NA - CVE-2025-3027 - The vulnerability exists in the EJBCA service,...
The vulnerability exists in the EJBCA service, version 8.0 Enterprise. By making a small change to the PATH of the URL associated with the service, the server fails to find the requested file and...
High - CVE-2025-2586 - A flaw was found in the OpenShift Lightspeed...
A flaw was found in the OpenShift Lightspeed Service, which is vulnerable to unauthenticated API request flooding. Repeated queries to non-existent endpoints inflate metrics storage and processing,...
Medium - CVE-2025-2993 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, has been found in Tenda FH1202 1.2.0.14(408). Affected by this issue is some unknown functionality of the file /default.cfg. The manipulation of...
NA - CVE-2025-2994 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, was found in Tenda FH1202 1.2.0.14(408). This affects an unknown part of the file /goform/qossetting of the component Web Management Interface....
NA - CVE-2025-3022 - Os command injection vulnerability in...
Os command injection vulnerability in e-solutions e-management. This vulnerability allows an attacker to execute arbitrary commands on the server via the ‘client’ parameter in the...
NA - CVE-2025-29266 - Unraid 7.0.0 before 7.0.1 allows remote users...
Unraid 7.0.0 before 7.0.1 allows remote users to access the Unraid WebGUI and web console as root without authentication if a container is running in Host networking mode with Use Tailscale enabled.
Medium - CVE-2025-2995 - A vulnerability has been found in Tenda FH1202...
A vulnerability has been found in Tenda FH1202 1.2.0.14(408) and classified as critical. This vulnerability affects unknown code of the file /goform/SysToolChangePwd of the component Web Management...
Medium - CVE-2025-2996 - A vulnerability was found in Tenda FH1202...
A vulnerability was found in Tenda FH1202 1.2.0.14(408) and classified as critical. This issue affects some unknown processing of the file /goform/SysToolDDNS of the component Web Management...
NA - CVE-2025-31526 - Improper Neutralization of Special Elements...
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in eleopard Behance Portfolio Manager allows SQL Injection. This issue affects Behance...