A vulnerability identified as critical has been detected in iGENUS iGENUS Webmail up to 2.02. This affects an unknown part of the file config/config_inc.php. Performing manipulation of the argument SG_HOME results in code injection.
This vulnerability is identified as CVE-2006-1031. The attack can be initiated remotely. Additionally, an exploit exists.
A vulnerability identified as problematic has been detected in iFoto 0.20. The affected element is an unknown function. Performing manipulation of the argument File results in basic cross site scripting.
This vulnerability is known as CVE-2006-3006. Remote exploitation of the attack is possible. Furthermore, an exploit is available.
You should upgrade the affected component.
A vulnerability identified as critical has been detected in IDevSpot PhpLinkExchange 1.0. The impacted element is an unknown function of the file index.php. Performing manipulation of the argument page results in code injection.
This vulnerability is reported as CVE-2006-3777. The attack is possible to be carried out remotely. Moreover, an exploit is present.
A vulnerability categorized as critical has been discovered in IDevSpot AutoHost 3.0. The affected element is an unknown function of the file order/index.php. Such manipulation of the argument page leads to code injection.
This vulnerability is documented as CVE-2006-3776. The attack can be executed remotely. Additionally, an exploit exists.
A vulnerability, which was classified as problematic, has been found in Rhadrix If-CMS 1.01/2.07. The impacted element is an unknown function of the file index.php. This manipulation of the argument rns causes basic cross site scripting.
The identification of this vulnerability is CVE-2006-5761. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
A vulnerability, which was classified as problematic, was found in IDevSpot iSupport 1.8. This affects an unknown function. The manipulation of the argument cons_page_title results in basic cross site scripting.
This vulnerability is known as CVE-2006-4884. It is possible to launch the attack remotely. Furthermore, an exploit is available.
A vulnerability identified as critical has been detected in Campcodes School File Management System 1.0. Affected is an unknown function of the file /index.php of the component Login. Performing manipulation of the argument stud_no results in sql injection.
This vulnerability is identified as CVE-2025-13555. The attack can be initiated remotely. Additionally, an exploit exists.
A vulnerability categorized as critical has been discovered in Campcodes Supplier Management System 1.0. This impacts an unknown function of the file /index.php of the component Login. Such manipulation of the argument txtUsername leads to sql injection.
This vulnerability is referenced as CVE-2025-13554. It is possible to launch the attack remotely. Furthermore, an exploit is available.
A vulnerability was found in D-Link DWR-M920 1.1.50. It has been rated as critical. This affects the function sub_41C7FC of the file /boafrm/formPinManageSetup. This manipulation of the argument submit-url causes buffer overflow.
The identification of this vulnerability is CVE-2025-13553. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
The China-linked advanced persistent threat (APT) group known as APT31 has been attributed to cyber attacks targeting the Russian information technology (IT) sector between 2024 and 2025 while staying undetected for extended periods of time.
"In the period from 2024 to 2025, the Russian IT sector, especially companies working as contractors and integrators of solutions for government agencies,
A vulnerability was found in D-Link DIR-822K and DWR-M920 1.00_20250513164613/1.1.50. It has been declared as critical. The impacted element is an unknown function of the file /boafrm/formWlEncrypt. The manipulation of the argument submit-url results in buffer overflow.
This vulnerability was named CVE-2025-13552. The attack may be performed from remote. In addition, an exploit is available.
A vulnerability was found in D-Link DIR-822K and DWR-M920 1.00_20250513164613/1.1.50. It has been classified as critical. The affected element is an unknown function of the file /boafrm/formWanConfigSetup. The manipulation of the argument submit-url leads to buffer overflow.
This vulnerability is uniquely identified as CVE-2025-13551. The attack is possible to be carried out remotely. Moreover, an exploit is present.
A vulnerability was found in D-Link DIR-822K and DWR-M920 1.00_20250513164613/1.1.50 and classified as critical. Impacted is an unknown function of the file /boafrm/formVpnConfigSetup. Executing manipulation of the argument submit-url can lead to buffer overflow.
This vulnerability is handled as CVE-2025-13550. The attack can be executed remotely. Additionally, an exploit exists.