A vulnerability was found in Apache Portable Runtime APR up to 1.6.2 and classified as critical. Affected by this issue is the function apr_exp_time*/apr_os_exp_time*. Such manipulation leads to memory corruption.
This vulnerability is referenced as CVE-2017-12613. The attack can only be performed from a local environment. No exploit is available.
It is suggested to upgrade the affected component.
A vulnerability was found in Apple macOS up to 10.14.0. It has been rated as critical. This issue affects some unknown processing of the component APR. Performing manipulation results in out-of-bounds read.
This vulnerability was named CVE-2017-12613. The attack needs to be approached locally. There is no available exploit.
Upgrading the affected component is advised.
A vulnerability, which was classified as critical, was found in Apache HTTP Server up to 2.4.54. This vulnerability affects unknown code of the component Header Handler. The manipulation results in out-of-bounds write.
This vulnerability is reported as CVE-2006-20001. The attack can be launched remotely. No exploit exists.
You should upgrade the affected component.
A vulnerability identified as problematic has been detected in Elastic Kibana up to 7.17.29/8.18.7/8.19.4/9.0.7/9.1.4. The affected element is an unknown function of the component Crowdstrike Connector. Performing manipulation results in insufficiently protected credentials.
This vulnerability is cataloged as CVE-2025-37728. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability was found in VMware Spring Security up to 6.4.9/6.5.3 and classified as problematic. This affects an unknown function of the component EnableMethodSecurity. Such manipulation leads to authorization bypass.
This vulnerability is listed as CVE-2025-41248. The attack may be performed from remote. There is no available exploit.
It is suggested to upgrade the affected component.
A vulnerability was found in VMware Spring Framework up to 5.3.44/6.1.22/6.2.10. It has been classified as critical. This impacts an unknown function of the component EnableMethodSecurity. Performing manipulation results in improper authorization.
This vulnerability is cataloged as CVE-2025-41249. It is possible to initiate the attack remotely. There is no exploit available.
Upgrading the affected component is recommended.
A vulnerability classified as problematic has been found in VMware Spring Framework up to 5.3.43/6.0.29/6.1.21/6.2.9. This issue affects some unknown processing of the component Servlet Container Handler. Performing manipulation results in path traversal.
This vulnerability is known as CVE-2025-41242. Remote exploitation of the attack is possible. No exploit is available.
It is recommended to upgrade the affected component.
A vulnerability marked as problematic has been reported in projectworlds Advanced Library Management System 1.0. Affected is an unknown function of the file /edit_admin.php. The manipulation of the argument firstname leads to cross site scripting.
This vulnerability is traded as CVE-2025-11425. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
Other parameters might be affected as well.
A vulnerability described as critical has been identified in projectworlds Advanced Library Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /edit_book.php. The manipulation of the argument image results in unrestricted upload.
This vulnerability is known as CVE-2025-11426. It is possible to launch the attack remotely. Furthermore, an exploit is available.
A vulnerability has been found in Goodtech FTP Server up to 3.0.1.2.1.0 and classified as problematic. Affected is an unknown function of the component Connection Handler. The manipulation leads to denial of service.
This vulnerability is referenced as CVE-2001-0188. Remote exploitation of the attack is possible. No exploit is available.
It is recommended to apply restrictive firewalling.