671
|
- |
|
-
|
-
|
DLINK DIR-825 REVB 2.03 devices have an OS command injection vulnerability in the CGl interface apc_client_pin.cgi, which allows remote attackers to execute arbitrary commands via the parameter "wps_…
|
-
|
CVE-2024-57595
|
2025-01-28 01:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
672
|
- |
|
-
|
-
|
In SunGrow WiNet-SV200.001.00.P027 and earlier versions, when decrypting MQTT messages, the code that parses specific TLV fields does not have sufficient bounds checks. This may result in a stack-bas…
|
-
|
CVE-2024-50697
|
2025-01-28 01:15 |
2025-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
673
|
- |
|
-
|
-
|
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in wpWax Post Grid, Slider & Carousel Ultimate allows PHP Local File Inclusion. T…
|
CWE-98
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')
|
CVE-2025-24782
|
2025-01-28 00:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
674
|
- |
|
-
|
-
|
Missing Authorization vulnerability in Houzez.co Houzez. This issue affects Houzez: from n/a through 3.4.0.
|
CWE-862
Missing Authorization
|
CVE-2025-24747
|
2025-01-28 00:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
675
|
- |
|
-
|
-
|
Missing Authorization vulnerability in NotFound Bridge Core. This issue affects Bridge Core: from n/a through 3.3.
|
CWE-862
Missing Authorization
|
CVE-2025-24744
|
2025-01-28 00:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
676
|
- |
|
-
|
-
|
Missing Authorization vulnerability in Rometheme RomethemeKit For Elementor. This issue affects RomethemeKit For Elementor: from n/a through 1.5.2.
|
CWE-862
Missing Authorization
|
CVE-2025-24743
|
2025-01-28 00:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
677
|
- |
|
-
|
-
|
Cross-Site Request Forgery (CSRF) vulnerability in WP Go Maps (formerly WP Google Maps) WP Go Maps. This issue affects WP Go Maps: from n/a through 9.0.40.
|
CWE-352
Origin Validation Error
|
CVE-2025-24742
|
2025-01-28 00:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
678
|
- |
|
-
|
-
|
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in KB Support KB Support. This issue affects KB Support: from n/a through 1.6.7.
|
CWE-601
Open Redirect
|
CVE-2025-24741
|
2025-01-28 00:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
679
|
- |
|
-
|
-
|
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in ThimPress LearnPress. This issue affects LearnPress: from n/a through 4.2.7.1.
|
CWE-601
Open Redirect
|
CVE-2025-24740
|
2025-01-28 00:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
680
|
- |
|
-
|
-
|
Missing Authorization vulnerability in CodeSolz Better Find and Replace allows Privilege Escalation. This issue affects Better Find and Replace: from n/a through 1.6.7.
|
CWE-862
Missing Authorization
|
CVE-2025-24734
|
2025-01-28 00:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|