NA - CVE-2025-41459 - Insufficient protection against brute-force and...
Insufficient protection against brute-force and runtime manipulation in the local authentication component in Two App Studio Journey 5.5.6 on iOS allows local attackers to bypass biometric and...
Medium - CVE-2025-5681 - Authorization Bypass Through User-Controlled...
Authorization Bypass Through User-Controlled Key vulnerability in Turtek Software Eyotek allows Exploitation of Trusted Identifiers.This issue affects Eyotek: before 23.06.2025.
NA - CVE-2025-7924 - A vulnerability classified as problematic was...
A vulnerability classified as problematic was found in PHPGurukul Online Banquet Booking System 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/admin-profile.php....
NA - CVE-2025-30192 - An attacker spoofing answers to ECS enabled...
An attacker spoofing answers to ECS enabled requests sent out by the Recursor has a chance of success higher than non-ECS enabled queries. The updated version include various mitigations against...
NA - CVE-2025-41100 - Incorrect authentication vulnerability in...
Incorrect authentication vulnerability in ParkingDoor. Through this vulnerability it is possible to operate the device without the access being logged in the application and even if the access...
High - CVE-2025-4040 - Authorization Bypass Through User-Controlled...
Authorization Bypass Through User-Controlled Key vulnerability in Turpak Automatic Station Monitoring System allows Privilege Escalation.This issue affects Automatic Station Monitoring System:...
Medium - CVE-2025-7925 - A vulnerability, which was classified as...
A vulnerability, which was classified as problematic, has been found in PHPGurukul Online Banquet Booking System 1.0. Affected by this issue is some unknown functionality of the file...
NA - CVE-2024-13973 - A post-auth SQL injection vulnerability in...
A post-auth SQL injection vulnerability in WebAdmin of Sophos Firewall versions older than 21.0 MR1 (21.0.1) can potentially lead to administrators achieving arbitrary code execution.
NA - CVE-2024-13974 - A business logic vulnerability in the Up2Date...
A business logic vulnerability in the Up2Date component of Sophos Firewall older than version 21.0 MR1 (20.0.1) can lead to attackers controlling the firewall’s DNS environment to achieve remote...