Latest CVE Feed
-
7.4
CVSS31CVE-2025-49480
Out-of-bounds access in ASR180x 、ASR190x in lte-telephony, This vulnerability is associated with program files apps/lzma/src/LzmaEnc.c. This issue affects Falcon_Linux、Kestrel、Lapwing_Linux: before v1536.... Read more
Affected Products :- Published: Jul. 01, 2025
- Modified: Jul. 01, 2025
-
7.4
CVSS31CVE-2025-49741
No cwe for this issue in Microsoft Edge (Chromium-based) allows an unauthorized attacker to disclose information over a network.... Read more
Affected Products : edge_chromium- Published: Jul. 01, 2025
- Modified: Jul. 02, 2025
-
7.4
CVSS31CVE-2025-49492
Out-of-bounds write in ASR180x in lte-telephony, May cause a buffer underrun. This vulnerability is associated with program files apps/atcmd_server/src/dev_api.C. This issue affects Falcon_Linux、Kestrel、Lapwing_Linux: before v1536.... Read more
Affected Products :- Published: Jul. 01, 2025
- Modified: Jul. 01, 2025
-
7.3
CVSS31CVE-2025-6960
A vulnerability classified as critical was found in Campcodes Employee Management System 1.0. Affected by this vulnerability is an unknown functionality of the file /empproject.php. The manipulation of the argument ID leads to sql injection. The attack ca... Read more
Affected Products :- Published: Jul. 01, 2025
- Modified: Jul. 01, 2025
-
7.3
CVSS31CVE-2025-6963
A vulnerability has been found in Campcodes Employee Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /myprofile.php. The manipulation of the argument ID leads to sql injection. The attack can be initia... Read more
Affected Products :- Published: Jul. 01, 2025
- Modified: Jul. 01, 2025
-
7.3
CVSS31CVE-2025-6958
A vulnerability was found in Campcodes Employee Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /edit.php. The manipulation of the argument ID leads to sql injection. The attack may be initiated... Read more
Affected Products :- Published: Jul. 01, 2025
- Modified: Jul. 01, 2025
-
7.3
CVSS31CVE-2025-6957
A vulnerability was found in Campcodes Employee Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /process/eprocess.php. The manipulation of the argument mailuid leads to sql injection. The attack... Read more
Affected Products :- Published: Jul. 01, 2025
- Modified: Jul. 01, 2025
-
7.3
CVSS31CVE-2025-6959
A vulnerability classified as critical has been found in Campcodes Employee Management System 1.0. Affected is an unknown function of the file /eloginwel.php. The manipulation of the argument ID leads to sql injection. It is possible to launch the attack ... Read more
Affected Products :- Published: Jul. 01, 2025
- Modified: Jul. 01, 2025
-
7.3
CVSS31CVE-2025-6935
A vulnerability was found in Campcodes Sales and Inventory System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /pages/payment_add.php. The manipulation of the argument cid leads to sql injection. The att... Read more
Affected Products : sales_and_inventory_system- Published: Jul. 01, 2025
- Modified: Jul. 01, 2025
-
7.3
CVSS31CVE-2025-6956
A vulnerability was found in Campcodes Employee Management System 1.0. It has been classified as critical. This affects an unknown part of the file /changepassemp.php. The manipulation of the argument ID leads to sql injection. It is possible to initiate ... Read more
Affected Products :- Published: Jul. 01, 2025
- Modified: Jul. 01, 2025
-
7.3
CVSS31CVE-2025-6955
A vulnerability was found in Campcodes Employee Management System 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /process/aprocess.php. The manipulation of the argument mailuid leads to sql injection. The ... Read more
Affected Products :- Published: Jul. 01, 2025
- Modified: Jul. 01, 2025
-
7.3
CVSS31CVE-2025-6936
A vulnerability was found in code-projects Simple Pizza Ordering System 1.0. It has been classified as critical. This affects an unknown part of the file /addpro.php. The manipulation of the argument ID leads to sql injection. It is possible to initiate t... Read more
Affected Products : simple_pizza_ordering_system- Published: Jul. 01, 2025
- Modified: Jul. 01, 2025
-
7.3
CVSS31CVE-2025-6954
A vulnerability has been found in Campcodes Employee Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /applyleave.php. The manipulation of the argument ID leads to sql injection. The ... Read more
Affected Products :- Published: Jul. 01, 2025
- Modified: Jul. 01, 2025
-
7.3
CVSS31CVE-2025-6962
A vulnerability, which was classified as critical, was found in Campcodes Employee Management System 1.0. This affects an unknown part of the file /myprofileup.php. The manipulation of the argument ID leads to sql injection. It is possible to initiate the... Read more
Affected Products :- Published: Jul. 01, 2025
- Modified: Jul. 01, 2025
-
7.3
CVSS31CVE-2025-6937
A vulnerability was found in code-projects Simple Pizza Ordering System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /large.php. The manipulation of the argument ID leads to sql injection. The attack can be in... Read more
Affected Products : simple_pizza_ordering_system- Published: Jul. 01, 2025
- Modified: Jul. 01, 2025
-
7.3
CVSS31CVE-2025-6938
A vulnerability was found in code-projects Simple Pizza Ordering System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /editcus.php. The manipulation of the argument ID leads to sql injection. The attack may be ... Read more
Affected Products : simple_pizza_ordering_system- Published: Jul. 01, 2025
- Modified: Jul. 01, 2025
-
7.3
CVSS31CVE-2025-6961
A vulnerability, which was classified as critical, has been found in Campcodes Employee Management System 1.0. Affected by this issue is some unknown functionality of the file /mark.php. The manipulation of the argument ID leads to sql injection. The atta... Read more
Affected Products :- Published: Jul. 01, 2025
- Modified: Jul. 01, 2025
-
7.2
CVSS31CVE-2025-5817
The Amazon Products to WooCommerce plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 1.2.7 via the wcta2w_get_urls(). This makes it possible for unauthenticated attackers to make web requests to arbitr... Read more
Affected Products :- Published: Jul. 02, 2025
- Modified: Jul. 02, 2025
-
7.1
CVSS31CVE-2025-48379
Pillow is a Python imaging library. In versions 11.2.0 to before 11.3.0, there is a heap buffer overflow when writing a sufficiently large (>64k encoded with default settings) image in the DDS format due to writing into a buffer without checking for avail... Read more
Affected Products : pillow- Published: Jul. 01, 2025
- Modified: Jul. 01, 2025
-
7.1
CVSS31CVE-2025-24332
Nokia Single RAN AirScale baseband allows an authenticated administrative user access to all physical boards after performing a single login to the baseband system board. The baseband does not re-authenticate the user when they connect from the baseband s... Read more
Affected Products :- Published: Jul. 02, 2025
- Modified: Jul. 02, 2025