Medium · CVSS 4.8
A stored cross-site scripting (XSS) vulnerability in the component php-inventory-management-system/brand.php of Inventory Management System v1 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into the Brand Name parameter.
Published Feb 10, 2023 · Updated Mar 24, 2025
High · CVSS 8.1
Baicells Nova 436Q, Nova 430E, Nova 430I, and Neutrino 430 LTE TDD eNodeB devices with firmware through QRTB 2.12.7 are vulnerable to remote shell code exploitation via HTTP command injections. Commands are executed using pre-login execution and executed with root permissions. The following methods below have been tested and validated by a 3rd party analyst and has been confirmed exploitable special thanks to Rustam Amin for providing the steps to reproduce.
Published Feb 10, 2023 · Updated Mar 24, 2025
Medium · CVSS 4
Improper Restriction of Rendered UI Layers or Frames in GitHub repository cockpit-hq/cockpit prior to 2.3.9-dev.
Published Feb 11, 2023 · Updated Mar 24, 2025
High · CVSS 8.4
Cross-site Scripting (XSS) - Generic in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
Published Feb 12, 2023 · Updated Mar 24, 2025
High · CVSS 8.1
Cross-site Scripting (XSS) - Generic in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
Published Feb 12, 2023 · Updated Mar 24, 2025
High · CVSS 7.5
Mercedes Benz head-unit NTG 6 contains functions to import or export profile settings over USB. During parsing you can trigger that the service will be crashed.
Published Feb 13, 2025 · Updated Mar 24, 2025
High · CVSS 7.5
The ExtractCCDAAttributes Processor in Apache NiFi 1.2.0 through 1.19.1 does not restrict XML External Entity references.
Flow configurations that include the ExtractCCDAAttributes Processor are vulnerable to malicious XML documents that contain Document Type Declarations with XML External Entity references.
The resolution disables Document Type Declarations and disallows XML External Entity resolution in the ExtractCCDAAttributes Processor.
Published Feb 10, 2023 · Updated Mar 24, 2025
Critical · CVSS 9.8
D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the FILECODE parameter at /goform/formLogin.
Published Feb 10, 2023 · Updated Mar 24, 2025
Critical · CVSS 9.8
D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the config.smtp_email_subject parameter at /goform/formSetEmail.
Published Feb 10, 2023 · Updated Mar 24, 2025
Critical · CVSS 9.8
D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the curTime parameter at /goform/formSetRoute.
Published Feb 10, 2023 · Updated Mar 24, 2025
Medium · CVSS 6.1
Cross Site Scripting (XSS) vulnerability in Provide server 14.4 allows attackers to execute arbitrary code through the server-log via username field from the login form.
Published Feb 10, 2023 · Updated Mar 24, 2025
High · CVSS 8.6
Authentication Bypass by Primary Weakness in GitHub repository modoboa/modoboa prior to 2.0.4.
Published Feb 10, 2023 · Updated Mar 24, 2025
High · CVSS 7.2
SQL Injection in GitHub repository ampache/ampache prior to 5.5.7,develop.
Published Feb 10, 2023 · Updated Mar 24, 2025
Critical · CVSS 9.8
Mercedes-Benz head-unit NTG6 contains functions to import or export profile settings over USB. Some values of this table are serialized archive according boost library. The version of boost library contains vulnerability integer overflow.
Published Feb 13, 2025 · Updated Mar 24, 2025
Critical · CVSS 9.8
D-Link N300 WI-FI Router DIR-605L v2.13B01 was discovered to contain a stack overflow via the webpage parameter at /goform/formWPS.
Published Feb 10, 2023 · Updated Mar 24, 2025
High · CVSS 8.3
A vulnerability was found in Tenda AC23 16.03.07.45 and classified as critical. Affected by this issue is the function formSetSysToolDDNS/formGetSysToolDDNS of the file /bin/httpd. The manipulation leads to out-of-bounds write. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-220640.
Published Feb 11, 2023 · Updated Mar 24, 2025
High · CVSS 7.8
A command injection vulnerability in the firmware_update command, in the device's restricted telnet interface, allows an authenticated attacker to execute arbitrary commands as root.
