NA - CVE-2025-52577 - A vulnerability exists in Advantech iView that...
A vulnerability exists in Advantech iView that could allow SQL injection and remote code execution through NetworkServlet.archiveTrapRange(). This issue requires an authenticated attacker with at...
NA - CVE-2025-52579 - Emerson ValveLink Products store sensitive...
Emerson ValveLink Products store sensitive information in cleartext in memory. The sensitive memory might be saved to disk, stored in a core dump, or remain uncleared if the product crashes, or...
NA - CVE-2025-53397 - A vulnerability exists in Advantech iView...
A vulnerability exists in Advantech iView versions prior to 5.7.05 build 7057, which could allow a reflected cross-site scripting (XSS) attack. By exploiting this flaw, an attacker could execute...
NA - CVE-2025-53471 - Emerson ValveLink products
receive input or...
Emerson ValveLink products receive input or data, but it do not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
NA - CVE-2025-53475 - A vulnerability exists in Advantech iView that...
A vulnerability exists in Advantech iView that could allow for SQL injection and remote code execution through NetworkServlet.getNextTrapPage(). This issue requires an authenticated attacker...
NA - CVE-2025-53509 - A vulnerability exists in Advantech iView that...
A vulnerability exists in Advantech iView that allows for argument injection in the NetworkServlet.restoreDatabase(). This issue requires an authenticated attacker with at least user-level...
NA - CVE-2025-53515 - A vulnerability exists in Advantech iView that...
A vulnerability exists in Advantech iView that allows for SQL injection and remote code execution through NetworkServlet.archiveTrap(). This issue requires an authenticated attacker with at least...
NA - CVE-2025-53519 - A vulnerability exists in Advantech iView...
A vulnerability exists in Advantech iView versions prior to 5.7.05 build 7057, which could allow a reflected cross-site scripting (XSS) attack. By manipulating specific parameters, an attacker...
High - CVE-2025-7420 - A vulnerability was found in Tenda O3V2...
A vulnerability was found in Tenda O3V2 1.0.0.12(3880). It has been declared as critical. This vulnerability affects the function formWifiBasicSet of the file /goform/setWrlBasicInfo of the...
NA - CVE-2025-5241 - Overly Restrictive Account Lockout Mechanism...
Overly Restrictive Account Lockout Mechanism vulnerability in Mitsubishi Electric Corporation MELSEC iQ-F Series allows a remote unauthenticated attacker to lockout legitimate users for a certain...