NA - CVE-2025-26793 - The Web GUI configuration panel of Hirsch...
The Web GUI configuration panel of Hirsch (formerly Identiv and Viscount) Enterphone MESH through 2024 ships with default credentials (username freedom, password viscount). The administrator is not...
NA - CVE-2024-10404 - CalInvocationHandler in Brocade
SANnav before...
CalInvocationHandler in Brocade SANnav before 2.3.1b logs sensitive information in clear text. The vulnerability could allow an authenticated, local attacker to view Brocade Fabric OS switch...
High - CVE-2024-55904 - IBM DevOps Deploy 8.0 through 8.0.1.4, 8.1...
IBM DevOps Deploy 8.0 through 8.0.1.4, 8.1 through 8.1.0.0 / IBM UrbanCode Deploy 7.0 through 7.0.5.25, 7.1 through 7.1.2.21, 7.2 through 7.2.3.14, and 7.3 through 7.3.2.9 could allow a remote...
NA - CVE-2025-1053 - Under certain error conditions at time of...
Under certain error conditions at time of SANnav installation or upgrade, the encryption key can be written into and obtained from a Brocade SANnav supportsave. An attacker with privileged access...
NA - CVE-2025-26519 - musl libc 0.9.13 through 1.2.5 before 1.2.6 has...
musl libc 0.9.13 through 1.2.5 before 1.2.6 has an out-of-bounds write vulnerability when an attacker can trigger iconv conversion of untrusted EUC-KR text to UTF-8.
NA - CVE-2024-2240 - Docker daemon in Brocade SANnav before SANnav...
Docker daemon in Brocade SANnav before SANnav 2.3.1b runs without auditing. The vulnerability could allow a remote authenticated attacker to execute various attacks.
NA - CVE-2025-23406 - Out-of-bounds read vulnerability caused by...
Out-of-bounds read vulnerability caused by improper checking of TCP MSS option values exists in Cente middleware TCP/IP Network Series, which may lead to processing a specially crafted packet to...
NA - CVE-2024-13493 - The Sensly Online Presence WordPress plugin...
The Sensly Online Presence WordPress plugin through 0.6 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site...
Medium - CVE-2024-13641 - The Return Refund and Exchange For WooCommerce...
The Return Refund and Exchange For WooCommerce – Return Management System, RMA Exchange, Wallet And Cancel Order Features plugin for WordPress is vulnerable to Sensitive Information Exposure in all...
Medium - CVE-2024-13692 - The Return Refund and Exchange For WooCommerce...
The Return Refund and Exchange For WooCommerce – Return Management System, RMA Exchange, Wallet And Cancel Order Features plugin for WordPress is vulnerable to Insecure Direct Object Reference in...