Latest CVE Feed
-
6.8
MEDIUMCVE-2025-8643
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8644
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8645
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8646
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8647
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8648
Kenwood DMX958XR Firmware Update Command Injection Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit this vulner... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8649
Kenwood DMX958XR JKWifiService Command Injection Remote Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8650
Kenwood DMX958XR libSystemLib Command Injection Remote Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to ... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8651
Kenwood DMX958XR JKWifiService Command Injection Remote Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8652
Kenwood DMX958XR JKWifiService Command Injection Remote Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
8.8
HIGHCVE-2025-8654
Kenwood DMX958XR ReadMVGImage Command Injection Remote Code Execution Vulnerability. This vulnerability allows network-adjacent attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to ex... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8655
Kenwood DMX958XR libSystemLib Command injection Remote Code Execution Vulnerability. This vulnerability allows physically present attackers to execute arbitrary code on affected installations of Kenwood DMX958XR devices. Authentication is not required to ... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Injection
-
6.8
MEDIUMCVE-2025-8656
Kenwood DMX958XR Protection Mechanism Failure Software Downgrade Vulnerability. This vulnerability allows physically present attackers to downgrade software on affected installations of Kenwood DMX958XR devices. Authentication is not required to exploit t... Read more
- Published: Aug. 06, 2025
- Modified: Aug. 07, 2025
- Vuln Type: Authentication
-
5.4
MEDIUMCVE-2024-38273
Insufficient capability checks meant it was possible for users to gain access to BigBlueButton join URLs they did not have permission to access.... Read more
- Published: Jun. 18, 2024
- Modified: Aug. 07, 2025
-
7.8
HIGHCVE-2024-5874
IrfanView PNT File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in ... Read more
- Published: Nov. 22, 2024
- Modified: Aug. 07, 2025
-
7.8
HIGHCVE-2024-5877
IrfanView PIC File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in ... Read more
- Published: Nov. 22, 2024
- Modified: Aug. 07, 2025
-
7.8
HIGHCVE-2024-5876
IrfanView PSP File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerabil... Read more
- Published: Nov. 22, 2024
- Modified: Aug. 07, 2025
-
7.8
HIGHCVE-2024-5875
IrfanView SHP File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of IrfanView. User interaction is required to exploit this vulnerability in ... Read more
- Published: Nov. 22, 2024
- Modified: Aug. 07, 2025
-
5.5
MEDIUMCVE-2023-38086
Kofax Power PDF PDF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Kofax Power PDF. User interaction is required to exploit th... Read more
- Published: May. 03, 2024
- Modified: Aug. 07, 2025
-
5.5
MEDIUMCVE-2023-38085
Kofax Power PDF JP2 File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Kofax Power PDF. User interaction is required to exploit th... Read more
- Published: May. 03, 2024
- Modified: Aug. 07, 2025