NA - CVE-2025-0037 - In AMD Versal Adaptive SoC devices, the lack of...
In AMD Versal Adaptive SoC devices, the lack of address validation when executing PLM runtime services through the PLM firmware can allow access to isolated or protected memory spaces, resulting in...
High - CVE-2025-5903 - A vulnerability was found in TOTOLINK T10...
A vulnerability was found in TOTOLINK T10 4.1.8cu.5207. It has been classified as critical. Affected is the function setWiFiAclRules of the file /cgi-bin/cstecgi.cgi of the component POST Request...
High - CVE-2025-5904 - A vulnerability was found in TOTOLINK T10...
A vulnerability was found in TOTOLINK T10 4.1.8cu.5207. It has been declared as critical. Affected by this vulnerability is the function setWiFiMeshName of the file /cgi-bin/cstecgi.cgi of the...
High - CVE-2025-5905 - A vulnerability was found in TOTOLINK T10...
A vulnerability was found in TOTOLINK T10 4.1.8cu.5207. It has been rated as critical. Affected by this issue is the function setWiFiRepeaterCfg of the file /cgi-bin/cstecgi.cgi of the component...
High - CVE-2025-23192 - SAP BusinessObjects Business Intelligence (BI...
SAP BusinessObjects Business Intelligence (BI Workspace) allows an unauthenticated attacker to craft and store malicious script within a workspace. When the victim accesses the workspace, the...
Medium - CVE-2025-31325 - Due to a Cross-Site Scripting vulnerability in...
Due to a Cross-Site Scripting vulnerability in SAP NetWeaver (ABAP Keyword Documentation), an unauthenticated attacker could inject malicious JavaScript into a web page through an unprotected...
High - CVE-2025-42977 - SAP NetWeaver Visual Composer contains a...
SAP NetWeaver Visual Composer contains a Directory Traversal vulnerability caused by insufficient validation of input paths provided by a high-privileged user. This allows an attacker to read or...
High - CVE-2025-42982 - SAP GRC allows a non-administrative user to...
SAP GRC allows a non-administrative user to access and initiate transaction which could allow them to modify or control the transmitted system credentials. This causes high impact on...
High - CVE-2025-42983 - SAP Business Warehouse and SAP Plug-In Basis...
SAP Business Warehouse and SAP Plug-In Basis allows an authenticated attacker to drop arbitrary SAP database tables, potentially resulting in a loss of data or rendering the system unusable. On...
Medium - CVE-2025-42984 - SAP S/4HANA Manage Central Purchase Contract...
SAP S/4HANA Manage Central Purchase Contract does not perform necessary authorization checks for an authenticated user. Due to this, an attacker could execute the function import on the entity...