A vulnerability marked as critical has been reported in NI Vision Builder AI. This affects an unknown function of the component VBAI File Handler. This manipulation causes product ui does not warn user of unsafe actions.
The identification of this vulnerability is CVE-2025-2450. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability described as critical has been identified in NI FlexLogger. This impacts an unknown function of the component usiReg URI File Parser. Such manipulation leads to path traversal.
This vulnerability is referenced as CVE-2025-2449. It is possible to launch the attack remotely. No exploit is available.
A vulnerability marked as critical has been reported in Schneider Electric SESU up to 3.0.11. This affects an unknown part. This manipulation causes link following.
This vulnerability appears as CVE-2025-5296. The attack requires local access. There is no available exploit.
It is suggested to upgrade the affected component.
A vulnerability described as critical has been identified in QNAP File Station 5 5.5.6.4741. This vulnerability affects unknown code. Such manipulation leads to out-of-bounds write.
This vulnerability is traded as CVE-2025-47206. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is recommended.
A vulnerability classified as problematic has been found in VMware Spring Framework up to 5.3.43/6.0.29/6.1.21/6.2.9. This issue affects some unknown processing of the component Servlet Container Handler. Performing manipulation results in path traversal.
This vulnerability is known as CVE-2025-41242. Remote exploitation of the attack is possible. No exploit is available.
It is recommended to upgrade the affected component.
Announcing the Browser Developer Program: Cloudflare’s new collaborative program to help shape Cloudflare challenges that work seamlessly with your browser. Join us today!
A vulnerability described as critical has been identified in Oracle Insurance Rules Palette 10.2.0/10.2.4/11.0.2/11.1.0/11.2.0. This issue affects some unknown processing of the component Architecture. Executing manipulation can lead to xml external entity reference.
This vulnerability appears as CVE-2019-12415. The attack requires local access. There is no available exploit.
Upgrading the affected component is recommended.
A vulnerability, which was classified as critical, has been found in Oracle Communications Diameter Signaling Router up to 8.2.2. The affected element is an unknown function of the component IDIH. Performing manipulation results in information disclosure.
This vulnerability is cataloged as CVE-2019-12415. The attack must be initiated from a local position. There is no exploit available.
It is advisable to upgrade the affected component.
A vulnerability, which was classified as critical, was found in Oracle Banking Payments 14.1.x/14.2.x/14.3.x/14.4.0. Affected by this issue is some unknown functionality of the component Core. Such manipulation leads to xml external entity reference.
This vulnerability is listed as CVE-2019-12415. The attack must be carried out locally. There is no available exploit.
You should upgrade the affected component.
A vulnerability has been found in Oracle FLEXCUBE Private Banking 12.0.0/12.1.0 and classified as critical. This affects an unknown part of the component Core. Performing manipulation results in xml external entity reference.
This vulnerability is cataloged as CVE-2019-12415. The attack must be initiated from a local position. There is no exploit available.
The affected component should be upgraded.
A vulnerability was found in Oracle WebCenter Portal 12.2.1.3.0/12.2.1.4.0 and classified as critical. This issue affects some unknown processing of the component Security Framework. The manipulation results in xml external entity reference.
This vulnerability is identified as CVE-2019-12415. The attack is only possible with local access. There is not any exploit available.
It is suggested to upgrade the affected component.
A vulnerability marked as critical has been reported in Oracle Insurance Policy Administration J2EE 11.0.2/11.1.0/11.2.0. This vulnerability affects unknown code of the component Architecture. Performing manipulation results in xml external entity reference.
This vulnerability is reported as CVE-2019-12415. The attack requires a local approach. No exploit exists.
It is suggested to upgrade the affected component.
A vulnerability identified as critical has been detected in Oracle Big Data Discovery 1.6. Affected by this vulnerability is an unknown functionality of the component Studio. This manipulation causes xml external entity reference.
This vulnerability is registered as CVE-2019-12415. The attack needs to be launched locally. No exploit is available.
You should upgrade the affected component.
A vulnerability labeled as critical has been found in Oracle Enterprise Manager Base Platform 12.1.0.5/13.3.0.0/13.4.0.0. Affected by this vulnerability is an unknown functionality of the component Application Service Level Mgmt. Executing manipulation can lead to xml external entity reference.
The identification of this vulnerability is CVE-2019-12415. The attack can only be executed locally. There is no exploit available.
The affected component should be upgraded.
A vulnerability, which was classified as problematic, has been found in Liferay Portal and DXP. The affected element is an unknown function of the component Document View Usages Page. The manipulation of the argument Name leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2025-43733. The attack is possible to be carried out remotely. No exploit exists.