A vulnerability was found in PHPGurukul Online Security Guards Hiring System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file /admin/search.php. The manipulation of the argument searchdata leads to cross site scripting.
This vulnerability was named CVE-2025-7791. The attack can be initiated remotely. Furthermore, there is an exploit available.
A vulnerability was found in Tenda FH451 1.0.0.9. It has been rated as critical. This issue affects the function formSafeEmailFilter of the file /goform/SafeEmailFilter. The manipulation of the argument page leads to stack-based buffer overflow.
The identification of this vulnerability is CVE-2025-7792. The attack may be initiated remotely. Furthermore, there is an exploit available.
A vulnerability classified as critical has been found in Tenda FH451 1.0.0.9. Affected is the function formWebTypeLibrary of the file /goform/webtypelibrary. The manipulation of the argument webSiteId leads to stack-based buffer overflow.
This vulnerability is traded as CVE-2025-7793. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
A vulnerability was found in SysAid On-Prem up to 23.3.40. It has been rated as problematic. Affected by this issue is some unknown functionality of the component Checkin Processing. The manipulation leads to xml external entity reference.
This vulnerability is handled as CVE-2025-2775. The attack may be launched remotely. Furthermore, there is an exploit available.
A vulnerability, which was classified as problematic, has been found in SysAid On-Prem up to 23.3.40. This issue affects some unknown processing of the component Server URL Handler. The manipulation leads to xml external entity reference.
The identification of this vulnerability is CVE-2025-2776. The attack may be initiated remotely. Furthermore, there is an exploit available.
A vulnerability classified as critical was found in CrushFTP up to 10.8.4/11.3.4_22. Affected by this vulnerability is an unknown functionality of the component DMZ Proxy Feature. The manipulation leads to unprotected alternate channel.
This vulnerability is known as CVE-2025-54309. The attack can be launched remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in PHPGurukul Complaint Management System 2.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /admin/complaint-search.php. The manipulation of the argument Search leads to cross site scripting.
This vulnerability is handled as CVE-2025-7802. The attack may be launched remotely. Furthermore, there is an exploit available.
A vulnerability was found in descreekert wx-discuz up to 12bd4745c63ec203cb32119bf77ead4a923bf277. It has been classified as problematic. This affects the function validToken of the file /wx.php. The manipulation of the argument echostr leads to cross site scripting.
This vulnerability is uniquely identified as CVE-2025-7803. It is possible to initiate the attack remotely. There is no exploit available.
This product takes the approach of rolling releases to provide continious delivery. Therefore, version details for affected and updated releases are not available.
A vulnerability classified as critical has been found in Tenda FH451 1.0.0.9. This affects the function fromPptpUserSetting of the file /goform/PPTPUserSetting. The manipulation of the argument delno leads to stack-based buffer overflow.
This vulnerability is uniquely identified as CVE-2025-7805. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
A vulnerability was found in Xuxueli xxl-job up to 3.1.1 and classified as problematic. Affected by this issue is the function makeToken of the file src/main/java/com/xxl/job/admin/controller/IndexController.java of the component Token Generation. The manipulation leads to password hash with insufficient computational effort.
This vulnerability is handled as CVE-2025-7789. The attack may be launched remotely. Furthermore, there is an exploit available.
A vulnerability classified as critical has been found in apko up to 0.29.4. Affected is an unknown function. The manipulation leads to incorrect default permissions.
This vulnerability is traded as CVE-2025-53945. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical was found in melange up to 0.29.4. Affected by this vulnerability is an unknown functionality of the component SBOM File Handler. The manipulation leads to incorrect default permissions.
This vulnerability is known as CVE-2025-54059. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as critical, has been found in LabRedesCefetRJ WeGIA up to 3.4.5. Affected by this issue is some unknown functionality of the file /html/atendido/Profile_Atendido.php. The manipulation of the argument idatendido leads to sql injection.
This vulnerability is handled as CVE-2025-54079. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.