Latest CVE Feed
-
7.2
CVSS31CVE-2024-58258
SugarCRM before 13.0.4 and 14.x before 14.0.1 allows SSRF in the API module because a limited type of code injection can occur.... Read more
Affected Products : sugarcrm- Published: Jul. 13, 2025
- Modified: Jul. 13, 2025
-
7.3
CVSS31CVE-2025-7542
A vulnerability was found in PHPGurukul User Registration & Login and User Management System 3.3 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/user-profile.php. The manipulation of the argument uid lea... Read more
Affected Products : user_registration_\&_login_and_user_management_system- Published: Jul. 13, 2025
- Modified: Jul. 13, 2025
-
7.3
CVSS31CVE-2025-7541
A vulnerability has been found in code-projects Online Appointment Booking System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /get_town.php. The manipulation of the argument countryid leads to sql... Read more
Affected Products :- Published: Jul. 13, 2025
- Modified: Jul. 13, 2025
-
7.3
CVSS31CVE-2025-7540
A vulnerability, which was classified as critical, was found in code-projects Online Appointment Booking System 1.0. Affected is an unknown function of the file /getclinic.php. The manipulation of the argument townid leads to sql injection. It is possible... Read more
Affected Products :- Published: Jul. 13, 2025
- Modified: Jul. 13, 2025
-
7.3
CVSS31CVE-2025-7539
A vulnerability, which was classified as critical, has been found in code-projects Online Appointment Booking System 1.0. This issue affects some unknown processing of the file /getdoctordaybooking.php. The manipulation of the argument cid leads to sql in... Read more
Affected Products :- Published: Jul. 13, 2025
- Modified: Jul. 13, 2025
-
6.4
CVSS31CVE-2025-53865
In Roundup before 2.5.0, XSS can occur via interaction between URLs and issue tracker templates (devel and responsive).... Read more
Affected Products : roundup- Published: Jul. 13, 2025
- Modified: Jul. 13, 2025
-
8.8
CVSS31CVE-2025-7528
A vulnerability classified as critical has been found in Tenda FH1202 1.2.0.14(408). Affected is the function fromGstDhcpSetSer of the file /goform/GstDhcpSetSer. The manipulation of the argument dips leads to stack-based buffer overflow. It is possible t... Read more
Affected Products : fh1202_firmware- Published: Jul. 13, 2025
- Modified: Jul. 13, 2025
-
8.8
CVSS31CVE-2025-7527
A vulnerability was found in Tenda FH1202 1.2.0.14(408). It has been rated as critical. This issue affects the function fromAdvSetWan of the file /goform/AdvSetWan. The manipulation of the argument PPPOEPassword leads to stack-based buffer overflow. The a... Read more
Affected Products : fh1202_firmware- Published: Jul. 13, 2025
- Modified: Jul. 13, 2025
-
6.3
CVSS31CVE-2025-7525
A vulnerability was found in TOTOLINK T6 4.1.5cu.748_B20211015. It has been declared as critical. This vulnerability affects the function setTracerouteCfg of the file /cgi-bin/cstecgi.cgi of the component HTTP POST Request Handler. The manipulation of the... Read more
Affected Products : t6_firmware- Published: Jul. 13, 2025
- Modified: Jul. 13, 2025
-
6.3
CVSS31CVE-2025-7524
A vulnerability was found in TOTOLINK T6 4.1.5cu.748_B20211015. It has been classified as critical. This affects the function setDiagnosisCfg of the file /cgi-bin/cstecgi.cgi of the component HTTP POST Request Handler. The manipulation of the argument ip ... Read more
Affected Products : t6_firmware- Published: Jul. 13, 2025
- Modified: Jul. 13, 2025
-
0.0
NONECVE-2025-7012
An issue in Cato Networks' CatoClient for Linux, before version 5.5, allows a local attacker to escalate privileges to root by exploiting improper symbolic link handling.... Read more
Affected Products :- Published: Jul. 13, 2025
- Modified: Jul. 13, 2025
-
7.3
CVSS31CVE-2025-7523
A vulnerability was found in Jinher OA 1.0 and classified as problematic. Affected by this issue is some unknown functionality of the file /c6/Jhsoft.Web.message/ToolBar/DelTemp.aspx. The manipulation leads to xml external entity reference. The attack may... Read more
Affected Products :- Published: Jul. 13, 2025
- Modified: Jul. 13, 2025
-
6.3
CVSS31CVE-2025-7522
A vulnerability has been found in PHPGurukul Vehicle Parking Management System 1.13 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /admin/bwdates-reports-details.php. The manipulation of the argument fro... Read more
Affected Products : vehicle_parking_management_system- Published: Jul. 13, 2025
- Modified: Jul. 13, 2025
-
7.3
CVSS31CVE-2025-7521
A vulnerability, which was classified as critical, was found in PHPGurukul Vehicle Parking Management System 1.13. Affected is an unknown function of the file /admin/index.php. The manipulation of the argument Username leads to sql injection. It is possib... Read more
Affected Products : vehicle_parking_management_system- Published: Jul. 13, 2025
- Modified: Jul. 13, 2025
-
6.3
CVSS31CVE-2025-7520
A vulnerability, which was classified as critical, has been found in PHPGurukul Vehicle Parking Management System 1.13. This issue affects some unknown processing of the file /admin/manage-category.php. The manipulation of the argument del leads to sql in... Read more
Affected Products : vehicle_parking_management_system- Published: Jul. 13, 2025
- Modified: Jul. 13, 2025
-
8.8
CVSS31CVE-2025-7506
A vulnerability classified as critical was found in Tenda FH451 1.0.0.9. Affected by this vulnerability is the function fromNatlimit of the file /goform/Natlimit of the component HTTP POST Request Handler. The manipulation of the argument page leads to st... Read more
Affected Products : fh451_firmware- Published: Jul. 12, 2025
- Modified: Jul. 12, 2025
-
8.8
CVSS31CVE-2025-7505
A vulnerability classified as critical has been found in Tenda FH451 1.0.0.9. Affected is the function frmL7ProtForm of the file /goform/L7Prot of the component HTTP POST Request Handler. The manipulation of the argument page leads to stack-based buffer o... Read more
Affected Products : fh451_firmware- Published: Jul. 12, 2025
- Modified: Jul. 12, 2025
-
6.3
CVSS31CVE-2025-7492
A vulnerability was found in PHPGurukul Vehicle Parking Management System 1.13. It has been rated as critical. Affected by this issue is some unknown functionality of the file /admin/manage-incomingvehicle.php. The manipulation of the argument del leads t... Read more
Affected Products : vehicle_parking_management_system- Published: Jul. 12, 2025
- Modified: Jul. 12, 2025
-
6.3
CVSS31CVE-2025-7491
A vulnerability was found in PHPGurukul Vehicle Parking Management System 1.13. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /admin/manage-outgoingvehicle.php. The manipulation of the argument de... Read more
Affected Products : vehicle_parking_management_system- Published: Jul. 12, 2025
- Modified: Jul. 12, 2025