A vulnerability has been found in Nozomi Q-Free MaxTime up to 2.11.0 and classified as critical. This vulnerability affects the function editUserMenu of the file maxprofile/menu/model.lua. The manipulation leads to sql injection.
This vulnerability was named CVE-2025-26348. The attack can be initiated remotely. There is no exploit available.
A vulnerability, which was classified as very critical, was found in Nozomi Q-Free MaxTime up to 2.11.0. This affects an unknown part of the file maxprofile/menu/routes.lua of the component HTTP Handler. The manipulation leads to missing authentication.
This vulnerability is uniquely identified as CVE-2025-26347. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability classified as critical was found in Nozomi Q-Free MaxTime up to 2.11.0. Affected by this vulnerability is the function editUserGroupMenu of the file maxprofile/menu/model.lua. The manipulation leads to sql injection.
This vulnerability is known as CVE-2025-26346. The attack can be launched remotely. There is no exploit available.
A vulnerability, which was classified as very critical, has been found in Nozomi Q-Free MaxTime up to 2.11.0. Affected by this issue is some unknown functionality of the file maxprofile/accounts/routes.lua of the component HTTP Handler. The manipulation leads to missing authentication.
This vulnerability is handled as CVE-2025-26342. The attack may be launched remotely. There is no exploit available.
A vulnerability classified as very critical has been found in Nozomi Q-Free MaxTime up to 2.11.0. Affected is an unknown function of the file maxprofile/guest-mode/routes.lua of the component HTTP Handler. The manipulation leads to missing authentication.
This vulnerability is traded as CVE-2025-26344. It is possible to launch the attack remotely. There is no exploit available.
A vulnerability was found in HCL Connections Docs 2.0.2. It has been rated as problematic. This issue affects some unknown processing of the component Request Handler. The manipulation leads to information disclosure.
The identification of this vulnerability is CVE-2024-23563. The attack may be initiated remotely. There is no exploit available.
A vulnerability was found in Nozomi Q-Free MaxTime up to 2.11.0. It has been declared as very critical. This vulnerability affects unknown code of the file maxprofile/accounts/routes.lua of the component HTTP Handler. The manipulation leads to missing authentication.
This vulnerability was named CVE-2025-26341. The attack can be initiated remotely. There is no exploit available.
A vulnerability was found in Nozomi Q-Free MaxTime up to 2.11.0. It has been classified as critical. This affects an unknown part of the component HTTP Handler. The manipulation leads to use of hard-coded cryptographic key
.
This vulnerability is uniquely identified as CVE-2025-26340. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability was found in Nozomi Q-Free MaxTime up to 2.11.0 and classified as very critical. Affected by this issue is some unknown functionality of the file maxtime/handleRoute.lua of the component HTTP Handler. The manipulation leads to missing authentication.
This vulnerability is handled as CVE-2025-26339. The attack may be launched remotely. There is no exploit available.
A vulnerability has been found in Nozomi Q-Free MaxTime up to 2.11.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the component HTTP Handler. The manipulation leads to weak authentication.
This vulnerability is known as CVE-2025-26343. The attack can be launched remotely. There is no exploit available.
Digital transformation is a key initiative for energy companies as they transition to smart grids. This digital transformation in the utilities industry is fueled by the need to meet customer requirements, therefore improving the customer experience and satisfaction. New technologies are paramount to providing real...
A vulnerability, which was classified as critical, was found in Linux Kernel up to 6.12.10. Affected is the function cond_resched. The manipulation leads to denial of service.
This vulnerability is traded as CVE-2025-21694. The attack can only be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as problematic, has been found in Linux Kernel up to 6.12.10. This issue affects the function mremap of the component mm. The manipulation leads to state issue.
The identification of this vulnerability is CVE-2025-21696. The attack can only be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical was found in Linux Kernel up to 6.13.0. This vulnerability affects unknown code of the component gfs2. The manipulation leads to buffer overflow.
This vulnerability was named CVE-2025-21699. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as problematic has been found in Linux Kernel up to 6.12.10. This affects an unknown part of the component v3d. The manipulation leads to Privilege Escalation.
This vulnerability is uniquely identified as CVE-2025-21697. Access to the local network is required for this attack to succeed. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.13.0. It has been rated as critical. Affected by this issue is some unknown functionality of the component u_serial. The manipulation leads to denial of service.
This vulnerability is handled as CVE-2025-21698. Access to the local network is required for this attack. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.12.11/6.13.0. It has been declared as problematic. Affected by this vulnerability is the function offset_readdir of the component libfs. The manipulation leads to incorrect comparison.
This vulnerability is known as CVE-2024-57952. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.12.10. It has been classified as critical. Affected is the function dell_uart_bl_serdev_probe of the component dell-uart-backlight. The manipulation leads to null pointer dereference.
This vulnerability is traded as CVE-2025-21695. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.