NA - CVE-2025-36845 - An issue was discovered in Eveo URVE Web...
An issue was discovered in Eveo URVE Web Manager 27.02.2025. The endpoint /_internal/redirect.php allows for Server-Side Request Forgery (SSRF). The endpoint takes a URL as input, sends a request...
NA - CVE-2025-36846 - An issue was discovered in Eveo URVE Web...
An issue was discovered in Eveo URVE Web Manager 27.02.2025. The application exposes a /_internal/pc/vpro.php localhost endpoint to unauthenticated users that is vulnerable to OS Command Injection....
NA - CVE-2025-44652 - In Netgear RAX30 V1.0.10.94_3, the...
In Netgear RAX30 V1.0.10.94_3, the USERLIMIT_GLOBAL option is set to 0 in multiple bftpd-related configuration files. This can cause DoS attacks when unlimited users are connected.
NA - CVE-2025-44654 - In Linksys E2500 3.0.04.002, the...
In Linksys E2500 3.0.04.002, the chroot_local_user option is enabled in the vsftpd configuration file. This could lead to unauthorized access to system files, privilege escalation, or use of the...
NA - CVE-2025-52575 - EspoCRM is an Open Source CRM (Customer...
EspoCRM is an Open Source CRM (Customer Relationship Management) software. EspoCRM versions 9.1.6 and earlier are vulnerable to blind LDAP Injection when LDAP authentication is enabled. A remote,...
High - CVE-2025-7933 - A vulnerability classified as critical was...
A vulnerability classified as critical was found in Campcodes Sales and Inventory System 1.0. This vulnerability affects unknown code of the file /pages/settings_update.php of the component Setting...
NA - CVE-2020-26799 - A reflected cross-site scripting (XSS)...
A reflected cross-site scripting (XSS) vulnerability was discovered in index.php on Luxcal 4.5.2 which allows an unauthenticated attacker to steal other users' data.
Medium - CVE-2025-36057 - IBM Cognos Analytics Mobile (iOS) 1.1.0 through...
IBM Cognos Analytics Mobile (iOS) 1.1.0 through 1.1.22 is vulnerable to authentication bypass by using the Local Authentication Framework library which is not needed as biometric authentication...