Medium · CVSS 5.4
Employee Record Management System v 1.2 is vulnerable to Cross Site Scripting (XSS) via editempprofile.php.
Published Oct 28, 2022 · Updated May 7, 2025
Critical · CVSS 9.8
SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_Plist.php.
Published Oct 28, 2022 · Updated May 7, 2025
Critical · CVSS 9.8
SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_Info.php.
Published Oct 28, 2022 · Updated May 7, 2025
Critical · CVSS 9.8
SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_Zekou.php.
Published Oct 28, 2022 · Updated May 7, 2025
Critical · CVSS 9.8
SEMCMS SHOP v 1.1 is vulnerable to SQL via Ant_Message.php.
Published Oct 28, 2022 · Updated May 7, 2025
Critical · CVSS 9.8
SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_BlogCat.php.
Published Oct 28, 2022 · Updated May 7, 2025
Critical · CVSS 9.8
SEMCMS SHOP v 1.1 is vulnerable to SQL Injection via Ant_Menu.php.
Published Oct 28, 2022 · Updated May 7, 2025
Critical · CVSS 9.8
Heron versions <= 0.20.4-incubating allows CRLF log injection because of the lack of escaping in the log statements. Please update to version 0.20.5-incubating which addresses this issue.
Published Oct 24, 2022 · Updated May 7, 2025
Medium · CVSS 6.5
A broken access control vulnerability in the SubNet_handler_func function of spx_restservice allows an attacker to arbitrarily change the security access rights to KVM and Virtual Media functionalities. This issue affects: Lanner Inc IAC-AST2500A standard firmware version 1.10.0.
Published Oct 24, 2022 · Updated May 7, 2025
Medium · CVSS 4.9
An improper input validation vulnerability in the TLS certificate generation function allows an attacker to cause a Denial-of-Service (DoS) condition which can only be reverted via a factory reset. This issue affects: Lanner Inc IAC-AST2500A standard firmware version 1.10.0.
Published Oct 24, 2022 · Updated May 7, 2025
Medium · CVSS 5.3
A broken access control vulnerability in the KillDupUsr_func function of spx_restservice allows an attacker to arbitrarily terminate active sessions of other users, causing a Denial-of-Service (DoS) condition, if an input parameter is correctly guessed. This issue affects: Lanner Inc IAC-AST2500A standard firmware version 1.10.0.
Published Oct 24, 2022 · Updated May 7, 2025
Medium · CVSS 5.3
A broken access control vulnerability in the FirstReset_handler_func function of spx_restservice allows an attacker to arbitrarily send reboot commands to the BMC, causing a Denial-of-Service (DoS) condition. This issue affects: Lanner Inc IAC-AST2500A standard firmware version 1.10.0.
Published Oct 24, 2022 · Updated May 7, 2025
Medium · CVSS 6.5
A broken access control vulnerability in the First_network_func function of spx_restservice allows an attacker to arbitrarily change the network configuration of the BMC. This issue affects: Lanner Inc IAC-AST2500A standard firmware version 1.10.0.
Published Oct 24, 2022 · Updated May 7, 2025
Critical · CVSS 9.1
Command injection and multiple stack-based buffer overflows vulnerabilities in the modifyUserb_func function of spx_restservice allow an authenticated attacker to execute arbitrary code with the same privileges as the server user (root). This issue affects: Lanner Inc IAC-AST2500A standard firmware version 1.10.0.
Published Oct 24, 2022 · Updated May 7, 2025
Critical · CVSS 10
A stack-based buffer overflow vulnerability in a subfunction of the Login_handler_func function of spx_restservice allows an attacker to execute arbitrary code with the same privileges as the server user (root). This issue affects: Lanner Inc IAC-AST2500A standard firmware version 1.10.0.
Published Oct 24, 2022 · Updated May 7, 2025
Critical · CVSS 9.8
SEMCMS Shop V 1.1 is vulnerable to SQL Injection via Ant_Global.php.
Published Oct 28, 2022 · Updated May 7, 2025
Critical · CVSS 9.8
SEMCMS v 1.1 is vulnerable to SQL Injection via Ant_Pro.php.
Published Oct 28, 2022 · Updated May 7, 2025
Critical · CVSS 10
Command injection and multiple stack-based buffer overflows vulnerabilities in the Login_handler_func function of spx_restservice allow an attacker to execute arbitrary code with the same privileges as the server user (root). This issue affects: Lanner Inc IAC-AST2500A standard firmware version 1.10.0.
Published Oct 24, 2022 · Updated May 7, 2025
Critical · CVSS 10
Multiple command injections and stack-based buffer overflows vulnerabilities in the SubNet_handler_func function of spx_restservice allow an attacker to execute arbitrary code with the same privileges as the server user (root). This issue affects: Lanner Inc IAC-AST2500A standard firmware version 1.10.0.
Published Oct 24, 2022 · Updated May 7, 2025
Critical · CVSS 9.1
GNU Libtasn1 before 4.19.0 has an ETYPE_OK off-by-one array size check that affects asn1_encode_simple_der.
