NA - CVE-2025-7503 - An OEM IP camera manufactured by Shenzhen...
An OEM IP camera manufactured by Shenzhen Liandian Communication Technology LTD exposes a Telnet service (port 23) with undocumented, default credentials. The Telnet service is enabled by default...
High - CVE-2025-7455 - A vulnerability classified as critical was...
A vulnerability classified as critical was found in Campcodes Online Movie Theater Seat Reservation System 1.0. Affected by this vulnerability is an unknown functionality of the file...
High - CVE-2025-7456 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, has been found in Campcodes Online Movie Theater Seat Reservation System 1.0. Affected by this issue is some unknown functionality of the file...
High - CVE-2025-7457 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, was found in Campcodes Online Movie Theater Seat Reservation System 1.0. This affects an unknown part of the file /admin/manage_movie.php. The...
High - CVE-2025-7459 - A vulnerability classified as critical was...
A vulnerability classified as critical was found in code-projects Mobile Shop 1.0. This vulnerability affects unknown code of the file /EditMobile.php. The manipulation of the argument ID leads to...
NA - CVE-2025-53636 - Open OnDemand is an open-source HPC portal....
Open OnDemand is an open-source HPC portal. Users can flood logs by interacting with the shell app and generating many errors. Users who flood logs can create very large log files causing a Denial...
High - CVE-2025-7460 - A vulnerability has been found in TOTOLINK T6...
A vulnerability has been found in TOTOLINK T6 4.1.5cu.748_B20211015 and classified as critical. Affected by this vulnerability is the function setWiFiAclRules of the file /cgi-bin/cstecgi.cgi of...
NA - CVE-2025-6234 - The Hostel WordPress plugin before 1.1.5.8 does...
The Hostel WordPress plugin before 1.1.5.8 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used against...
NA - CVE-2025-6236 - The Hostel WordPress plugin before 1.1.5.9 does...
The Hostel WordPress plugin before 1.1.5.9 does not sanitise and escape some of its settings, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting attacks...
Medium - CVE-2025-7387 - The Lana Downloads Manager plugin for WordPress...
The Lana Downloads Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the endpoint parameters in versions up to, and including, 1.10.0 due to insufficient input...