NA - CVE-2024-26155 - All versions of ETIC Telecom Remote Access...
All versions of ETIC Telecom Remote Access Server (RAS) prior to 4.5.0 expose clear text credentials in the web portal. An attacker can access the ETIC RAS web portal and view the HTML code,...
NA - CVE-2024-26156 - All versions of ETIC Telecom Remote Access...
All versions of ETIC Telecom Remote Access Server (RAS) prior to 4.5.0 are vulnerable to reflected cross site scripting (XSS) attacks in the method parameter. The ETIC RAS web server uses dynamic...
NA - CVE-2024-26157 - All versions of ETIC Telecom Remote Access...
All versions of ETIC Telecom Remote Access Server (RAS) prior to 4.5.0 are vulnerable to reflected cross site scripting (XSS) attacks in get view method under view parameter. The ETIC RAS web...
NA - CVE-2024-45832 - Hard-coded credentials were included as part of...
Hard-coded credentials were included as part of the application binary. These credentials served as part of the application authentication flow and communication with the mobile application. An...
NA - CVE-2024-53683 - A valid set of credentials in a .js file and a...
A valid set of credentials in a .js file and a static token for communication were obtained from the decompiled IPA. An attacker could use the information to disrupt normal use of the application...
NA - CVE-2024-54681 - Multiple bash files were present in the...
Multiple bash files were present in the application's private directory. Bash files can be used on their own, by an attacker that has already full access to the mobile platform to compromise...
NA - CVE-2024-12757 - Nedap Librix Ecoreader
is missing...
Nedap Librix Ecoreader is missing authentication for critical functions that could allow an unauthenticated attacker to potentially execute malicious code.
NA - CVE-2025-0430 - Belledonne Communications Linphone-Desktop
is...
Belledonne Communications Linphone-Desktop is vulnerable to a NULL Dereference vulnerability, which could allow a remote attacker to create a denial-of-service condition.
Medium - CVE-2025-0532 - A vulnerability was found in Codezips Gym...
A vulnerability was found in Codezips Gym Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /dashboard/admin/new_submit.php. The manipulation of...
High - CVE-2025-0533 - A vulnerability was found in 1000 Projects...
A vulnerability was found in 1000 Projects Campaign Management System Platform for Women 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the...