NA - CVE-2025-44951 - A missing length check in `ogs_pfcp_dev_add`...
A missing length check in `ogs_pfcp_dev_add` function from PFCP library, used by both smf and upf in open5gs 2.7.2 and earlier, allows a local attacker to cause a Buffer Overflow by changing the...
NA - CVE-2025-44952 - A missing length check in `ogs_pfcp_subnet_add`...
A missing length check in `ogs_pfcp_subnet_add` function from PFCP library, used by both smf and upf in open5gs 2.7.2 and earlier, allows a local attacker to cause a Buffer Overflow by changing the...
NA - CVE-2025-4820 - Impact
Cloudflare quiche was discovered to be...
Impact Cloudflare quiche was discovered to be vulnerable to incorrect congestion window growth, which could cause it to send data at a rate faster than the path might actually support. An...
NA - CVE-2025-4821 - Impact
Cloudflare quiche was discovered to be...
Impact Cloudflare quiche was discovered to be vulnerable to incorrect congestion window growth, which could cause it to send data at a rate faster than the path might actually support. An...
Medium - CVE-2024-54172 - IBM Sterling B2B Integrator and IBM Sterling...
IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.4 is vulnerable to cross-site request forgery which could allow an attacker to execute...
Medium - CVE-2025-1348 - IBM Sterling B2B Integrator and IBM Sterling...
IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.4 could allow a local user to obtain sensitive information from a user’s web browser...
Medium - CVE-2025-1349 - IBM Sterling B2B Integrator and IBM Sterling...
IBM Sterling B2B Integrator and IBM Sterling File Gateway 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.4 is vulnerable to stored cross-site scripting. This vulnerability allows a privileged...
Medium - CVE-2025-20234 - A vulnerability in Universal Disk Format (UDF)...
A vulnerability in Universal Disk Format (UDF) processing of ClamAV could allow an unauthenticated, remote attacker to cause a denial of service (DoS) condition on an affected device. This...
High - CVE-2025-20271 - A vulnerability in the Cisco AnyConnect VPN...
A vulnerability in the Cisco AnyConnect VPN server of Cisco Meraki MX and Cisco Meraki Z Series Teleworker Gateway devices could allow an unauthenticated, remote attacker to cause a denial of...
Critical - CVE-2025-20260 - A vulnerability in the PDF scanning processes...
A vulnerability in the PDF scanning processes of ClamAV could allow an unauthenticated, remote attacker to cause a buffer overflow condition, cause a denial of service (DoS) condition, or execute...