Medium - CVE-2025-2471 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, was found in PHPGurukul Boat Booking System 1.0. Affected is an unknown function of the file /boat-details.php. The manipulation of the argument...
High - CVE-2025-2472 - A vulnerability has been found in PHPGurukul...
A vulnerability has been found in PHPGurukul Apartment Visitors Management System 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /index.php...
High - CVE-2025-2473 - A vulnerability was found in PHPGurukul Company...
A vulnerability was found in PHPGurukul Company Visitor Management System 2.0 and classified as critical. Affected by this issue is some unknown functionality of the file /index.php of the...
High - CVE-2025-2262 - The The Logo Slider – Logo Showcase, Logo...
The The Logo Slider – Logo Showcase, Logo Carousel, Logo Gallery and Client Logo Presentation plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and...
NA - CVE-2025-0755 - The various bson_append functions in the...
The various bson_append functions in the MongoDB C driver library may be susceptible to buffer overflow when performing operations that could result in a final BSON document which exceeds the...
NA - CVE-2025-24306 - Improper neutralization of special elements...
Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exists in +F FS010M versions prior to V2.0.0_1101. If this vulnerability is exploited, an...
NA - CVE-2025-25220 - Improper neutralization of special elements...
Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exists in +F FS010M versions prior to V2.0.1_1101. If this vulnerability is exploited, an...
High - CVE-2024-23942 - A local user may find a configuration file on...
A local user may find a configuration file on the client workstation with unencrypted sensitive data. This allows an attacker to impersonate the device or prevent the device from accessing the...
Critical - CVE-2024-23943 - An unauthenticated remote attacker can gain...
An unauthenticated remote attacker can gain access to the cloud API due to a lack of authentication for a critical function in the affected devices. Availability is not affected.
Medium - CVE-2024-41975 - An unauthenticated remote attacker can gain...
An unauthenticated remote attacker can gain limited information of the PLC network but the user management of the PLCs prevents the actual access to the PLCs.