Latest CVE Feed
-
9.0
HIGHCVE-2025-6882
A vulnerability classified as critical has been found in D-Link DIR-513 1.0. This affects an unknown part of the file /goform/formSetWanPPTP. The manipulation of the argument curTime leads to buffer overflow. It is possible to initiate the attack remotely... Read more
- Published: Jun. 30, 2025
- Modified: Jul. 14, 2025
- Vuln Type: Memory Corruption
-
9.0
HIGHCVE-2025-6617
A vulnerability was found in D-Link DIR-619L 2.06B01 and classified as critical. This issue affects the function formAdvanceSetup of the file /goform/formAdvanceSetup. The manipulation of the argument webpage leads to stack-based buffer overflow. The atta... Read more
- Published: Jun. 25, 2025
- Modified: Jul. 14, 2025
- Vuln Type: Memory Corruption
-
9.0
HIGHCVE-2025-6616
A vulnerability has been found in D-Link DIR-619L 2.06B01 and classified as critical. This vulnerability affects the function formSetWAN_Wizard51 of the file /goform/formSetWAN_Wizard51. The manipulation of the argument curTime leads to stack-based buffer... Read more
- Published: Jun. 25, 2025
- Modified: Jul. 14, 2025
- Vuln Type: Memory Corruption
-
9.0
HIGHCVE-2025-6615
A vulnerability, which was classified as critical, was found in D-Link DIR-619L 2.06B01. This affects the function formAutoDetecWAN_wizard4 of the file /goform/formAutoDetecWAN_wizard4. The manipulation of the argument curTime leads to stack-based buffer ... Read more
- Published: Jun. 25, 2025
- Modified: Jul. 14, 2025
- Vuln Type: Memory Corruption
-
4.0
MEDIUMCVE-2025-53175
Stack overflow risk when vector images are parsed during file preview Impact: Successful exploitation of this vulnerability may affect the file preview function.... Read more
Affected Products : harmonyos- Published: Jul. 07, 2025
- Modified: Jul. 14, 2025
- Vuln Type: Memory Corruption
-
3.3
LOWCVE-2025-53176
Stack overflow risk when vector images are parsed during file preview Impact: Successful exploitation of this vulnerability may affect the file preview function.... Read more
Affected Products : harmonyos- Published: Jul. 07, 2025
- Modified: Jul. 14, 2025
- Vuln Type: Memory Corruption
-
9.4
CRITICALCVE-2025-6793
Marvell QConvergeConsole QLogicDownloadImpl Directory Traversal Arbitrary File Deletion and Information Disclosure Vulnerability. This vulnerability allows remote attackers to delete arbitrary files and disclose sensitive information on affected installat... Read more
Affected Products : qconvergeconsole- Published: Jul. 07, 2025
- Modified: Jul. 14, 2025
- Vuln Type: Path Traversal
-
6.1
MEDIUMCVE-2024-12166
The Shortcodes Blocks Creator Ultimate plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'page' parameter in all versions up to, and including, 2.2.0 due to insufficient input sanitization and output escaping. This makes it poss... Read more
Affected Products : shortcodes_blocks_creator_ultimate- Published: Dec. 07, 2024
- Modified: Jul. 14, 2025
-
6.1
MEDIUMCVE-2024-12167
The Shortcodes Blocks Creator Ultimate plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the '_wpnonce' parameter in all versions up to, and including, 2.2.0 due to insufficient input sanitization and output escaping. This makes it ... Read more
Affected Products : shortcodes_blocks_creator_ultimate- Published: Dec. 07, 2024
- Modified: Jul. 14, 2025
-
6.5
MEDIUMCVE-2025-20695
In Bluetooth FW, there is a possible system crash due to an uncaught exception. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09741871; Issue ID: ... Read more
- Published: Jul. 08, 2025
- Modified: Jul. 14, 2025
- Vuln Type: Denial of Service
-
6.5
MEDIUMCVE-2025-20694
In Bluetooth FW, there is a possible system crash due to an uncaught exception. This could lead to remote denial of service with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: ALPS09752821; Issue ID: ... Read more
- Published: Jul. 08, 2025
- Modified: Jul. 14, 2025
- Vuln Type: Denial of Service
-
9.8
CRITICALCVE-2025-6794
Marvell QConvergeConsole saveAsText Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of Marvell QConvergeConsole. Authentication is not required to expl... Read more
Affected Products : qconvergeconsole- Published: Jul. 07, 2025
- Modified: Jul. 14, 2025
- Vuln Type: Path Traversal
-
7.5
HIGHCVE-2025-6795
Marvell QConvergeConsole getFileUploadSize Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Marvell QConvergeConsole. Authentication is not ... Read more
Affected Products : qconvergeconsole- Published: Jul. 07, 2025
- Modified: Jul. 14, 2025
- Vuln Type: Path Traversal
-
7.5
HIGHCVE-2025-6796
Marvell QConvergeConsole getAppFileBytes Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Marvell QConvergeConsole. Authentication is not re... Read more
Affected Products : qconvergeconsole- Published: Jul. 07, 2025
- Modified: Jul. 14, 2025
- Vuln Type: Path Traversal
-
7.5
HIGHCVE-2025-6797
Marvell QConvergeConsole getFileUploadBytes Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Marvell QConvergeConsole. Authentication is not... Read more
Affected Products : qconvergeconsole- Published: Jul. 07, 2025
- Modified: Jul. 14, 2025
- Vuln Type: Path Traversal
-
9.1
CRITICALCVE-2025-6798
Marvell QConvergeConsole deleteAppFile Directory Traversal Arbitrary File Deletion Vulnerability. This vulnerability allows remote attackers to delete arbitrary files on affected installations of Marvell QConvergeConsole. Authentication is not required to... Read more
Affected Products : qconvergeconsole- Published: Jul. 07, 2025
- Modified: Jul. 14, 2025
- Vuln Type: Path Traversal
-
7.5
HIGHCVE-2025-6799
Marvell QConvergeConsole getFileUploadBytes Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Marvell QConvergeConsole. Authentication is not... Read more
Affected Products : qconvergeconsole- Published: Jul. 07, 2025
- Modified: Jul. 14, 2025
-
7.5
HIGHCVE-2025-6800
Marvell QConvergeConsole restoreESwitchConfig Directory Traversal Information Disclosure Vulnerability. This vulnerability allows remote attackers to disclose sensitive information on affected installations of Marvell QConvergeConsole. Authentication is n... Read more
Affected Products : qconvergeconsole- Published: Jul. 07, 2025
- Modified: Jul. 14, 2025
- Vuln Type: Path Traversal
-
5.3
MEDIUMCVE-2024-34043
O-RAN RICAPP kpimon-go I-Release has a segmentation violation via a certain E2AP-PDU message.... Read more
Affected Products : ric-app-kpimon-go- Published: Apr. 30, 2024
- Modified: Jul. 14, 2025
-
8.2
HIGHCVE-2025-6801
Marvell QConvergeConsole saveNICParamsToFile Directory Traversal Arbitrary File Write Vulnerability. This vulnerability allows remote attackers to create arbitrary files on affected installations of Marvell QConvergeConsole. Authentication is not required... Read more
Affected Products : qconvergeconsole- Published: Jul. 07, 2025
- Modified: Jul. 14, 2025
- Vuln Type: Path Traversal