization.
This vulnerability is reported as CVE-2025-21912. The attacker must have access to the local network to execute the attack. No exploit exists.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, has been found in F5 BIG-IP Next SPK and BIG-IP Next CNF up to 1.1.1. Impacted is an unknown function. Performing manipulation results in insufficiently protected credentials.
This vulnerability was named CVE-2024-23306. The attack needs to be approached locally. There is no available exploit.
It is advisable to upgrade the affected component.
A vulnerability identified as problematic has been detected in Drupal View Password up to 6.0.3. Affected by this vulnerability is an unknown functionality. Performing manipulation results in cross site scripting.
This vulnerability is reported as CVE-2024-13262. The attack is possible to be carried out remotely. No exploit exists.
You should upgrade the affected component.
A vulnerability categorized as critical has been discovered in Linux Kernel up to 6.6.30/6.8.9. This impacts the function __uvcg_iter_item_entries of the component usb. Executing manipulation can lead to buffer overflow.
This vulnerability appears as CVE-2024-36895. The attacker needs to be present on the local network. There is no available exploit.
It is advisable to upgrade the affected component.
A vulnerability has been found in Linux Kernel up to 6.8.9 and classified as problematic. The impacted element is the function slab_free. This manipulation causes privilege escalation.
This vulnerability is tracked as CVE-2024-36892. The attack is only possible within the local network. No exploit exists.
The affected component should be upgraded.
A vulnerability, which was classified as critical, has been found in Linux Kernel up to 6.1.90/6.6.30/6.8.9. This affects the function typec_register_partner. This manipulation causes null pointer dereference.
The identification of this vulnerability is CVE-2024-36893. The attack needs to be done within the local network. There is no exploit available.
It is advisable to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.6.30/6.8.9. It has been rated as critical. This affects the function aio_cancel of the component usb. Performing manipulation results in use after free.
This vulnerability is reported as CVE-2024-36894. The attacker must have access to the local network to execute the attack. No exploit exists.
Upgrading the affected component is advised.