NA - CVE-2025-25038 - An OS command injection vulnerability exists in...
An OS command injection vulnerability exists in MiniDVBLinux version 5.4 and earlier. The system’s web-based management interface fails to properly sanitize user-supplied input before passing it to...
NA - CVE-2025-34023 - A path traversal vulnerability exists in the...
A path traversal vulnerability exists in the Karel IP1211 IP Phone's web management panel. The /cgi-bin/cgiServer.exx endpoint fails to properly sanitize user input to the page parameter,...
NA - CVE-2025-34024 - An OS command injection vulnerability exists in...
An OS command injection vulnerability exists in the Edimax EW-7438RPn firmware version 1.13 and prior via the mp.asp form handler. The /goform/mp endpoint improperly handles user-supplied input to...
NA - CVE-2025-34029 - An OS command injection vulnerability exists in...
An OS command injection vulnerability exists in the Edimax EW-7438RPn Mini firmware version 1.13 and prior via the syscmd.asp form handler. The /goform/formSysCmd endpoint exposes a system command...
NA - CVE-2025-34030 - An OS command injection vulnerability exists in...
An OS command injection vulnerability exists in sar2html version 3.2.2 and prior via the plot parameter in index.php. The application fails to sanitize user-supplied input before using it in a...
High - CVE-2025-6359 - A vulnerability was found in code-projects...
A vulnerability was found in code-projects Simple Pizza Ordering System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /cashconfirm.php. The...
High - CVE-2025-6360 - A vulnerability classified as critical has been...
A vulnerability classified as critical has been found in code-projects Simple Pizza Ordering System 1.0. This affects an unknown part of the file /portal.php. The manipulation of the argument ID...