High - CVE-2025-0847 - A vulnerability was found in 1000 Projects...
A vulnerability was found in 1000 Projects Employee Task Management System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /index.php of the component...
Medium - CVE-2025-0848 - A vulnerability was found in Tenda A18 up to...
A vulnerability was found in Tenda A18 up to 15.13.07.09. It has been rated as critical. This issue affects the function SetCmdlineRun of the file /goform/SetCmdlineRun of the component HTTP POST...
Medium - CVE-2025-0849 - A vulnerability classified as critical has been...
A vulnerability classified as critical has been found in CampCodes School Management Software 1.0. Affected is an unknown function of the file /edit-staff/ of the component Staff Handler. The...
NA - CVE-2025-0373 - On 64-bit systems, the implementation of...
On 64-bit systems, the implementation of VOP_VPTOFH() in the cd9660, tarfs and ext2fs filesystems overflows the destination FID buffer by 4 bytes, a stack buffer overflow. A NFS server that...
NA - CVE-2025-0374 - When etcupdate encounters conflicts while...
When etcupdate encounters conflicts while merging files, it saves a version containing conflict markers in /var/db/etcupdate/conflicts. This version does not preserve the mode of the input file,...
NA - CVE-2025-0662 - In some cases, the ktrace facility will log the...
In some cases, the ktrace facility will log the contents of kernel structures to userspace. In one such case, ktrace dumps a variable-sized sockaddr to userspace. There, the full sockaddr is...
NA - CVE-2025-23374 - Dell Networking Switches running Enterprise...
Dell Networking Switches running Enterprise SONiC OS, version(s) prior to 4.4.1 and 4.2.3, contain(s) an Insertion of Sensitive Information into Log File vulnerability. A high privileged attacker...
NA - CVE-2024-10309 - The Tracking Code Manager WordPress plugin...
The Tracking Code Manager WordPress plugin before 2.4.0 does not sanitise and escape some of its metabox settings when outputing them in the page, which could allow users with a role as low as...
NA - CVE-2024-12400 - The tourmaster WordPress plugin before 5.3.5...
The tourmaster WordPress plugin before 5.3.5 does not escape generated URLs before outputting them in attributes, leading to Reflected Cross-Site Scripting.