Published Oct 24, 2022 · Updated May 7, 2025
High · CVSS 7.2
myVesta Control Panel before 0.9.8-26-43 and Vesta Control Panel before 0.9.8-26 are vulnerable to command injection. An authenticated and remote administrative user can execute arbitrary commands via the v_sftp_license parameter when sending HTTP POST requests to the /edit/server endpoint.
Published Oct 24, 2022 · Updated May 7, 2025
Medium · CVSS 5.3
Observable discrepancies in the login process allow an attacker to guess legitimate user names registered in the BMC. This issue affects: Lanner Inc IAC-AST2500A standard firmware version 1.10.0.
Published Oct 24, 2022 · Updated May 7, 2025
Critical · CVSS 9.8
xfig 3.2.7 is vulnerable to Buffer Overflow.
Published Oct 31, 2022 · Updated May 7, 2025
Medium · CVSS 5.8
Session fixation and insufficient session expiration vulnerabilities allow an attacker to perfom session hijacking attacks against users. This issue affects: Lanner Inc IAC-AST2500A standard firmware version 1.10.0.
Published Oct 24, 2022 · Updated May 7, 2025
High · CVSS 7.5
A remote, unauthenticated, directory traversal vulnerability was identified within the web interface used by IND780 Advanced Weighing Terminals Build 8.0.07 March 19, 2018 (SS Label 'IND780_8.0.07'), Version 7.2.10 June 18, 2012 (SS Label 'IND780_7.2.10'). It was possible to traverse the folders of the affected host by providing a traversal path to the 'webpage' parameter in AutoCE.ini This could allow a remote unauthenticated adversary to access additional files on the affected system. This could also allow the adversary to perform further enumeration against the affected host to identify the versions of the systems in use, in order to launch further attacks in future.
Published Oct 31, 2022 · Updated May 7, 2025
Medium · CVSS 6.1
SEMCMS SHOP v 1.1 is vulnerable to Cross Site Scripting (XSS) via Ant_M_Coup.php.
Published Oct 28, 2022 · Updated May 7, 2025
Critical · CVSS 9.8
Stimulsoft (aka Stimulsoft Reports) 2013.1.1600.0, when Compilation Mode is used, allows an attacker to execute arbitrary C# code on any machine that renders a report, including the application server or a user's local machine, as demonstrated by System.Diagnostics.Process.Start.
Published Oct 29, 2022 · Updated May 7, 2025
Medium · CVSS 5.8
Use of hard-coded TLS certificate by default allows an attacker to perform Man-in-the-Middle (MitM) attacks even in the presence of the HTTPS connection. This issue affects: Lanner Inc IAC-AST2500A standard firmware version 1.00.0.
Published Oct 24, 2022 · Updated May 5, 2025
Critical · CVSS 10
All versions of CEVAS prior to 1.01.46 do not sufficiently validate user-controllable input and could allow a user to bypass authentication and retrieve data with specially crafted SQL queries.
Published Oct 28, 2022 · Updated May 5, 2025
Medium · CVSS 5.9
The provided HCL Launch Container images contain non-unique HTTPS certificates and a database encryption key. The fix provides directions and tools to replace the non-unique keys and certificates. This does not affect the standard installer packages.
Published Oct 31, 2022 · Updated May 2, 2025
Unknown · CVSS Not scored
Node.js before 16.6.0, 14.17.4, and 12.22.4 is vulnerable to a use after free attack where an attacker might be able to exploit the memory corruption, to change process behavior.
Published Oct 7, 2021 · Updated Apr 30, 2025
Medium · CVSS 5.4
In “Calibre-web” application, v0.6.0 to v0.6.12, are vulnerable to Stored XSS in “Metadata”. An attacker that has access to edit the metadata information, can inject JavaScript payload in the description field. When a victim tries to open the file, XSS will be triggered.
Published Oct 4, 2021 · Updated Apr 30, 2025
High · CVSS 8.8
In “Orchard core CMS” application, versions 1.0.0-beta1-3383 to 1.0.0 are vulnerable to an improper session termination after password change. When a password has been changed by the user or by an administrator, a user that was already logged in, will still have access to the application even after the password was changed.
Published Oct 10, 2021 · Updated Apr 30, 2025
Medium · CVSS 5.4
In “OpenCMS”, versions 10.5.0 to 11.0.2 are affected by a stored XSS vulnerability that allows low privileged application users to store malicious scripts in the Sitemap functionality. These scripts are executed in a victim’s browser when they open the page containing the vulnerable field.
Published Oct 19, 2021 · Updated Apr 30, 2025
Medium · CVSS 6.1
In Camaleon CMS application, versions 0.0.1 to 2.6.0 are vulnerable to stored XSS, that allows an unauthenticated attacker to store malicious scripts in the comments section of the post. These scripts are executed in a victim’s browser when they open the page containing the malicious comment.
Published Oct 20, 2021 · Updated Apr 30, 2025
High · CVSS 8.8
Camaleon CMS 0.1.7 to 2.6.0 doesn’t terminate the active session of the users, even after the admin changes the user’s password. A user that was already logged in, will still have access to the application even after the password was changed.
