NA - CVE-2025-53392 - In Netgate pfSense CE 2.8.0, the "WebCfg -...
In Netgate pfSense CE 2.8.0, the "WebCfg - Diagnostics: Command" privilege allows reading arbitrary files via diag_command.php dlPath directory traversal. NOTE: the Supplier's perspective is...
High - CVE-2025-6828 - A vulnerability has been found in code-projects...
A vulnerability has been found in code-projects Inventory Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /orders.php. The manipulation of the...
Medium - CVE-2025-6829 - A vulnerability was found in aaluoxiang...
A vulnerability was found in aaluoxiang oa_system up to c3a08168c144f27256a90838492c713f55f1b207 and classified as critical. This issue affects the function outAddress of the component External...
Medium - CVE-2025-6735 - A vulnerability classified as critical has been...
A vulnerability classified as critical has been found in juzaweb CMS 3.4.2. Affected is an unknown function of the file /admin-cp/imports of the component Import Page. The manipulation leads to...
Medium - CVE-2025-6736 - A vulnerability classified as critical was...
A vulnerability classified as critical was found in juzaweb CMS 3.4.2. Affected by this vulnerability is an unknown functionality of the file /admin-cp/theme/install of the component Add New Themes...
Medium - CVE-2025-6738 - A vulnerability, which was classified as...
A vulnerability, which was classified as critical, has been found in huija bicycleSharingServer up to 7b8a3ba48ad618604abd4797d2e7cf3b5ac7625a. Affected by this issue is the function...