A vulnerability categorized as critical has been discovered in RiteCMS 3.1.0. The affected element is the function parse_special_tags. The manipulation results in privilege escalation.
This vulnerability is reported as CVE-2025-67172. The attack can be launched remotely. No exploit exists.
A vulnerability was found in KeePassXC-Browser up to 1.9.9.2. It has been rated as critical. Impacted is an unknown function. The manipulation leads to improper access controls.
This vulnerability is documented as CVE-2025-65203. The attack can be initiated remotely. There is not any exploit available.
SonicWall warned customers today to patch a vulnerability in the SonicWall SMA1000 Appliance Management Console (AMC) that was chained in zero-day attacks to escalate privileges. [...]
A vulnerability was found in Pagekit CMS 1.0.18. It has been declared as critical. This issue affects some unknown processing. Executing manipulation can lead to improper control of resource identifiers.
This vulnerability is registered as CVE-2025-67165. It is possible to launch the attack remotely. No exploit is available.
A vulnerability was found in Portrait Dell Color Management Application 3.3.8. It has been classified as critical. This vulnerability affects unknown code. Performing manipulation results in permission issues.
This vulnerability is cataloged as CVE-2025-53398. The attack must originate from the local network. There is no exploit available.
A vulnerability has been found in Open Source Point of Sale 3.4.1 and classified as problematic. Affected by this issue is some unknown functionality of the component Item Kit Handler. This manipulation of the argument Name causes cross site scripting.
This vulnerability is tracked as CVE-2025-66924. The attack is possible to be carried out remotely. No exploit exists.
A vulnerability, which was classified as problematic, was found in Open Source Point of Sale 3.4.1. Affected by this vulnerability is an unknown functionality of the component Customer Handler. The manipulation of the argument phone_number results in cross site scripting.
This vulnerability is identified as CVE-2025-66923. The attack can be executed remotely. There is not any exploit available.
A vulnerability, which was classified as problematic, has been found in Open Source Point of Sale 3.4.1. Affected is an unknown function of the component Item Module. The manipulation of the argument Name leads to cross site scripting.
This vulnerability is referenced as CVE-2025-66921. Remote exploitation of the attack is possible. No exploit is available.
A vulnerability classified as problematic was found in Entrinsik Informer 5.10.1. This impacts an unknown function of the component Local User Login. Executing manipulation can lead to information disclosure.
The identification of this vulnerability is CVE-2025-65185. The attack can only be executed locally. There is no exploit available.
A vulnerability classified as critical has been found in Portrait Dell Color Management Application up to 3.3.008. This affects an unknown function of the component Installation/Uninstallation. Performing manipulation results in permission issues.
This vulnerability was named CVE-2025-53919. The attack needs to be approached locally. There is no available exploit.
A vulnerability described as problematic has been identified in Netun HelpFlash IoT 18_178_221102_ASCII_PRO_1R5_50. The impacted element is an unknown function of the component OTA Firmware Update. Such manipulation leads to download of code without integrity check.
This vulnerability is uniquely identified as CVE-2025-65855. The attack can be executed directly on the physical device. No exploit exists.
A vulnerability marked as critical has been reported in F5 NGINX Ingress Controller up to 5.3.0. The affected element is an unknown function. This manipulation causes path traversal.
This vulnerability is handled as CVE-2025-14727. The attack can be initiated remotely. There is not any exploit available.
It is suggested to upgrade the affected component.
A vulnerability labeled as critical has been found in itsourcecode COVID Tracking System Using QR-Code 1.0. Impacted is an unknown function of the file /cts/admin/?page=zone. The manipulation of the argument ID results in sql injection.
This vulnerability is known as CVE-2025-67285. It is possible to launch the attack remotely. No exploit is available.
A vulnerability identified as critical has been detected in Pagekit CMS 1.0.18. This issue affects some unknown processing of the file /storage/poc.php. The manipulation leads to unrestricted upload.
This vulnerability is traded as CVE-2025-67164. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability was found in python-jose up to 3.3.0 and classified as problematic. This vulnerability affects unknown code of the component JWE Token Handler. The manipulation results in resource consumption.
This vulnerability is identified as CVE-2024-33664. The attack can be executed remotely. There is not any exploit available.
Applying a patch is advised to resolve this issue.
This entry seems to have a duplicate CVE-2024-29370 assigned.
A vulnerability categorized as very critical has been discovered in Cisco Secure Email and Secure Email and Web Manager. This vulnerability affects unknown code. Executing manipulation can lead to improper input validation.
This vulnerability appears as CVE-2025-20393. The attack may be performed from remote. There is no available exploit.
It is advisable to upgrade the affected component.