Low - CVE-2024-52905 - IBM Sterling B2B Integrator Standard Edition...
IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.1.2.6 and 6.2.0.0 through 6.2.0.3 could disclose sensitive database information to a privileged user.
NA - CVE-2025-25382 - An issue in the Property Tax Payment Portal in...
An issue in the Property Tax Payment Portal in Information Kerala Mission SANCHAYA v3.0.4 allows attackers to arbitrarily modify payment amounts via a crafted request.
NA - CVE-2025-24813 - Path Equivalence: 'file.Name'...
Path Equivalence: 'file.Name' (Internal Dot) leading to Remote Code Execution and/or Information disclosure and/or malicious content added to uploaded files via write enabled Default...
NA - CVE-2024-52812 - LF Edge eKuiper is an internet-of-things data...
LF Edge eKuiper is an internet-of-things data analytics and stream processing engine. Prior to version 2.0.8, auser with rights to modify the service (e.g. kuiperUser role) can inject a cross-site...
NA - CVE-2024-53307 - A reflected cross-site scripting (XSS)...
A reflected cross-site scripting (XSS) vulnerability in the /mw/ endpoint of Evisions MAPS v6.10.2.267 allows attackers to execute arbitrary code in the context of a user's browser via...
NA - CVE-2024-55199 - A Stored Cross Site Scripting (XSS)...
A Stored Cross Site Scripting (XSS) vulnerability in Celk Sistemas Celk Saude v.3.1.252.1 allows a remote attacker to store JavaScript code inside a PDF file through the file upload feature. When...
NA - CVE-2025-1296 - Nomad Community and Nomad Enterprise (“Nomad”)...
Nomad Community and Nomad Enterprise (“Nomad”) are vulnerable to unintentional exposure of the workload identity token and client secret token in audit logs. This vulnerability, identified as...
NA - CVE-2024-44179 - This issue was addressed by restricting options...
This issue was addressed by restricting options offered on a locked device. This issue is fixed in iOS 17.7 and iPadOS 17.7, iOS 18 and iPadOS 18, macOS Sequoia 15. An attacker with physical access...