CVE Alert: CVE-2025-32820
Vulnerability Summary: CVE-2025-32820 A vulnerability in SMA100 allows a remote authenticated attacker with SSLVPN user privileges can inject a path...
Vulnerability Summary: CVE-2025-32820 A vulnerability in SMA100 allows a remote authenticated attacker with SSLVPN user privileges can inject a path...
Vulnerability Summary: CVE-2025-32819 A vulnerability in SMA100 allows a remote authenticated attacker with SSLVPN user privileges to bypass the path...
Vulnerability Summary: CVE-2025-46824 The Discourse Code Review Plugin allows users to review GitHub commits on Discourse. Prior to commit eed3a80,...
Vulnerability Summary: CVE-2025-20223 A vulnerability in Cisco Catalyst Center, formerly Cisco DNA Center, could allow an authenticated, remote attacker to...
Vulnerability Summary: CVE-2025-26169 IXON VPN Client before 1.4.4 on Windows allows Local Privilege Escalation to SYSTEM because there is code...
Vulnerability Summary: CVE-2025-47423 Personal Weather Station Dashboard 12_lts allows unauthenticated remote attackers to read arbitrary files via ../ directory traversal...
Vulnerability Summary: CVE-2025-3925 BrightSign players running BrightSign OS series 4 prior to v8.5.53.1 or series 5 prior to v9.0.166 contain...
Vulnerability Summary: CVE-2025-47203 dbclient in Dropbear SSH before 2025.88 allows command injection via an untrusted hostname argument, because a shell...
Vulnerability Summary: CVE-2025-26168 IXON VPN Client before 1.4.4 on Linux and macOS allows Local Privilege Escalation to root because there...
Vulnerability Summary: CVE-2025-36546 On an F5OS system, if the root user had previously configured the system to allow login via...
Vulnerability Summary: CVE-2025-31644 When running in Appliance mode, a command injection vulnerability exists in an undisclosed iControl REST and BIG-IP...
Vulnerability Summary: CVE-2025-31177 gnuplot is affected by a heap buffer overflow at function utf8_copy_one. Affected Endpoints: No affected endpoints listed....
Vulnerability Summary: CVE-2025-4043 An admin user can gain unauthorized write access to the /etc/rc.local file on the device, which is...
Vulnerability Summary: CVE-2023-7303 A vulnerability, which was classified as problematic, was found in q2apro q2apro-on-site-notifications up to 1.4.6. This affects...
Vulnerability Summary: CVE-2025-36504 When a BIG-IP HTTP/2 httprouter profile is configured on a virtual server, undisclosed responses can cause an...
Vulnerability Summary: CVE-2025-43878 When running in Appliance mode, an authenticated attacker assigned the Administrator or Resource Administrator role may be...
Vulnerability Summary: CVE-2025-41433 When a Session Initiation Protocol (SIP) message routing framework (MRF) application layer gateway (ALG) profile is configured...
Vulnerability Summary: CVE-2025-35995 When a BIG-IP PEM system is licensed with URL categorization, and the URL categorization policy or an...
Vulnerability Summary: CVE-2025-36525 When a BIG-IP APM virtual server is configured to use a PingAccess profile, undisclosed requests can cause...
Vulnerability Summary: CVE-2025-41399 When a Stream Control Transmission Protocol (SCTP) profile is configured on a virtual server, undisclosed requests can...
Vulnerability Summary: CVE-2025-46821 Envoy is a cloud-native edge/middle/service proxy. Prior to versions 1.34.1, 1.33.3, 1.32.6, and 1.31.8, Envoy's URI template...
Vulnerability Summary: CVE-2025-36557 When an HTTP profile with the Enforce RFC Compliance option is configured on a virtual server, undisclosed...
Vulnerability Summary: CVE-2025-41431 When connection mirroring is configured on a virtual server, undisclosed requests can cause the Traffic Management Microkernel...
Vulnerability Summary: CVE-2025-41414 When HTTP/2 client and server profile is configured on a virtual server, undisclosed requests can cause TMM...