791
|
- |
|
-
|
-
|
Authentication bypass by spoofing issue exists in FileMegane versions above 1.0.0.0 prior to 3.4.0.0, which may lead to user impersonation. If exploited, restricted file contents may be accessed.
|
CWE-290
Authentication Bypass by Spoofing
|
CVE-2025-25055
|
2025-02-18 09:15 |
2025-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
792
|
- |
|
-
|
-
|
Server-side request forgery (SSRF) vulnerability exists in FileMegane versions above 3.0.0.0 prior to 3.4.0.0. Executing arbitrary backend Web API requests could potentially lead to rebooting the ser…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2025-20075
|
2025-02-18 09:15 |
2025-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
793
|
- |
|
-
|
-
|
Improper neutralization of special elements used in an OS command ('OS Command Injection') issue exists in acmailer CGI ver.4.0.3 and earlier and acmailer DB ver.1.1.5 and earlier. If this vulnerabil…
|
CWE-78
OS Command
|
CVE-2021-46686
|
2025-02-18 09:15 |
2025-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
794
|
- |
|
-
|
-
|
RSA Authentication Manager before 8.7 SP2 Patch 1 allows XML External Entity (XXE) attacks via a license file, resulting in attacker-controlled files being stored on the product's server. Data exfilt…
|
-
|
CVE-2024-25066
|
2025-02-18 06:15 |
2025-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
795
|
- |
|
-
|
-
|
Rejected reason: Was determined not a vulnerability.
|
-
|
CVE-2021-30369
|
2025-02-18 05:15 |
2025-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
796
|
- |
|
-
|
-
|
Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accid…
|
-
|
CVE-2024-13837
|
2025-02-18 04:15 |
2025-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
797
|
3.5 |
LOW
Network
|
-
|
-
|
A vulnerability has been found in D-Link DIR-816 1.01TO and classified as problematic. Affected by this vulnerability is an unknown functionality of the file /cgi-bin/webproc?getpage=html/index.html&…
|
CWE-79 CWE-94
Cross-site Scripting Code Injection
|
CVE-2025-1392
|
2025-02-18 01:15 |
2025-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
798
|
5.5 |
MEDIUM
Network
|
-
|
-
|
The Stream plugin for WordPress is vulnerable to Server-Side Request Forgery in all versions up to, and including, 4.0.2 due to insufficient validation on the webhook feature. This makes it possible …
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2024-13879
|
2025-02-18 01:15 |
2025-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
799
|
- |
|
-
|
-
|
Dell NetWorker Management Console, version(s) 19.11 through 19.11.0.3 & Versions prior to 19.10.0.7 contain(s) an improper neutralization of server-side vulnerability. An unauthenticated attacker wit…
|
CWE-97
|
CVE-2025-21103
|
2025-02-17 23:15 |
2025-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
800
|
5.4 |
MEDIUM
Network
|
-
|
-
|
A flaw was found in the Keycloak organization feature, which allows the incorrect assignment of an organization to a user if their username or email matches the organization’s domain pattern. This is…
|
CWE-284
Improper Access Control
|
CVE-2025-1391
|
2025-02-17 23:15 |
2025-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|