NA - CVE-2024-57514 - The TP-Link Archer A20 v3 router is vulnerable...
The TP-Link Archer A20 v3 router is vulnerable to Cross-site Scripting (XSS) due to improper handling of directory listing paths in the web interface. When a specially crafted URL is visited, the...
Low - CVE-2025-0785 - A vulnerability was found in ESAFENET CDG V5...
A vulnerability was found in ESAFENET CDG V5 and classified as problematic. This issue affects some unknown processing of the file /SysConfig.jsp. The manipulation of the argument help leads to...
NA - CVE-2025-0786 - A vulnerability was found in ESAFENET CDG V5....
A vulnerability was found in ESAFENET CDG V5. It has been classified as critical. Affected is an unknown function of the file /appDetail.jsp. The manipulation of the argument flowId leads to sql...
NA - CVE-2025-0787 - A vulnerability was found in ESAFENET CDG V5....
A vulnerability was found in ESAFENET CDG V5. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /appDetail.jsp. The manipulation of the...
NA - CVE-2024-48310 - AutoLib Software Systems OPAC v20.10 was...
AutoLib Software Systems OPAC v20.10 was discovered to have multiple API keys exposed within the source code. Attackers may use these keys to access the backend API or other sensitive information.
NA - CVE-2024-56529 - Mailcow through 2024-11b has a session fixation...
Mailcow through 2024-11b has a session fixation vulnerability in the web panel. It allows remote attackers to set a session identifier when HSTS is disabled on a victim's browser. After a user...
NA - CVE-2025-0788 - A vulnerability was found in ESAFENET CDG V5....
A vulnerability was found in ESAFENET CDG V5. It has been rated as critical. Affected by this issue is some unknown functionality of the file /content_top.jsp. The manipulation of the argument id...
NA - CVE-2025-0789 - A vulnerability classified as critical has been...
A vulnerability classified as critical has been found in ESAFENET CDG V5. This affects an unknown part of the file /doneDetail.jsp. The manipulation of the argument flowId leads to sql injection....