CVE Alert: CVE-2025-5155
Vulnerability Summary: CVE-2025-5155 A vulnerability has been found in qianfox FoxCMS 1.2.5 and classified as critical. Affected by this vulnerability...
Vulnerability Summary: CVE-2025-5155 A vulnerability has been found in qianfox FoxCMS 1.2.5 and classified as critical. Affected by this vulnerability...
Vulnerability Summary: CVE-2025-5154 A vulnerability, which was classified as problematic, was found in PhonePe App 25.03.21.0 on Android. Affected is...
Vulnerability Summary: CVE-2025-5156 A vulnerability was found in H3C GR-5400AX up to 100R008 and classified as critical. Affected by this...
Vulnerability Summary: CVE-2025-5157 A vulnerability was found in H3C SecCenter SMP-E1114P02 up to 20250513. It has been classified as critical....
Vulnerability Summary: CVE-2025-47642 Unrestricted Upload of File with Dangerous Type vulnerability in Ajar Productions Ajar in5 Embed allows Upload a...
Vulnerability Summary: CVE-2025-47637 Unrestricted Upload of File with Dangerous Type vulnerability in STAGGS STAGGS allows Upload a Web Shell to...
Vulnerability Summary: CVE-2025-47640 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in printcart Printcart Web...
Vulnerability Summary: CVE-2025-47641 Unrestricted Upload of File with Dangerous Type vulnerability in printcart Printcart Web to Print Product Designer for...
Vulnerability Summary: CVE-2025-47631 Incorrect Privilege Assignment vulnerability in mojoomla Hospital Management System allows Privilege Escalation. This issue affects Hospital Management...
Vulnerability Summary: CVE-2025-47670 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in miniOrange...
Vulnerability Summary: CVE-2025-47672 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in miniOrange...
Vulnerability Summary: CVE-2025-47673 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in tychesoftwares Arconix Shortcodes allows Reflected...
Vulnerability Summary: CVE-2025-47671 Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in LETSCMS MLM Software...
Vulnerability Summary: CVE-2025-47619 Missing Authorization vulnerability in 6Storage 6Storage Rentals allows Path Traversal. This issue affects 6Storage Rentals: from n/a...
Vulnerability Summary: CVE-2025-47658 Unrestricted Upload of File with Dangerous Type vulnerability in ELEXtensions ELEX WordPress HelpDesk & Customer Ticketing System...
Vulnerability Summary: CVE-2025-48245 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in fullworks Quick Contact Form allows...
Vulnerability Summary: CVE-2025-47663 Unrestricted Upload of File with Dangerous Type vulnerability in mojoomla Hospital Management System allows Upload a Web...
Vulnerability Summary: CVE-2025-47660 Deserialization of Untrusted Data vulnerability in Codexpert, Inc WC Affiliate allows Object Injection. This issue affects WC...
Vulnerability Summary: CVE-2025-48271 Missing Authorization vulnerability in Leadinfo Leadinfo allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects...
Vulnerability Summary: CVE-2025-47690 Missing Authorization vulnerability in smackcoders Lead Form Data Collection to CRM allows Privilege Escalation. This issue affects...
Vulnerability Summary: CVE-2025-47680 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Michel - xiligroup dev xili-tidy-tags...
Vulnerability Summary: CVE-2025-47687 Unrestricted Upload of File with Dangerous Type vulnerability in StoreKeeper B.V. StoreKeeper for WooCommerce allows Upload a...
Vulnerability Summary: CVE-2025-48241 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Soft8Soft LLC Verge3D allows Reflected...
Vulnerability Summary: CVE-2025-47678 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in FunnelCockpit FunnelCockpit allows Reflected XSS....