NA - CVE-2025-24852 - Storing passwords in a recoverable format issue...
Storing passwords in a recoverable format issue exists in CHOCO TEI WATCHER mini (IB-MCT001) all versions. If this issue is exploited, an attacker who can access the microSD card used on the...
NA - CVE-2025-25211 - Weak password requirements issue exists in...
Weak password requirements issue exists in CHOCO TEI WATCHER mini (IB-MCT001) all versions. If this issue is exploited, a brute-force attack may allow an attacker unauthorized access and login.
NA - CVE-2025-26689 - Direct request ('Forced Browsing')...
Direct request ('Forced Browsing') issue exists in CHOCO TEI WATCHER mini (IB-MCT001) all versions. If a remote attacker sends a specially crafted HTTP request to the product, the product...
Low - CVE-2025-2976 - A vulnerability was found in GFI KerioConnect...
A vulnerability was found in GFI KerioConnect 10.0.6. It has been classified as problematic. Affected is an unknown function of the component File Upload. The manipulation leads to cross site...
Low - CVE-2025-2977 - A vulnerability was found in GFI KerioConnect...
A vulnerability was found in GFI KerioConnect 10.0.6. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the component PDF File Handler. The...
NA - CVE-2025-31103 - Untrusted data deserialization vulnerability...
Untrusted data deserialization vulnerability exists in a-blog cms. Processing a specially crafted request may store arbitrary files on the server where the product is running. This can be leveraged...
NA - CVE-2025-0613 - The Photo Gallery by 10Web WordPress plugin...
The Photo Gallery by 10Web WordPress plugin before 1.8.34 does not sanitised and escaped comment added on images by unauthenticated users, leading to an Unauthenticated Stored-XSS attack when...
Low - CVE-2025-2979 - A vulnerability classified as problematic has...
A vulnerability classified as problematic has been found in WCMS 11. This affects an unknown part of the file /index.php?anonymous/setregister of the component Registration. The manipulation of the...
NA - CVE-2025-30835 - Improper Control of Filename for...
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Bastien Ho Accounting for WooCommerce allows PHP Local File...