961
|
- |
|
-
|
-
|
In the Linux kernel, the following vulnerability has been resolved:
netfilter: nf_tables: adapt set backend to use GC transaction API
Use the GC transaction API to replace the old and buggy gc API …
|
-
|
CVE-2023-52923
|
2025-01-20 20:15 |
2025-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
962
|
7.2 |
HIGH
Network
|
-
|
-
|
The a+HRD from aEnrich Technology has an Insecure Deserialization vulnerability, allowing remote attackers with database modification privileges and regular system privileges to perform arbitrary cod…
|
CWE-502
Deserialization of Untrusted Data
|
CVE-2025-0586
|
2025-01-20 12:15 |
2025-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
963
|
9.8 |
CRITICAL
Network
-
|
-
|
The a+HRD from aEnrich Technology has a SQL Injection vulnerability, allowing unauthenticated remote attackers to inject arbitrary SQL commands to read, modify, and delete database contents.
|
CWE-89
SQL Injection
|
CVE-2025-0585
|
2025-01-20 12:15 |
2025-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
964
|
5.3 |
MEDIUM
Network
-
|
-
|
The a+HRD from aEnrich Technology has a Server-side Request Forgery, allowing unauthenticated remote attackers to exploit this vulnerability to probe internal network.
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2025-0584
|
2025-01-20 12:15 |
2025-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
965
|
4.7 |
MEDIUM
Network
|
-
|
-
|
A vulnerability classified as critical was found in itsourcecode Farm Management System up to 1.0. This vulnerability affects unknown code of the file /add-pig.php. The manipulation of the argument p…
|
CWE-284 CWE-434
Improper Access Control Unrestricted Upload of File with Dangerous Type
|
CVE-2025-0582
|
2025-01-20 12:15 |
2025-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
966
|
3.5 |
LOW
Network
|
-
|
-
|
A vulnerability classified as problematic has been found in CampCodes School Management Software 1.0. This affects an unknown part of the file /chat/group/send of the component Chat History. The mani…
|
CWE-79 CWE-94
Cross-site Scripting Code Injection
|
CVE-2025-0581
|
2025-01-20 12:15 |
2025-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
967
|
5.6 |
MEDIUM
Network
|
-
|
-
|
A vulnerability was found in Shiprocket Module 3 on OpenCart. It has been rated as critical. Affected by this issue is some unknown functionality of the file /index.php?route=extension/module/rest_ap…
|
CWE-285 CWE-863
Improper Authorization Incorrect Authorization
|
CVE-2025-0580
|
2025-01-20 12:15 |
2025-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
968
|
7.3 |
HIGH
Network
-
|
-
|
A vulnerability was found in Shiprocket Module 3/4 on OpenCart. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /index.php?route=extension/shi…
|
CWE-89 CWE-74
SQL Injection Injection
|
CVE-2025-0579
|
2025-01-20 12:15 |
2025-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
969
|
4.5 |
MEDIUM
Local
|
-
|
-
|
A vulnerability has been found in obsproject OBS Studio up to 30.0.2 on Windows and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to un…
|
CWE-426
Untrusted Search Path
|
CVE-2024-13524
|
2025-01-20 12:15 |
2025-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
970
|
6.1 |
MEDIUM
Network
|
-
|
-
|
The a+HRD from aEnrich Technology has a Reflected Cross-site Scripting vulnerability, allowing unauthenticated remote attackers to execute arbitrary JavaScript codes in user's browser through phishin…
|
CWE-79
Cross-site Scripting
|
CVE-2025-0583
|
2025-01-20 11:15 |
2025-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|