NA - CVE-2025-28380 - A cross-site scripting (XSS) vulnerability in...
A cross-site scripting (XSS) vulnerability in OpenC3 COSMOS v6.0.0 allows attackers to execute arbitrary web scripts or HTML via injecting a crafted payload into the URL parameter.
NA - CVE-2025-28386 - A remote code execution (RCE) vulnerability in...
A remote code execution (RCE) vulnerability in the Plugin Management component of OpenC3 COSMOS v6.0.0 allows attackers to execute arbitrary code via uploading a crafted .txt file.
NA - CVE-2025-36631 - In Tenable Agent versions prior to 10.8.5 on a...
In Tenable Agent versions prior to 10.8.5 on a Windows host, it was found that a non-administrative user could overwrite arbitrary local system files with log content at SYSTEM privilege.
NA - CVE-2025-36633 - In Tenable Agent versions prior to 10.8.5 on a...
In Tenable Agent versions prior to 10.8.5 on a Windows host, it was found that a non-administrative user could arbitrarily delete local system files with SYSTEM privilege, potentially leading to...
NA - CVE-2025-6029 - Use of fixed learning codes, one code to lock...
Use of fixed learning codes, one code to lock the car and the other code to unlock it, the Key Fob Transmitter in KIA-branded Aftermarket Generic Smart Keyless Entry System, primarily distributed...