Latest CVE Feed
-
6.3
CVSS31CVE-2025-7580
A vulnerability classified as critical was found in code-projects Voting System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/positions_row.php. The manipulation of the argument ID leads to sql injection. The attack ca... Read more
Affected Products :- Published: Jul. 14, 2025
- Modified: Jul. 14, 2025
-
4.3
CVSS31CVE-2025-7579
A vulnerability was found in chinese-poetry 0.1. It has been rated as problematic. This issue affects some unknown processing of the file rank/server.js. The manipulation leads to inefficient regular expression complexity. The attack may be initiated remo... Read more
Affected Products :- Published: Jul. 14, 2025
- Modified: Jul. 14, 2025
-
5.0
CVSS31CVE-2025-7578
A vulnerability was found in Teledyne FLIR FB-Series O and FLIR FH-Series ID 1.3.2.16. It has been declared as critical. This vulnerability affects the function sendCommand of the file runcmd.sh. The manipulation of the argument cmd leads to command injec... Read more
Affected Products :- Published: Jul. 14, 2025
- Modified: Jul. 14, 2025
-
3.7
CVSS31CVE-2025-7577
A vulnerability was found in Teledyne FLIR FB-Series O and FLIR FH-Series ID 1.3.2.16. It has been classified as problematic. This affects an unknown part. The manipulation leads to use of hard-coded password. It is possible to initiate the attack remotel... Read more
Affected Products :- Published: Jul. 14, 2025
- Modified: Jul. 14, 2025
-
7.3
CVSS31CVE-2025-7576
A vulnerability was found in Teledyne FLIR FB-Series O and FLIR FH-Series ID 1.3.2.16 and classified as critical. Affected by this issue is some unknown functionality of the file /priv/production/production.html of the component Production Tools. The mani... Read more
Affected Products :- Published: Jul. 14, 2025
- Modified: Jul. 14, 2025
-
4.7
CVSS31CVE-2025-7575
A vulnerability has been found in Zavy86 WikiDocs up to 1.0.77 and classified as critical. Affected by this vulnerability is the function image_drop_upload_ajax/image_delete_ajax of the file submit.php. The manipulation leads to path traversal. The attack... Read more
Affected Products :- Published: Jul. 14, 2025
- Modified: Jul. 14, 2025
-
0.0
NONECVE-2025-7380
A stored Cross-Site Scripting (XSS) vulnerability exists in the Access Control of ADM, the issue allows an attacker to inject malicious scripts into the folder name field while creating a new shared folder. These scripts are not properly sanitized and wil... Read more
Affected Products :- Published: Jul. 14, 2025
- Modified: Jul. 14, 2025
-
9.8
CVSS31CVE-2025-7574
A vulnerability, which was classified as critical, was found in LB-LINK BL-AC1900, BL-AC2100_AZ3, BL-AC3600, BL-AX1800, BL-AX5400P and BL-WR9000 up to 20250702. Affected is the function reboot/restore of the file /cgi-bin/lighttpd.cgi of the component Web... Read more
Affected Products :- Published: Jul. 14, 2025
- Modified: Jul. 14, 2025
-
5.3
CVSS31CVE-2025-7573
A vulnerability, which was classified as critical, has been found in LB-LINK BL-AC1900, BL-AC2100_AZ3, BL-AC3600, BL-AX1800, BL-AX5400P and BL-WR9000 up to 20250702. This issue affects the function bs_GetManPwd in the library libblinkapi.so of the file /c... Read more
Affected Products :- Published: Jul. 14, 2025
- Modified: Jul. 14, 2025
-
5.3
CVSS31CVE-2025-7572
A vulnerability classified as critical was found in LB-LINK BL-AC1900, BL-AC2100_AZ3, BL-AC3600, BL-AX1800, BL-AX5400P and BL-WR9000 up to 20250702. This vulnerability affects the function bs_GetHostInfo in the library libblinkapi.so of the file /cgi-bin/... Read more
