Latest CVE Feed
-
6.8
MEDIUMCVE-2025-8633
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8637
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
7.5
HIGHCVE-2024-5798
Vault and Vault Enterprise did not properly validate the JSON Web Token (JWT) role-bound audience claim when using the Vault JWT auth method. This may have resulted in Vault validating a JWT the audience and role-bound claims do not match, allowing an inv... Read more
Affected Products : vault- Published: Jun. 12, 2024
- Modified: Aug. 07, 2025
-
6.8
MEDIUMCVE-2025-8635
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8634
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8636
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8638
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8639
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected Kenwood DMX958XR devices. Authentication is not required to exploit this vulnerability. The spe... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8640
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
7.8
HIGHCVE-2023-51563
Kofax Power PDF XPS File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kofax Power PDF. User interaction is required to exploit this vulnerabil... Read more
- Published: May. 03, 2024
- Modified: Aug. 07, 2025
-
8.8
HIGHCVE-2025-8653
Kenwood DMX958XR JKRadioService Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Kenwood DMX958XR. Authentication is not required t... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Memory Corruption
-
6.8
MEDIUMCVE-2025-8641
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8642
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8643
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8644
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8645
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8646
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8647
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8648
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8649
Kenwood DMX958XR JKWifiService Command Injection Remote Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection