A vulnerability, which was classified as critical, has been found in Telestream Tektronix Medius and Sentry up to 10.7.4. This issue affects some unknown processing of the file index.php of the component Server Login Page. The manipulation of the argument page as part of Parameter leads to sql injection.
The identification of this vulnerability is CVE-2020-8887. The attack may be initiated remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as critical, has been found in PHPGurukul Land Record System 1.0. This issue affects some unknown processing of the file /admin/aboutus.php. The manipulation of the argument pagetitle leads to sql injection.
The identification of this vulnerability is CVE-2025-4163. The attack may be initiated remotely. Furthermore, there is an exploit available.
Other parameters might be affected as well.
A vulnerability, which was classified as critical, was found in PHPGurukul Employee Record Management System 1.3. Affected is an unknown function of the file changepassword.php. The manipulation of the argument currentpassword leads to sql injection.
This vulnerability is traded as CVE-2025-4164. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
A vulnerability, which was classified as critical, has been found in Simple Shopping Cart Plugin up to 5.1.3 on WordPress. Affected by this issue is some unknown functionality. The manipulation leads to improper control of resource identifiers.
This vulnerability is handled as CVE-2025-3874. The attack may be launched remotely. There is no exploit available.
A vulnerability, which was classified as critical, was found in Simple Shopping Cart Plugin up to 5.1.3 on WordPress. This affects the function process_payment_data. The manipulation of the argument quantity leads to improper control of resource identifiers.
This vulnerability is uniquely identified as CVE-2025-3889. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability classified as problematic was found in AM LottiePlayer up to 3.5.3 on WordPress. This vulnerability affects unknown code. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2025-1529. The attack can be initiated remotely. There is no exploit available.
A vulnerability has been found in Simple Shopping Cart Plugin up to 5.1.3 on WordPress and classified as problematic. Affected by this vulnerability is the function wp_cart_button of the component Shortcode Handler. The manipulation leads to cross site scripting.
This vulnerability is known as CVE-2025-3890. The attack can be launched remotely. There is no exploit available.
You can now connect to Cloudflare's first publicly available remote Model Context Protocol (MCP) servers from any MCP client that supports remote servers.
We’re teaming up with Anthropic, Asana, Atlassian, Block, Intercom, Linear, PayPal, Sentry, Stripe, and Webflow to launch new remote MCP servers, built on Cloudflare, to enable Claude users to manage
Panel Explores AI Innovation, Geopolitical Tensions and Cybersecurity Leadership ISMG editors share insights from Day 3 of RSAC Conference 2025, unpacking nagging AI security challenges, evolving CISO roles, operational technology protection and the impact of geopolitical tensions on global cybersecurity collaboration.
Panel Explores AI Innovation, Geopolitical Tensions and Cybersecurity Leadership ISMG editors share insights from Day 3 of RSAC Conference 2025, unpacking nagging AI security challenges, evolving CISO roles, operational technology protection and the impact of geopolitical tensions on global cybersecurity collaboration.