Medium - CVE-2025-1849 - A vulnerability classified as critical was...
A vulnerability classified as critical was found in zj1983 zz up to 2024-8. Affected by this vulnerability is an unknown functionality of the file /import_data_todb. The manipulation of the...
NA - CVE-2025-27590 - In oxidized-web (aka Oxidized Web) before...
In oxidized-web (aka Oxidized Web) before 0.15.0, the RANCID migration page allows an unauthenticated user to gain control over the Linux user account that is running oxidized-web.
High - CVE-2025-1850 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, has been found in Codezips College Management System 1.0. Affected by this issue is some unknown functionality of the file /university.php. The...
High - CVE-2025-1851 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, was found in Tenda AC7 up to 15.03.06.44. This affects the function formSetFirewallCfg of the file /goform/SetFirewallCfg. The manipulation of the...
High - CVE-2025-1852 - A vulnerability has been found in Totolink...
A vulnerability has been found in Totolink EX1800T 9.1.0cu.2112_B20220316 and classified as critical. This vulnerability affects the function loginAuth of the file /cgi-bin/cstecgi.cgi. The...
High - CVE-2025-1853 - A vulnerability was found in Tenda AC8...
A vulnerability was found in Tenda AC8 16.03.34.06 and classified as critical. This issue affects the function sub_49E098 of the file /goform/SetIpMacBind of the component Parameter Handler. The...
NA - CVE-2024-53382 - Prism (aka PrismJS) through 1.29.0 allows DOM...
Prism (aka PrismJS) through 1.29.0 allows DOM Clobbering (with resultant XSS for untrusted input that contains HTML but does not directly contain JavaScript), because document.currentScript lookup...
NA - CVE-2024-53386 - Stage.js through 0.8.10 allows DOM Clobbering...
Stage.js through 0.8.10 allows DOM Clobbering (with resultant XSS for untrusted input that contains HTML but does not directly contain JavaScript), because document.currentScript lookup can be...
Medium - CVE-2025-1854 - A vulnerability was found in Codezips Gym...
A vulnerability was found in Codezips Gym Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /dashboard/admin/del_member.php. The manipulation of...
Medium - CVE-2025-1855 - A vulnerability was found in PHPGurukul Online...
A vulnerability was found in PHPGurukul Online Shopping Portal 2.1. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /product-details.php....