Click to open the Alert Filter

 
Year Month
Severity
Categories
Search by Alert Name
Page(s) : 1 ... 733 734 735 736 737 738 739 740 741 742 [743] 744 745 746 747 748 749 750 751 752 753 ... Result(s) : 300013

Alerts Feed Alerts

DATE NAME CATEGORIES DETAIL
6.5 2025-03-13 CVE-2025-27103 cve DataEase is an open source business intelligence and data visualization tool. Prior to version 2.10.6, a bypass for the patch for CVE-2024-55953 allows authenticated users to re...
N/A 2025-03-13 CVE-2025-27107 cve Integrated Scripting is a tool for creating scripts for handling complex operations in Integrated Dynamics. Minecraft users who use Integrated Scripting prior to versions 1.21.1...
9.8 2025-03-13 CVE-2025-27138 cve DataEase is an open source business intelligence and data visualization tool. Prior to version 2.10.6, there is a flaw in the authentication in the io.dataease.auth.filter.Token...
N/A 2025-03-13 CVE-2025-28011 cve A SQL Injection was found in loginsystem/change-password.php in PHPGurukul User Registration & Login and User Management System v3.3 allows remote attackers to execute arbitrary...
N/A 2025-03-13 CVE-2025-29768 cve Vim, a text editor, is vulnerable to potential data loss with zip.vim and special crafted zip files in versions prior to 9.1.1198. The impact is medium because a user must be ma...
7.8 2025-03-13 CVE-2025-29773 cve Froxlor is open-source server administration software. A vulnerability in versions prior to 2.2.6 allows users (such as resellers or customers) to create accounts with the same ...
N/A 2025-03-13 CVE-2025-2079 cve Optigo Networks Visual BACnet Capture Tool and Optigo Visual Networks Capture Tool version 3.1.2rc11 contain a hard coded secret key. This could allow an attacker to generate va...
N/A 2025-03-13 CVE-2025-2080 cve Optigo Networks Visual BACnet Capture Tool and Optigo Visual Networks Capture Tool version 3.1.2rc11 contain an exposed web management service that could allow an attacker to by...
N/A 2025-03-13 CVE-2025-2081 cve Optigo Networks Visual BACnet Capture Tool and Optigo Visual Networks Capture Tool version 3.1.2rc11 are vulnerable to an attacker impersonating the web application service and ...
9.8 2025-03-13 CVE-2025-2263 cve During login to the web server in "Sante PACS Server.exe", OpenSSL function EVP_DecryptUpdate is called to decrypt the username and password. A fixed 0x80-byte stack-based buffe...
7.5 2025-03-13 CVE-2025-2264 cve A Path Traversal Information Disclosure vulnerability exists in "Sante PACS Server.exe". An unauthenticated remote attacker can exploit it to download arbitrary files on the dis...
N/A 2025-03-13 CVE-2025-2265 cve The password of a web user in "Sante PACS Server.exe" is zero-padded to 0x2000 bytes, SHA1-hashed, base64-encoded, and stored in the USER table in the SQLite database HTTP.db. H...
N/A 2025-03-13 CVE-2025-2284 cve A denial-of-service vulnerability exists in the "GetWebLoginCredentials" function in "Sante PACS Server.exe".
N/A 2025-03-13 CVE-2024-30143 cve HCL AppScan Traffic Recorder fails to adequately neutralize special characters within the filename, potentially allowing it to resolve to a location beyond the restricted direct...
7.2 2025-03-13 CVE-2025-24053 cve Improper authentication in Microsoft Dataverse allows an authorized attacker to elevate privileges over a network.
N/A 2025-03-13 CVE-2025-25363 cve An authenticated stored cross-site scripting (XSS) vulnerability in The Plugin People Enterprise Mail Handler for Jira Data Center (JEMH) before v4.1.69-dc allows attackers with...
N/A 2025-03-13 CVE-2025-25598 cve Incorrect access control in the scheduled tasks console of Inova Logic CUSTOMER MONITOR (CM) v3.1.757.1 allows attackers to escalate privileges via placing a crafted executable ...
N/A 2025-03-13 CVE-2025-27496 cve Snowflake, a platform for using artificial intelligence in the context of cloud computing, has a vulnerability in the Snowflake JDBC driver ("Driver") in versions 3.0.13 through...
N/A 2025-03-13 CVE-2025-2229 cve A token is created using the username, current date/time, and a fixed AES-128 encryption key, which is the same across all installations.
N/A 2025-03-13 CVE-2025-2230 cve A flaw exists in the Windows login flow where an AuthContext token can be exploited for replay attacks and authentication bypass.
Page(s) : 1 ... 733 734 735 736 737 738 739 740 741 742 [743] 744 745 746 747 748 749 750 751 752 753 ... Result(s) : 300013