Latest CVE Feed
-
5.5
MEDIUMCVE-2023-51564
Kofax Power PDF PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Kofax Power PDF. User interaction is required to exploit th... Read more
- Published: May. 03, 2024
- Modified: Aug. 07, 2025
-
5.8
MEDIUMCVE-2024-20361
A vulnerability in the Object Groups for Access Control Lists (ACLs) feature of Cisco Firepower Management Center (FMC) Software could allow an unauthenticated, remote attacker to bypass configured access controls on managed devices that are running Cisco... Read more
Affected Products : firepower_management_center firepower_threat_defense secure_firewall_management_center- Published: May. 22, 2024
- Modified: Aug. 07, 2025
-
6.8
MEDIUMCVE-2025-8629
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8628
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8630
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8631
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8632
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8633
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8637
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
7.5
HIGHCVE-2024-5798
Vault and Vault Enterprise did not properly validate the JSON Web Token (JWT) role-bound audience claim when using the Vault JWT auth method. This may have resulted in Vault validating a JWT the audience and role-bound claims do not match, allowing an inv... Read more
Affected Products : vault- Published: Jun. 12, 2024
- Modified: Aug. 07, 2025
-
6.8
MEDIUMCVE-2025-8635
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8634
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8636
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8638
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8639
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected Kenwood DMX958XR devices. Authentication is not required to exploit this vulnerability. The spe... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8640
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
7.8
HIGHCVE-2023-51563
Kofax Power PDF XPS File Parsing Use-After-Free Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Kofax Power PDF. User interaction is required to exploit this vulnerabil... Read more
- Published: May. 03, 2024
- Modified: Aug. 07, 2025
-
8.8
HIGHCVE-2025-8653
Kenwood DMX958XR JKRadioService Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Kenwood DMX958XR. Authentication is not required t... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Memory Corruption
-
6.8
MEDIUMCVE-2025-8641
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8642
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection