991
|
- |
|
-
|
-
|
This vulnerability allows network-adjacent attackers to compromise the integrity of downloaded information on affected installations of Pioneer DMH-WT7600NEX devices. Authentication is not required t…
|
-
|
CVE-2024-23928
|
2025-01-31 09:15 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
992
|
- |
|
-
|
-
|
An issue has been discovered in GitLab CE/EE affecting all versions starting from 10.6 prior to 16.9.7, starting from 16.10 prior to 16.10.5, and starting from 16.11 prior to 16.11.2 in which cross-s…
|
CWE-352
Origin Validation Error
|
CVE-2024-1211
|
2025-01-31 09:15 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
993
|
- |
|
-
|
-
|
An issue has been discovered in GitLab CE/EE affecting all versions starting from 15.5 prior to 16.9.7, starting from 16.10 prior to 16.10.5, and starting from 16.11 prior to 16.11.2. GitLab was vuln…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2023-6195
|
2025-01-31 09:15 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
994
|
- |
|
-
|
-
|
pwn.college is an education platform to learn about, and practice, core cybersecurity concepts in a hands-on fashion. Incorrect symlink checks on user specified dojos allows for users (admin not requ…
|
CWE-200 CWE-61
Information Exposure UNIX Symbolic Link (Symlink) Following
|
CVE-2025-24886
|
2025-01-31 08:15 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
995
|
- |
|
-
|
-
|
pwn.college is an education platform to learn about, and practice, core cybersecurity concepts in a hands-on fashion. Missing access control on rendering custom (unprivileged) dojo pages causes abili…
|
CWE-79 CWE-284
Cross-site Scripting Improper Access Control
|
CVE-2025-24885
|
2025-01-31 08:15 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
996
|
- |
|
-
|
-
|
A vulnerability was found in Codezips Gym Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /dashboard/admin/saveroutine.php. The manipulation of …
|
-
|
CVE-2025-0881
|
2025-01-31 07:15 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
997
|
- |
|
-
|
-
|
The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.3, macOS Ventura 13.7.3, macOS Sonoma 14.7.3. A local attacker may be able to elevate their privileges.
|
-
|
CVE-2025-24099
|
2025-01-31 07:15 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
998
|
- |
|
-
|
-
|
In Electronic Arts Dragon Age Origins 1.05, the DAUpdaterSVC service contains an unquoted service path vulnerability. This service is configured with insecure permissions, allowing users to modify th…
|
-
|
CVE-2024-57276
|
2025-01-31 07:15 |
2025-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
999
|
6.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability was found in code-projects Chat System up to 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /user/addnewmember.php. The …
|
CWE-89 CWE-74
SQL Injection Injection
|
CVE-2025-0882
|
2025-01-31 06:15 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
1000
|
6.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability was found in Codezips Gym Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /dashboard/admin/updateplan.php. The manipulation of…
|
CWE-89 CWE-74
SQL Injection Injection
|
CVE-2025-0880
|
2025-01-31 06:15 |
2025-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|