Published Oct 20, 2021 · Updated Apr 30, 2025
Medium · CVSS 4.3
In Camaleon CMS, versions 2.0.1 to 2.6.0 are vulnerable to an Uncaught Exception. The app's media upload feature crashes permanently when an attacker with a low privileged access uploads a specially crafted .svg file
Published Oct 20, 2021 · Updated Apr 30, 2025
Medium · CVSS 4.9
In Camaleon CMS, versions 2.1.2.0 to 2.6.0, are vulnerable to Server-Side Request Forgery (SSRF) in the media upload feature, which allows admin users to fetch media files from external URLs but fails to validate URLs referencing to localhost or other internal servers. This allows attackers to read files stored in the internal server.
Published Oct 20, 2021 · Updated Apr 30, 2025
Medium · CVSS 5.4
In PiranhaCMS, versions 7.0.0 to 9.1.1 are vulnerable to stored XSS due to the page title improperly sanitized. By creating a page with a specially crafted page title, a low privileged user can trigger arbitrary JavaScript execution.
Published Oct 25, 2021 · Updated Apr 30, 2025
Medium · CVSS 6.5
Adobe Commerce versions 2.4.2-p2 (and earlier), 2.4.3 (and earlier) and 2.3.7p1 (and earlier) are affected by a cross-site request forgery (CSRF) vulnerability via a Wishlist Share Link. Successful exploitation could lead to unauthorized addition to customer cart by an unauthenticated attacker. Access to the admin console is not required for successful exploitation.
Published Oct 15, 2021 · Updated Apr 23, 2025
Low · CVSS 3.3
Adobe Acrobat Reader DC version 21.007.20095 (and earlier), 21.007.20096 (and earlier), 20.004.30015 (and earlier), and 17.011.30202 (and earlier) is affected by a out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mitigations such as ASLR. Exploitation of this issue requires user interaction in that a victim must open a malicious PDF file.
Published Oct 15, 2021 · Updated Apr 23, 2025
Low · CVSS 3.3
Adobe Acrobat Reader DC version 21.007.20095 (and earlier), 21.007.20096 (and earlier), 20.004.30015 (and earlier), and 17.011.30202 (and earlier) is affected by a use-after-free that allow a remote attacker to disclose sensitive information on affected installations of of Adobe Acrobat Reader DC. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of JPG2000 images.
Published Oct 15, 2021 · Updated Apr 23, 2025
High · CVSS 7.8
Adobe Acrobat Reader DC version 21.007.20095 (and earlier), 21.007.20096 (and earlier), 20.004.30015 (and earlier), and 17.011.30202 (and earlier) is affected by a use-after-free vulnerability in the processing of the GetURL function on a global object window that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Published Oct 15, 2021 · Updated Apr 23, 2025
High · CVSS 7.8
Adobe Acrobat Reader DC version 21.007.20095 (and earlier), 21.007.20096 (and earlier), 20.004.30015 (and earlier), and 17.011.30202 (and earlier) is affected by an out-of-bounds write vulnerability when parsing a crafted JPEG2000 file, which could result in arbitrary code execution in the context of the current user. Exploitation of this issue requires user interaction in that a victim must open a malicious file.
Published Oct 15, 2021 · Updated Apr 23, 2025
Medium · CVSS 6.1
Adobe Connect version 11.2.3 (and earlier) is affected by a reflected Cross-Site Scripting (XSS) vulnerability. If an attacker is able to convince a victim to visit a URL referencing a vulnerable page, malicious JavaScript content may be executed within the context of the victim's browser.
Published Oct 15, 2021 · Updated Apr 23, 2025
Critical · CVSS 9.8
Adobe Connect version 11.2.3 (and earlier) is affected by a Deserialization of Untrusted Data vulnerability to achieve arbitrary method invocation when AMF messages are deserialized on an Adobe Connect server. An attacker can leverage this to execute remote code execution on the server.
Published Oct 21, 2021 · Updated Apr 23, 2025
High · CVSS 8.8
An attacker can take leverage on PerFact OpenVPN-Client versions 1.4.1.0 and prior to send the config command from any application running on the local host machine to force the back-end server into initializing a new open-VPN instance with arbitrary open-VPN configuration. This could result in the attacker achieving execution with privileges of a SYSTEM user.
Published Oct 14, 2022 · Updated Apr 16, 2025
Medium · CVSS 6.2
An attacker may be able to use minify route with a relative path to view any file on the Cassia Networks Access Controller prior to 2.0.1.
Published Oct 14, 2022 · Updated Apr 16, 2025
High · CVSS 7.5
Honeywell Experion PKS C200, C200E, C300, and ACE controllers are vulnerable to relative path traversal, which may allow an attacker access to unauthorized files and directories.
Published Oct 28, 2022 · Updated Apr 16, 2025
Critical · CVSS 9.1
Honeywell Experion PKS C200, C200E, C300, and ACE controllers are vulnerable to improper neutralization of special elements in output, which may allow an attacker to remotely execute arbitrary code and cause a denial-of-service condition.
Published Oct 28, 2022 · Updated Apr 16, 2025