Aggregator
CVE-2025-3384 | 1000 Projects Human Resource Management System 1.0 /controller/employee.php email sql injection
10 months ago
A vulnerability was found in 1000 Projects Human Resource Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /controller/employee.php. The manipulation of the argument email leads to sql injection.
This vulnerability is traded as CVE-2025-3384. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-3383 | SourceCodester Web-based Pharmacy Product Management System 1.0 /search/search_sales.php Name sql injection
10 months ago
A vulnerability was found in SourceCodester Web-based Pharmacy Product Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /search/search_sales.php. The manipulation of the argument Name leads to sql injection.
The identification of this vulnerability is CVE-2025-3383. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
Submit #552447: 1000projects Human Resource Management System PHP & MySQL Web Application Project 1.0 SQL Injection [Accepted]
10 months ago
Submit #552447 / VDB-303630
hhhd
Submit #552388: www.sourcecodester.com Web-based Pharmacy Product Management System 1.0 SQL Injection [Accepted]
10 months ago
Submit #552388 / VDB-303629
Colorado
CVE-2025-3382 | joey-zhou xiaozhi-esp32-server-java up to a14fe8115842ee42ab5c7a51706b8a85db5200b7 /api/user/update state sql injection
10 months ago
A vulnerability has been found in joey-zhou xiaozhi-esp32-server-java up to a14fe8115842ee42ab5c7a51706b8a85db5200b7 and classified as critical. This vulnerability affects the function update of the file /api/user/update. The manipulation of the argument state leads to sql injection.
This vulnerability was named CVE-2025-3382. The attack can be initiated remotely. Furthermore, there is an exploit available.
This product is using a rolling release to provide continious delivery. Therefore, no version details for affected nor updated releases are available.
vuldb.com
RAT в оболочке дебаггера: чем опасны новые пакеты Lazarus Group
10 months ago
Под видом полезных утилит злоумышленники внедряют полноценный шпионский функционал.
CVE-2025-3381 | zhangyanbo2007 youkefu 4.2.0 File Upload WebIMController.java ID path traversal
10 months ago
A vulnerability, which was classified as critical, was found in zhangyanbo2007 youkefu 4.2.0. This affects an unknown part of the file WebIMController.java of the component File Upload. The manipulation of the argument ID leads to path traversal.
This vulnerability is uniquely identified as CVE-2025-3381. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
Submit #552387: https://github.com/joey-zhou/xiaozhi-esp32-server-java xiaozhi-esp32-server-java 1.0 SQL Injection [Accepted]
10 months ago
Submit #552387 / VDB-303628
exp3n5ive
Submit #552369: https://github.com/zhangyanbo2007/youkefu youkefu 4.2.0 Arbitrary File Upload [Accepted]
10 months ago
Submit #552369 / VDB-303627
maple147
CVE-2025-3380 | PCMan FTP Server 2.0.7 FEAT Command buffer overflow
10 months ago
A vulnerability, which was classified as critical, has been found in PCMan FTP Server 2.0.7. Affected by this issue is some unknown functionality of the component FEAT Command Handler. The manipulation leads to buffer overflow.
This vulnerability is handled as CVE-2025-3380. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-3379 | PCMan FTP Server 2.0.7 EPSV Command buffer overflow
10 months ago
A vulnerability classified as critical was found in PCMan FTP Server 2.0.7. Affected by this vulnerability is an unknown functionality of the component EPSV Command Handler. The manipulation leads to buffer overflow.
This vulnerability is known as CVE-2025-3379. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-3378 | PCMan FTP Server 2.0.7 EPRT Command buffer overflow
10 months ago
A vulnerability classified as critical has been found in PCMan FTP Server 2.0.7. Affected is an unknown function of the component EPRT Command Handler. The manipulation leads to buffer overflow.
This vulnerability is traded as CVE-2025-3378. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-3377 | PCMan FTP Server 2.0.7 ENC Command buffer overflow
10 months ago
A vulnerability was found in PCMan FTP Server 2.0.7. It has been rated as critical. This issue affects some unknown processing of the component ENC Command Handler. The manipulation leads to buffer overflow.
The identification of this vulnerability is CVE-2025-3377. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-3376 | PCMan FTP Server 2.0.7 CONF Command buffer overflow
10 months ago
A vulnerability was found in PCMan FTP Server 2.0.7. It has been declared as critical. This vulnerability affects unknown code of the component CONF Command Handler. The manipulation leads to buffer overflow.
This vulnerability was named CVE-2025-3376. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-3375 | PCMan FTP Server 2.0.7 CDUP Command buffer overflow
10 months ago
A vulnerability was found in PCMan FTP Server 2.0.7. It has been classified as critical. This affects an unknown part of the component CDUP Command Handler. The manipulation leads to buffer overflow.
This vulnerability is uniquely identified as CVE-2025-3375. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-3374 | PCMan FTP Server 2.0.7 CCC Command buffer overflow
10 months ago
A vulnerability was found in PCMan FTP Server 2.0.7 and classified as critical. Affected by this issue is some unknown functionality of the component CCC Command Handler. The manipulation leads to buffer overflow.
This vulnerability is handled as CVE-2025-3374. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-3373 | PCMan FTP Server 2.0.7 SITE CHMOD Command buffer overflow
10 months ago
A vulnerability has been found in PCMan FTP Server 2.0.7 and classified as critical. Affected by this vulnerability is an unknown functionality of the component SITE CHMOD Command Handler. The manipulation leads to buffer overflow.
This vulnerability is known as CVE-2025-3373. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-3372 | PCMan FTP Server 2.0.7 MKDIR Command buffer overflow
10 months ago
A vulnerability, which was classified as critical, was found in PCMan FTP Server 2.0.7. Affected is an unknown function of the component MKDIR Command Handler. The manipulation leads to buffer overflow.
This vulnerability is traded as CVE-2025-3372. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-3371 | PCMan FTP Server 2.0.7 DELETE Command buffer overflow
10 months ago
A vulnerability, which was classified as critical, has been found in PCMan FTP Server 2.0.7. This issue affects some unknown processing of the component DELETE Command Handler. The manipulation leads to buffer overflow.
The identification of this vulnerability is CVE-2025-3371. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com