Low - CVE-2025-2970 - A vulnerability classified as problematic has...
A vulnerability classified as problematic has been found in ConcreteCMS up to 9.3.9. Affected is an unknown function of the component Switch Language Block Handler. The manipulation of the argument...
Low - CVE-2025-2971 - A vulnerability classified as problematic was...
A vulnerability classified as problematic was found in ConcreteCMS up to 9.3.9. Affected by this vulnerability is an unknown functionality of the component List Block Handler. The manipulation of...
Low - CVE-2025-2972 - A vulnerability, which was classified as...
A vulnerability, which was classified as problematic, has been found in ConcreteCMS up to 9.3.9. Affected by this issue is some unknown functionality of the component Page Attribute Display Block...
Medium - CVE-2025-2973 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, was found in code-projects College Management System 1.0. This affects an unknown part of the file /Admin/student.php. The manipulation of the...
Low - CVE-2025-2974 - A vulnerability has been found in CodeCanyon...
A vulnerability has been found in CodeCanyon Perfex CRM up to 3.2.1 and classified as problematic. This vulnerability affects unknown code of the file /contract of the component Contracts. The...
Low - CVE-2025-2975 - A vulnerability was found in GFI KerioConnect...
A vulnerability was found in GFI KerioConnect 10.0.6 and classified as problematic. This issue affects some unknown processing of the file Settings/Email/Signature/EditHtmlSource of the component...
Critical - CVE-2025-3011 - SOOP-CLM from PiExtract has a SQL Injection...
SOOP-CLM from PiExtract has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary SQL commands to read, modify, and delete database contents.
NA - CVE-2025-3013 - Insecure Direct Object References (IDOR) in...
Insecure Direct Object References (IDOR) in access control in Customer Portal before 2.1.4 on NightWolf Penetration Testing allows an attacker to access via manipulating request parameters or...
NA - CVE-2025-3014 - Insecure Direct Object References (IDOR) in...
Insecure Direct Object References (IDOR) in access control in Tracking 2.1.4 on NightWolf Penetration Testing allows an attacker to access via manipulating request parameters or object references.
NA - CVE-2025-24517 - Use of client-side authentication issue exists...
Use of client-side authentication issue exists in CHOCO TEI WATCHER mini (IB-MCT001) all versions. If this issue is exploited, a remote attacker may obtain the product login password without...