CVE Alert: CVE-2025-54454
Vulnerability Summary: CVE-2025-54454 Use of Hard-coded Credentials vulnerability in Samsung Electronics MagicINFO 9 Server allows Authentication Bypass.This issue affects MagicINFO...
Vulnerability Summary: CVE-2025-54454 Use of Hard-coded Credentials vulnerability in Samsung Electronics MagicINFO 9 Server allows Authentication Bypass.This issue affects MagicINFO...
Vulnerability Summary: CVE-2025-54451 Improper Control of Generation of Code ('Code Injection') vulnerability in Samsung Electronics MagicINFO 9 Server allows Code...
Vulnerability Summary: CVE-2025-54453 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Samsung Electronics MagicINFO 9...
Vulnerability Summary: CVE-2025-54450 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in Samsung Electronics MagicINFO 9...
Vulnerability Summary: CVE-2025-54455 Use of Hard-coded Credentials vulnerability in Samsung Electronics MagicINFO 9 Server allows Authentication Bypass.This issue affects MagicINFO...
Vulnerability Summary: CVE-2025-54449 Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This...
Vulnerability Summary: CVE-2025-6174 The Qwizcards | online quizzes and flashcards WordPress plugin through 3.9.4 does not sanitise and escape the...
Vulnerability Summary: CVE-2025-54448 Unrestricted Upload of File with Dangerous Type vulnerability in Samsung Electronics MagicINFO 9 Server allows Code Injection.This...
Vulnerability Summary: CVE-2025-41687 An unauthenticated remote attacker may use a stack based buffer overflow in the u-link Management API to...
Vulnerability Summary: CVE-2025-31701 A vulnerability has been found in Dahua products. Attackers could exploit a buffer overflow vulnerability by sending...
Vulnerability Summary: CVE-2025-31700 A vulnerability has been found in Dahua products. Attackers could exploit a buffer overflow vulnerability by sending...
Vulnerability Summary: CVE-2025-41683 An authenticated remote attacker can execute arbitrary commands with root privileges on affected devices due to lack...
Vulnerability Summary: CVE-2025-41684 An authenticated remote attacker can execute arbitrary commands with root privileges on affected devices due to lack...
Vulnerability Summary: CVE-2024-41750 IBM SmartCloud Analytics - Log Analysis 1.3.7.0, 1.3.7.1, 1.3.7.2, 1.3.8.0, 1.3.8.1, and 1.3.8.2 could allow a local,...
Vulnerability Summary: CVE-2025-53882 A Reliance on Untrusted Inputs in a Security Decision vulnerability in the logrotate configuration for openSUSEs mailman3...
Vulnerability Summary: CVE-2024-40686 IBM SmartCloud Analytics - Log Analysis 1.3.7.0, 1.3.7.1, 1.3.7.2, 1.3.8.0, 1.3.8.1, and 1.3.8.2 is vulnerable to HTTP...
Vulnerability Summary: CVE-2025-27930 Zohocorp ManageEngine Applications Manager versions 176600 and prior are vulnerable to stored cross-site scripting in the File/Directory...
Vulnerability Summary: CVE-2024-40682 IBM SmartCloud Analytics - Log Analysis 1.3.7.0, 1.3.7.1, 1.3.7.2, 1.3.8.0, 1.3.8.1, and 1.3.8.2 could allow a local...
Vulnerability Summary: CVE-2025-46099 In Pluck CMS 4.7.20-dev, an authenticated attacker can upload or create a crafted PHP file under the...
Vulnerability Summary: CVE-2024-41751 IBM SmartCloud Analytics - Log Analysis 1.3.7.0, 1.3.7.1, 1.3.7.2, 1.3.8.0, 1.3.8.1, and 1.3.8.2 could allow a local,...
Vulnerability Summary: CVE-2025-4296 URL Redirection to Untrusted Site ('Open Redirect') vulnerability in HotelRunner B2B allows Forceful Browsing.This issue affects B2B:...
Vulnerability Summary: CVE-2025-40599 An authenticated arbitrary file upload vulnerability exists in the SMA 100 series web management interface. A remote...
Vulnerability Summary: CVE-2025-4411 Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Dataprom Informatics PACS-ACSS...
Vulnerability Summary: CVE-2025-36116 IBM Db2 Mirror for i 7.4, 7.5, and 7.6 GUI is affected by cross-site WebSocket hijacking vulnerability....