Affected Products :- Published: Jul. 14, 2025
- Modified: Jul. 14, 2025
-
8.8
CVSS31CVE-2025-7571
A vulnerability classified as critical has been found in UTT HiPER 840G up to 3.1.1-190328. This affects an unknown part of the file /goform/aspApBasicConfigUrcp. The manipulation of the argument Username leads to buffer overflow. It is possible to initia... Read more
Affected Products :- Published: Jul. 14, 2025
- Modified: Jul. 14, 2025
-
4.3
CVSS31CVE-2025-29606
py-libp2p before 0.2.3 allows a peer to cause a denial of service (resource consumption) via a large RSA key.... Read more
Affected Products :- Published: Jul. 14, 2025
- Modified: Jul. 14, 2025
-
8.8
CVSS31CVE-2025-7619
BatchSignCS, a background Windows application developed by WellChoose, has an Arbitrary File Write vulnerability. If a user visits a malicious website while the application is running, remote attackers can write arbitrary files to any path and potentially... Read more
Affected Products :- Published: Jul. 14, 2025
- Modified: Jul. 14, 2025
-
8.8
CVSS31CVE-2025-7570
A vulnerability was found in UTT HiPER 840G up to 3.1.1-190328. It has been rated as critical. Affected by this issue is some unknown functionality of the file /goform/aspRemoteApConfTempSend. The manipulation of the argument remoteSrcTemp leads to buffer... Read more
Affected Products :- Published: Jul. 14, 2025
- Modified: Jul. 14, 2025
-
3.5
CVSS31CVE-2025-7569
A vulnerability was found in Bigotry OneBase up to 1.3.6. It has been declared as problematic. Affected by this vulnerability is the function parse_args of the file /tpl/think_exception.tpl. The manipulation of the argument args leads to cross site script... Read more
Affected Products :- Published: Jul. 14, 2025
- Modified: Jul. 14, 2025
-
6.3
CVSS31CVE-2025-7568
A vulnerability was found in qianfox FoxCMS up to 1.2.5. It has been classified as critical. Affected is the function batchCope of the file app/admin/controller/Video.php. The manipulation of the argument ids leads to sql injection. It is possible to laun... Read more
Affected Products :- Published: Jul. 14, 2025
- Modified: Jul. 14, 2025
-
4.3
CVSS31CVE-2025-7567
A vulnerability was found in ShopXO up to 6.5.0 and classified as problematic. This issue affects some unknown processing of the file header.html. The manipulation of the argument lang/system_type leads to cross site scripting. The attack may be initiated... Read more
Affected Products :- Published: Jul. 14, 2025
- Modified: Jul. 14, 2025
-
4.7
CVSS31CVE-2025-7566
A vulnerability has been found in jshERP up to 3.5 and classified as critical. This vulnerability affects the function exportExcelByParam of the file /src/main/java/com/jsh/erp/controller/SystemConfigController.java. The manipulation of the argument Title... Read more
Affected Products :- Published: Jul. 14, 2025
- Modified: Jul. 14, 2025
-
5.3
CVSS31CVE-2025-7565
A vulnerability, which was classified as critical, was found in LB-LINK BL-AC3600 up to 1.0.22. This affects the function geteasycfg of the file /cgi-bin/lighttpd.cgi of the component Web Management Interface. The manipulation of the argument Password lea... Read more
Affected Products :- Published: Jul. 14, 2025
- Modified: Jul. 14, 2025
-
7.8
CVSS31CVE-2025-7564
A vulnerability, which was classified as critical, has been found in LB-LINK BL-AC3600 1.0.22. Affected by this issue is some unknown functionality of the file /etc/shadow. The manipulation with the input root:blinkadmin leads to hard-coded credentials. L... Read more
Affected Products :- Published: Jul. 14, 2025
- Modified: Jul. 14, 2025