NA - CVE-2025-34044 - A remote command injection vulnerability exists...
A remote command injection vulnerability exists in the confirm.php interface of the WIFISKY 7-layer Flow Control Router via a specially-crafted HTTP GET request to the t parameter. Insufficient...
NA - CVE-2025-34045 - A path traversal vulnerability exists in WeiPHP...
A path traversal vulnerability exists in WeiPHP 5.0, an open source WeChat public account platform development framework by Shenzhen Yuanmengyun Technology Co., Ltd. The flaw occurs in the picUrl...
NA - CVE-2025-34047 - A path traversal vulnerability exists in the...
A path traversal vulnerability exists in the Leadsec SSL VPN (formerly Lenovo NetGuard), allowing unauthenticated attackers to read arbitrary files on the underlying system via the ostype parameter...
NA - CVE-2025-34048 - A path traversal vulnerability exists in the...
A path traversal vulnerability exists in the web management interface of D-Link DSL-2730U, DSL-2750U, and DSL-2750E ADSL routers with firmware versions IN_1.02, SEA_1.04, and SEA_1.07. The...
NA - CVE-2025-34049 - An OS command injection vulnerability exists in...
An OS command injection vulnerability exists in the OptiLink ONT1GEW GPON router firmware version V2.1.11_X101 Build 1127.190306 and earlier. The router’s web management interface fails to properly...
Medium - CVE-2025-36034 - IBM InfoSphere DataStage Flow Designer in IBM...
IBM InfoSphere DataStage Flow Designer in IBM InfoSphere Information Server 11.7 discloses sensitive user information in API requests in clear text that could be intercepted using man in the middle...
NA - CVE-2025-51671 - A SQL injection vulnerability was discovered in...
A SQL injection vulnerability was discovered in the PHPGurukul Dairy Farm Shop Management System 1.3. The vulnerability allows remote attackers to execute arbitrary SQL code via the category and...