Published Feb 11, 2023 · Updated Mar 24, 2025
Low · CVSS 3.3
Insufficient verification of data authenticity in
the configuration state machine may allow a local attacker to potentially load
arbitrary bitstreams.
Published Feb 13, 2024 · Updated Mar 22, 2025
High · CVSS 7.2
Sudo before 1.9.13p2 has a double free in the per-command chroot feature.
Published Feb 28, 2023 · Updated Mar 21, 2025
Medium · CVSS 5.4
Improper neutralization of input during web page generation allows an authenticated attacker with access to a restricted account to submit malicious Javascript as the description for a calendar event, which would then be executed in other users' browsers if they browse to that event. This could result in stealing session tokens from users with higher permission levels or forcing users to make actions without their knowledge.
Published Feb 28, 2023 · Updated Mar 21, 2025
Medium · CVSS 6.1
Improper neutralization of input during web page generation allows an unauthenticated attacker to submit malicious Javascript as the answer to a questionnaire which would then be executed when an authenticated user reviews the candidate's submission. This could be used to steal other users’ cookies and force users to make actions without their knowledge.
Published Feb 28, 2023 · Updated Mar 21, 2025
Medium · CVSS 5.4
An open redirect vulnerability exposes OpenCATS to template injection due to improper validation of user-supplied GET parameters.
Published Feb 28, 2023 · Updated Mar 21, 2025
High · CVSS 7.5
An unauthenticated path traversal vulnerability affects the "STAGIL Navigation for Jira - Menu & Themes" plugin before 2.0.52 for Jira. By modifying the fileName parameter to the snjFooterNavigationConfig endpoint, it is possible to traverse and read the file system.
Published Feb 28, 2023 · Updated Mar 21, 2025
High · CVSS 7.7
The WP Airbnb Review Slider WordPress plugin before 3.3 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by users with a role as low as subscriber.
Published Feb 13, 2023 · Updated Mar 21, 2025
Medium · CVSS 6.8
The Amazon JS WordPress plugin through 0.10 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks.
Published Feb 13, 2023 · Updated Mar 21, 2025
Medium · CVSS 5.4
The GPT AI Power: Content Writer & ChatGPT & Image Generator & WooCommerce Product Writer & AI Training WordPress plugin before 1.4.38 does not perform any kind of nonce or privilege checks before letting logged-in users modify arbitrary posts.
Published Feb 13, 2023 · Updated Mar 21, 2025
Unknown · CVSS Not scored
The WP Yelp Review Slider WordPress plugin before 7.1 does not properly sanitise and escape a parameter before using it in a SQL statement, leading to a SQL injection exploitable by users with a role as low as subscriber.
Published Feb 13, 2023 · Updated Mar 21, 2025
High · CVSS 7.7
The Simple URLs WordPress plugin before 115 does not escape some parameters before using them in various SQL statements used by AJAX actions available by any authenticated users, leading to a SQL injection exploitable by low privilege users such as subscriber.
Published Feb 13, 2023 · Updated Mar 21, 2025
Medium · CVSS 6.8
The Judge.me Product Reviews for WooCommerce WordPress plugin before 1.3.21 does not validate and escape some of its shortcode attributes before outputting them back in a page/post where the shortcode is embed, which could allow users with the contributor role and above to perform Stored Cross-Site Scripting attacks.
Published Feb 13, 2023 · Updated Mar 21, 2025
Medium · CVSS 4.3
An issue has been discovered in GitLab CE/EE affecting all versions starting from 14.0 before 15.6.7, all versions starting from 15.7 before 15.7.6, all versions starting from 15.8 before 15.8.1. It was possible to trigger a DoS attack by uploading a malicious Helm chart.
Published Feb 13, 2023 · Updated Mar 21, 2025
Medium · CVSS 6.8
LibTIFF 4.4.0 has an out-of-bounds read in tiffcrop in tools/tiffcrop.c:3488, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit afaabc3e.
Published Feb 13, 2023 · Updated Mar 21, 2025
Medium · CVSS 6.8
LibTIFF 4.4.0 has an out-of-bounds read in tiffcrop in tools/tiffcrop.c:3592, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit afaabc3e.
