CVE Database
Synced from NVD, cross-referenced against CISA KEV and EPSS · ordered by last update
| CVE ID | Score | Description |
|---|---|---|
| Exploit 1mo ago | 7.3 | A vulnerability classified as critical has been found in code-projects Food Distributor Site 1.0. This affects an unknown part of the file /admin/login.php. The manipulation of the argument Username leads to sql injection. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. |
| Exploit 1mo ago | 7.8 | A heap-based buffer overflow vulnerability exists in VS6Sim.exe contained in V-SFT and TELLUS provided by FUJI ELECTRIC CO., LTD. Opening V9 files or X1 files specially crafted by an attacker on the affected product may lead to arbitrary code execution. |
| 1mo ago | 7.8 | Memory corruption whhile handling the subsystem failure memory during the parsing of video packets received from the video firmware. |
| 1mo ago | 7.8 | Memory corruption while processing packet data with exceedingly large packet. |
| 1mo ago | 7.5 | Transient DOS while handling beacon frames with invalid IE header length. |
| 1mo ago | 7.8 | Memory corruption during sub-system restart while processing clean-up to free up resources. |
| 1mo ago | 7.8 | Memory corruption during the image encoding process. |
| 1mo ago | 7.8 | Memory corruption while processing data packets in diag received from Unix clients. |
| 1mo ago | 7.8 | Memory corruption while processing command message in WLAN Host. |
| 1mo ago | 7.8 | Memory corruption while processing event close when client process terminates abruptly. |
| 1mo ago | 7.8 | Memory corruption while processing the TESTPATTERNCONFIG escape path. |
| 1mo ago | 7.8 | Memory corruption while processing multiple simultaneous escape calls. |
| 1mo ago | 7.8 | Memory corruption while executing timestamp video decode command with large input values. |
| 1mo ago | 7.8 | Memory corruption while processing manipulated payload in video firmware. |
| 1mo ago | 7.8 | Memory corruption while processing video packets received from video firmware. |
| 1mo ago | 7.8 | Memory corruption while processing a private escape command in an event trigger. |
| 1mo ago | 7.5 | Transient DOS while processing received beacon frame. |
| 1mo ago | 7.5 | Transient DOS may occur while processing malformed length field in SSID IEs. |
| 1mo ago | 7.5 | Transient DOS may occur when processing vendor-specific information elements while parsing a WLAN frame for BTM requests. |
| 1mo ago | 7.8 | Memory corruption while copying the result to the transmission queue which is shared between the virtual machine and the host. |
| 1mo ago | 7.8 | Memory corruption while copying the result to the transmission queue in EMAC. |
| 1mo ago | 7.8 | Memory corruption while retrieving the CBOR data from TA. |
| 1mo ago | 8.2 | Information disclosure while decoding this RTP packet Payload when UE receives the RTP packet from the network. |
| 1mo ago | 7.1 | Cryptographic issue while processing crypto API calls, missing checks may lead to corrupted key usage or IV reuses. |
| Exploit 1mo ago | 7.3 | A vulnerability was found in PHPGurukul Hospital Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file view-medhistory.php. The manipulation of the argument viewid leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. |
| 1mo ago | 7.5 | Improper error handling vulnerability in versions prior to 4.7.0 of Quiter Gateway by Quiter. This vulnerability allows an attacker to send malformed payloads to generate error messages containing sensitive information. |
| Exploit 1mo ago | 7.3 | A vulnerability was found in code-projects Library System 1.0 and classified as critical. This issue affects some unknown processing of the file /teacher-issue-book.php. The manipulation of the argument idn leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. |
| 1mo ago | 8.8 | A vulnerability has been identified in RUGGEDCOM RMC8388 V5.X (All versions < V5.10.0), RUGGEDCOM RMC8388NC V5.X (All versions < V5.10.0), RUGGEDCOM RS416NCv2 V5.X (All versions < V5.10.0), RUGGEDCOM RS416PNCv2 V5.X (All versions < V5.10.0), RUGGEDCOM RS416Pv2 V5.X (All versions < V5.10.0), RUGGEDCOM RS416v2 V5.X (All versions < V5.10.0), RUGGEDCOM RS900 (32M) V5.X (All versions < V5.10.0), RUGGEDCOM RS900G (32M) V5.X (All versions < V5.10.0), RUGGEDCOM RS900GNC(32M) V5.X (All versions < V5.10.0), RUGGEDCOM RS900NC(32M) V5.X (All versions < V5.10.0), RUGGEDCOM RSG2100 (32M) V5.X (All versions < V5.10.0), RUGGEDCOM RSG2100NC(32M) V5.X (All versions < V5.10.0), RUGGEDCOM RSG2100P (32M) V5.X (All versions < V5.10.0), RUGGEDCOM RSG2100PNC (32M) V5.X (All versions < V5.10.0), RUGGEDCOM RSG2288 V5.X (All versions < V5.10.0), RUGGEDCOM RSG2288NC V5.X (All versions < V5.10.0), RUGGEDCOM RSG2300 V5.X (All versions < V5.10.0), RUGGEDCOM RSG2300NC V5.X (All versions < V5.10.0), RUGGEDCOM RSG2300P V5.X (All versions < V5.10.0), RUGGEDCOM RSG2300PNC V5.X (All versions < V5.10.0), RUGGEDCOM RSG2488 V5.X (All versions < V5.10.0), RUGGEDCOM RSG2488NC V5.X (All versions < V5.10.0), RUGGEDCOM RSG907R (All versions < V5.10.0), RUGGEDCOM RSG908C (All versions < V5.10.0), RUGGEDCOM RSG909R (All versions < V5.10.0), RUGGEDCOM RSG910C (All versions < V5.10.0), RUGGEDCOM RSG920P V5.X (All versions < V5.10.0), RUGGEDCOM RSG920PNC V5.X (All versions < V5.10.0), RUGGEDCOM RSL910 (All versions < V5.10.0), RUGGEDCOM RSL910NC (All versions < V5.10.0), RUGGEDCOM RST2228 (All versions < V5.10.0), RUGGEDCOM RST2228P (All versions < V5.10.0), RUGGEDCOM RST916C (All versions < V5.10.0), RUGGEDCOM RST916P (All versions < V5.10.0). The affected products do not properly enforce interface access restrictions when changing from management to non-management interface configurations until a system reboot occurs, despite configuration being saved. This could allow an attacker with network access and credentials to gain access to device through non-management and maintain SSH access to the device until reboot. |
| 1mo ago | 7.8 | A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 5). The affected applications contain a stack based overflow vulnerability while parsing specially crafted CFG files. This could allow an attacker to execute code in the context of the current process. |
| 1mo ago | 7.8 | A vulnerability has been identified in Solid Edge SE2025 (All versions < V225.0 Update 5). The affected applications contain an out of bounds read past the end of an allocated structure while parsing specially crafted PAR files. This could allow an attacker to execute code in the context of the current process. |