NA - CVE-2025-0831 - Out-Of-Bounds Read vulnerability exists in the...
Out-Of-Bounds Read vulnerability exists in the JT file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWORKS Desktop 2025. This vulnerability could allow an attacker to execute arbitrary...
NA - CVE-2025-30483 - Dell ECS versions prior to 3.8.1.5/ ObjectScale...
Dell ECS versions prior to 3.8.1.5/ ObjectScale version 4.0.0.0 contains an Insertion of Sensitive Information into Log File vulnerability. A low privileged attacker with local access could...
Medium - CVE-2025-33097 - IBM QRadar SIEM 7.5 - 7.5.0 UP12 IF02 is...
IBM QRadar SIEM 7.5 - 7.5.0 UP12 IF02 is vulnerable to stored cross-site scripting. This vulnerability allows authenticated users to embed arbitrary JavaScript code in the Web UI thus altering the...
NA - CVE-2025-48795 - Apache CXF stores large stream based messages...
Apache CXF stores large stream based messages as temporary files on the local filesystem. A bug was introduced which means that the entire temporary file is read into memory and then logged. An...
NA - CVE-2025-52377 - Command injection vulnerability in Nexxt...
Command injection vulnerability in Nexxt Solutions NCM-X1800 Mesh Router versions UV1.2.7 and below, allowing authenticated attackers to execute arbitrary commands on the device. The vulnerability...
NA - CVE-2025-52378 - Cross-Site Scripting (XSS) vulnerability in...
Cross-Site Scripting (XSS) vulnerability in Nexxt Solutions NCM-X1800 Mesh Router firmware UV1.2.7 and below allowing attackers to inject JavaScript code that is executed in the context of...
NA - CVE-2025-52379 - Nexxt Solutions NCM-X1800 Mesh Router firmware...
Nexxt Solutions NCM-X1800 Mesh Router firmware UV1.2.7 and below contains an authenticated command injection vulnerability in the firmware update feature. The /web/um_fileName_set.cgi and...
NA - CVE-2025-53621 - DSpace open source software is a repository...
DSpace open source software is a repository application which provides durable access to digital resources. Two related XML External Entity (XXE) injection possibilities impact all versions of...
NA - CVE-2025-53622 - DSpace open source software is a repository...
DSpace open source software is a repository application which provides durable access to digital resources. Prior to versions 7.6.4, 8.2, and 9.1, a path traversal vulnerability is possible during...
NA - CVE-2025-6971 - Use After Free vulnerability exists in the...
Use After Free vulnerability exists in the CATPRODUCT file reading procedure in SOLIDWORKS eDrawings on Release SOLIDWORKS Desktop 2025. This vulnerability could allow an attacker to execute...