Published Feb 13, 2023 · Updated Mar 21, 2025
Medium · CVSS 6.8
LibTIFF 4.4.0 has an out-of-bounds read in tiffcrop in libtiff/tif_unix.c:368, invoked by tools/tiffcrop.c:2903 and tools/tiffcrop.c:6921, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit afaabc3e.
Published Feb 13, 2023 · Updated Mar 21, 2025
Medium · CVSS 6.8
LibTIFF 4.4.0 has an out-of-bounds read in tiffcrop in tools/tiffcrop.c:3400, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit afaabc3e.
Published Feb 13, 2023 · Updated Mar 21, 2025
Medium · CVSS 6.8
LibTIFF 4.4.0 has an out-of-bounds read in tiffcrop in tools/tiffcrop.c:3701, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit afaabc3e.
Published Feb 13, 2023 · Updated Mar 21, 2025
Medium · CVSS 6.8
LibTIFF 4.4.0 has an out-of-bounds write in tiffcrop in tools/tiffcrop.c:3502, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 33aee127.
Published Feb 13, 2023 · Updated Mar 21, 2025
Medium · CVSS 6.8
LibTIFF 4.4.0 has an out-of-bounds write in tiffcrop in libtiff/tif_unix.c:368, invoked by tools/tiffcrop.c:2903 and tools/tiffcrop.c:6778, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 33aee127.
Published Feb 13, 2023 · Updated Mar 21, 2025
Medium · CVSS 6.8
LibTIFF 4.4.0 has an out-of-bounds write in tiffcrop in tools/tiffcrop.c:3724, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 33aee127.
Published Feb 13, 2023 · Updated Mar 21, 2025
Medium · CVSS 6.8
LibTIFF 4.4.0 has an out-of-bounds write in tiffcrop in tools/tiffcrop.c:3516, allowing attackers to cause a denial-of-service via a crafted tiff file. For users that compile libtiff from sources, the fix is available with commit 33aee127.
Published Feb 13, 2023 · Updated Mar 21, 2025
High · CVSS 8.1
Code Injection in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
Published Feb 12, 2023 · Updated Mar 21, 2025
High · CVSS 8.1
Command Injection in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
Published Feb 12, 2023 · Updated Mar 21, 2025
High · CVSS 7.6
Uncaught Exception in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
Published Feb 12, 2023 · Updated Mar 21, 2025
High · CVSS 8.3
Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
Published Feb 12, 2023 · Updated Mar 21, 2025
Medium · CVSS 6.5
Code Injection in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
Published Feb 12, 2023 · Updated Mar 21, 2025
High · CVSS 8.3
Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
Published Feb 12, 2023 · Updated Mar 21, 2025
High · CVSS 7.1
Weak Password Requirements in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
Published Feb 12, 2023 · Updated Mar 21, 2025
Critical · CVSS 9.1
The ccmweb component of Mitel MiContact Center Business server 9.2.2.0 through 9.4.1.0 could allow an unauthenticated attacker to download arbitrary files, due to insufficient restriction of URL parameters. A successful exploit could allow access to sensitive information.
Published Feb 13, 2023 · Updated Mar 21, 2025
High · CVSS 7.8
Out-of-bound write vulnerability exists in Screen Creator Advance 2 Ver.0.1.1.4 Build01 and earlier due to lack of error handling process when out of specification errors are detected. Having a user of Screen Creator Advance 2 to open a specially crafted project file may lead to information disclosure and/or arbitrary code execution.
Published Feb 13, 2023 · Updated Mar 21, 2025
High · CVSS 7.8
Out-of-bound read vulnerability exists in Screen Creator Advance 2 Ver.0.1.1.4 Build01 and earlier because the end of data cannot be verified when processing template information. Having a user of Screen Creator Advance 2 to open a specially crafted project file may lead to information disclosure and/or arbitrary code execution.
Published Feb 13, 2023 · Updated Mar 21, 2025
High · CVSS 7.8
Out-of-bound read vulnerability exists in Screen Creator Advance 2 Ver.0.1.1.4 Build01 and earlier because the end of data cannot be verified when processing file structure information. Having a user of Screen Creator Advance 2 to open a specially crafted project file may lead to information disclosure and/or arbitrary code execution.
Published Feb 13, 2023 · Updated Mar 21, 2025