A vulnerability labeled as problematic has been found in Azure Access BLU-IC2 and BLU-IC4 up to 1.19.5. This impacts an unknown function. The manipulation results in denial of service.
This vulnerability is known as CVE-2025-12601. It is possible to launch the attack remotely. No exploit is available.
A vulnerability described as critical has been identified in Azure Access BLU-IC2 and BLU-IC4 up to 1.19.5. Affected by this vulnerability is an unknown functionality of the component Web UI. Such manipulation leads to Remote Code Execution.
This vulnerability is uniquely identified as CVE-2025-12600. The attack can be launched remotely. No exploit exists.
A vulnerability was found in mantisbt Mantis Bug Tracker up to 2.27.1. It has been classified as critical. This issue affects some unknown processing. Performing manipulation results in authentication bypass by primary weakness.
This vulnerability was named CVE-2025-47776. The attack may be initiated remotely. There is no available exploit.
Upgrading the affected component is recommended.
A vulnerability identified as problematic has been detected in Galette up to 1.1.x. This affects an unknown function of the component Document Type Handler. This manipulation causes basic cross site scripting.
This vulnerability is tracked as CVE-2025-48884. The attack is possible to be carried out remotely. No exploit exists.
You should upgrade the affected component.
A vulnerability, which was classified as critical, was found in mantisbt Mantis Bug Tracker up to 2.27.1. The impacted element is an unknown function of the file manage_config_columns_page.php of the component Private Project Handler. Executing manipulation can lead to improper authorization.
This vulnerability appears as CVE-2025-62520. The attack may be performed from remote. There is no available exploit.
You should upgrade the affected component.
A vulnerability labeled as critical has been found in Kovah LinkAce up to 2.3.x. This issue affects some unknown processing. The manipulation results in server-side request forgery.
This vulnerability is identified as CVE-2025-62719. The attack can be executed remotely. There is not any exploit available.
The affected component should be upgraded.
A vulnerability marked as problematic has been reported in Kovah LinkAce up to 2.3.x. Impacted is the function ExportController. This manipulation causes information disclosure.
This vulnerability is tracked as CVE-2025-62720. The attack is possible to be carried out remotely. No exploit exists.
It is suggested to upgrade the affected component.
A vulnerability described as problematic has been identified in Kovah LinkAce up to 2.3.x. The affected element is the function FeedController. Such manipulation leads to information disclosure.
This vulnerability is listed as CVE-2025-62721. The attack may be performed from remote. There is no available exploit.
Upgrading the affected component is recommended.
A vulnerability was found in PHPGurukul News Portal 1.0 and classified as problematic. The affected element is an unknown function of the file /onps/settings.py. Such manipulation of the argument SECRET_KEY leads to use of hard-coded cryptographic key
.
This vulnerability is listed as CVE-2025-12615. The attack may be performed from remote. In addition, an exploit is available.