NA - CVE-2025-27617 - Pimcore is an open source data and experience...
Pimcore is an open source data and experience management platform. Prior to version 11.5.4, authenticated users can craft a filter string used to cause a SQL injection. Version 11.5.4 fixes the issue.
Medium - CVE-2024-56338 - IBM Sterling B2B Integrator Standard Edition...
IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.3 is vulnerable to cross-site scripting. This vulnerability allows a privileged user to embed...
NA - CVE-2024-9157 - ** UNSUPPORTED WHEN ASSIGNED **
A privilege...
** UNSUPPORTED WHEN ASSIGNED ** A privilege escalation vulnerability in CxUIUSvc64.exe and CxUIUSvc32.exe of Synaptics audio drivers allows a local authorized attacker to load a DLL in a...
NA - CVE-2025-0149 - Insufficient verification of data authenticity...
Insufficient verification of data authenticity in some Zoom Workplace Apps may allow an unprivileged user to conduct a denial of service via network access.
High - CVE-2025-21169 - Substance3D - Designer versions 14.1 and...
Substance3D - Designer versions 14.1 and earlier are affected by a Heap-based Buffer Overflow vulnerability that could result in arbitrary code execution in the context of the current user....
NA - CVE-2025-22213 - Inadequate checks in the Media Manager allowed...
Inadequate checks in the Media Manager allowed users with "edit" privileges to change file extension to arbitrary extension, including .php and other potentially executable extensions.