NA - CVE-2025-7326 - Weak authentication in EOL ASP.NET Core allows...
Weak authentication in EOL ASP.NET Core allows an unauthorized attacker to elevate privileges over a network. NOTE: This CVE affects only End Of Life (EOL) software components. The vendor,...
NA - CVE-2025-0292 - SSRF in Ivanti Connect Secure before version...
SSRF in Ivanti Connect Secure before version 22.7R2.8 and Ivanti Policy Secure before version 22.7R1.5 allows a remote authenticated attacker with admin rights to access internal network services.
NA - CVE-2025-0293 - CLRF injection in Ivanti Connect Secure before...
CLRF injection in Ivanti Connect Secure before version 22.7R2.8 and Ivanti Policy Secure before version 22.7R1.5 allows a remote authenticated attacker with admin rights to write to a protected...
NA - CVE-2025-3648 - A vulnerability has been identified in the Now...
A vulnerability has been identified in the Now Platform that could result in data being inferred without authorization. Under certain conditional access control list (ACL) configurations, this...
NA - CVE-2025-43019 - A potential security vulnerability has been...
A potential security vulnerability has been identified in the HP Support Assistant, which allows a local attacker to escalate privileges via an arbitrary file deletion.
NA - CVE-2025-5464 - Insertion of sensitive information into a log...
Insertion of sensitive information into a log file in Ivanti Connect Secure before version 22.7R2.8 allows a local authenticated attacker to obtain that information.
NA - CVE-2025-6771 - OS command injection in Ivanti Endpoint Manager...
OS command injection in Ivanti Endpoint Manager Mobile (EPMM) before version 12.5.0.2,12.4.0.3 and 12.3.0.3 allows a remote authenticated attacker with high privileges to achieve remote code...
High - CVE-2025-7184 - A vulnerability was found in code-projects...
A vulnerability was found in code-projects Library System 1.0. It has been classified as critical. This affects an unknown part of the file /user/teacher/books.php. The manipulation of the argument...
High - CVE-2025-7185 - A vulnerability was found in code-projects...
A vulnerability was found in code-projects Library System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file /approve.php. The manipulation of the argument...
NA - CVE-2024-36348 - A transient execution vulnerability in some AMD...
A transient execution vulnerability in some AMD processors may allow a user process to infer the control registers speculatively even if UMIP feature is enabled, potentially resulting in...