High - CVE-2025-5738 - A vulnerability was found in TOTOLINK X15...
A vulnerability was found in TOTOLINK X15 1.0.0-B20230714.1105. It has been rated as critical. Affected by this issue is some unknown functionality of the file /boafrm/formStats of the component...
High - CVE-2025-5739 - A vulnerability classified as critical has been...
A vulnerability classified as critical has been found in TOTOLINK X15 1.0.0-B20230714.1105. This affects an unknown part of the file /boafrm/formSaveConfig of the component HTTP POST Request...
NA - CVE-2023-2921 - The Short URL WordPress plugin through 1.6.8...
The Short URL WordPress plugin through 1.6.8 does not properly sanitise and escape a parameter before using it in SQL statement, leading to a SQL injection exploitable by users with relatively low...
NA - CVE-2025-48780 - A deserialization of untrusted data...
A deserialization of untrusted data vulnerability in the download file function of Soar Cloud HRD Human Resource Management System through version 7.3.2025.0408 allows remote attackers to execute...
NA - CVE-2025-48781 - An external control of file name or path...
An external control of file name or path vulnerability in the download file function of Soar Cloud HRD Human Resource Management System through version 7.3.2025.0408 allows remote attackers to...
NA - CVE-2025-48782 - An unrestricted upload of file with dangerous...
An unrestricted upload of file with dangerous type vulnerability in the upload file function of Soar Cloud HRD Human Resource Management System through version 7.3.2025.0408 allows remote attackers...
NA - CVE-2025-48783 - An external control of file name or path...
An external control of file name or path vulnerability in the delete file function of Soar Cloud HRD Human Resource Management System through version 7.3.2025.0408 allows remote attackers to delete...
NA - CVE-2025-48784 - A missing authorization vulnerability in Soar...
A missing authorization vulnerability in Soar Cloud HRD Human Resource Management System through version 7.3.2025.0408 allows remote attackers to modify system settings without prior authorization.
NA - CVE-2025-5192 - A missing authentication for critical function...
A missing authentication for critical function vulnerability in the client application of Soar Cloud HRD Human Resource Management System through version 7.3.2025.0408 allows remote attackers to...
High - CVE-2025-5755 - A vulnerability was found in SourceCodester...
A vulnerability was found in SourceCodester Open Source Clinic Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /email_config.php. The...