Latest CVE Feed
-
9.8
CRITICALCVE-2025-3341
A vulnerability, which was classified as critical, was found in codeprojects Online Restaurant Management System 1.0. This affects an unknown part of the file /admin/reservation_view.php. The manipulation of the argument ID leads to sql injection. It is p... Read more
- Published: Apr. 07, 2025
- Modified: Apr. 30, 2025
- Vuln Type: Injection
-
9.8
CRITICALCVE-2025-3340
A vulnerability, which was classified as critical, has been found in codeprojects Online Restaurant Management System 1.0. Affected by this issue is some unknown functionality of the file /admin/combo_update.php. The manipulation of the argument ID leads ... Read more
- Published: Apr. 07, 2025
- Modified: Apr. 29, 2025
- Vuln Type: Injection
-
9.8
CRITICALCVE-2025-3339
A vulnerability classified as critical was found in codeprojects Online Restaurant Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/user_update.php. The manipulation of the argument ID leads to sql injec... Read more
- Published: Apr. 07, 2025
- Modified: Apr. 29, 2025
- Vuln Type: Injection
-
9.8
CRITICALCVE-2025-3338
A vulnerability classified as critical has been found in codeprojects Online Restaurant Management System 1.0. Affected is an unknown function of the file /admin/user_save.php. The manipulation of the argument Name leads to sql injection. It is possible t... Read more
- Published: Apr. 07, 2025
- Modified: Apr. 29, 2025
- Vuln Type: Injection
-
8.8
HIGHCVE-2024-11071
Permissive Cross-domain Policy with Untrusted Domains vulnerability in local API server of DestinyECM solution(versions described below) which is developed and maintained by Cyberdigm may allow Cross-Site Request Forgery (CSRF) attack, which probabilistic... Read more
Affected Products :- Published: Apr. 07, 2025
- Modified: Apr. 07, 2025
- Vuln Type: Cross-Site Request Forgery
-
7.5
HIGHCVE-2025-3337
A vulnerability was found in codeprojects Online Restaurant Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /admin/member_update.php. The manipulation of the argument ID leads to sql injection. ... Read more
- Published: Apr. 07, 2025
- Modified: Apr. 11, 2025
- Vuln Type: Injection
-
7.5
HIGHCVE-2025-3336
A vulnerability was found in codeprojects Online Restaurant Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /admin/member_save.php. The manipulation of the argument last leads to sql injection. ... Read more
- Published: Apr. 07, 2025
- Modified: Apr. 11, 2025
- Vuln Type: Injection
-
7.5
HIGHCVE-2025-3335
A vulnerability was found in codeprojects Online Restaurant Management System 1.0. It has been classified as critical. This affects an unknown part of the file /admin/category_update.php. The manipulation of the argument ID leads to sql injection. It is p... Read more
- Published: Apr. 07, 2025
- Modified: Apr. 11, 2025
- Vuln Type: Injection
-
9.8
CRITICALCVE-2025-3334
A vulnerability was found in codeprojects Online Restaurant Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /admin/category_save.php. The manipulation of the argument Category leads to sql... Read more
- Published: Apr. 07, 2025
- Modified: Apr. 29, 2025
- Vuln Type: Injection
-
8.4
HIGHCVE-2025-31175
Deserialization mismatch vulnerability in the DSoftBus module Impact: Successful exploitation of this vulnerability may affect service integrity.... Read more
- Published: Apr. 07, 2025
- Modified: May. 07, 2025
- Vuln Type: Misconfiguration
-
7.5
HIGHCVE-2025-31174
Path traversal vulnerability in the DFS module Impact: Successful exploitation of this vulnerability may affect service confidentiality.... Read more
Affected Products : harmonyos- Published: Apr. 07, 2025
- Modified: May. 07, 2025
- Vuln Type: Path Traversal
-
8.8
HIGHCVE-2025-31173
Memory write permission bypass vulnerability in the kernel futex module Impact: Successful exploitation of this vulnerability may affect service confidentiality.... Read more
Affected Products : harmonyos- Published: Apr. 07, 2025
- Modified: May. 07, 2025
- Vuln Type: Memory Corruption
-
7.8
HIGHCVE-2025-31172
Memory write permission bypass vulnerability in the kernel futex module Impact: Successful exploitation of this vulnerability may affect service confidentiality.... Read more
Affected Products : harmonyos- Published: Apr. 07, 2025
- Modified: May. 07, 2025
- Vuln Type: Memory Corruption
-
6.8
MEDIUMCVE-2025-31171
File read permission bypass vulnerability in the kernel file system module Impact: Successful exploitation of this vulnerability may affect service confidentiality.... Read more
Affected Products : harmonyos- Published: Apr. 07, 2025
- Modified: Jun. 06, 2025
- Vuln Type: Information Disclosure
-
9.1
CRITICALCVE-2025-31170
Access control vulnerability in the security verification module Impact: Successful exploitation of this vulnerability will affect integrity and confidentiality.... Read more
- Published: Apr. 07, 2025
- Modified: May. 07, 2025
- Vuln Type: Authorization
-
7.5
HIGHCVE-2025-20664
In wlan AP driver, there is a possible information disclosure due to an uncaught exception. This could lead to remote (proximal/adjacent) information disclosure with no additional execution privileges needed. User interaction is not needed for exploitatio... Read more
- Published: Apr. 07, 2025
- Modified: Apr. 11, 2025
- Vuln Type: Information Disclosure
-
7.5
HIGHCVE-2025-20663
In wlan AP driver, there is a possible information disclosure due to an uncaught exception. This could lead to remote (proximal/adjacent) information disclosure with no additional execution privileges needed. User interaction is not needed for exploitatio... Read more
- Published: Apr. 07, 2025
- Modified: Apr. 11, 2025
- Vuln Type: Information Disclosure
-
6.7
MEDIUMCVE-2025-20662
In PlayReady TA, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ... Read more
- Published: Apr. 07, 2025
- Modified: Apr. 14, 2025
- Vuln Type: Memory Corruption
-
6.7
MEDIUMCVE-2025-20661
In PlayReady TA, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ... Read more
- Published: Apr. 07, 2025
- Modified: Apr. 14, 2025
- Vuln Type: Memory Corruption
-
6.7
MEDIUMCVE-2025-20660
In PlayReady TA, there is a possible out of bounds read due to a missing bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ... Read more
- Published: Apr. 07, 2025
- Modified: Apr. 18, 2025
- Vuln Type: Memory Corruption