A vulnerability was found in Kybernetika phpShowtime 2.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file index.php. The manipulation leads to path traversal.
This vulnerability is handled as CVE-2012-0981. The attack may be launched remotely. Furthermore, there is an exploit available.
A vulnerability classified as critical has been found in Linux Kernel up to 5.18.2. This affects the function of_parse_phandle. The manipulation leads to improper update of reference count.
This vulnerability is uniquely identified as CVE-2022-49439. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 5.10.120/5.15.45/5.17.13/5.18.2 and classified as critical. Affected by this issue is the function ath11k_spectral_process_data of the component ath11k Module. The manipulation leads to null pointer dereference.
This vulnerability is handled as CVE-2022-49523. The attack needs to be done within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 5.18.2. It has been declared as critical. Affected by this vulnerability is an unknown functionality. The manipulation leads to deadlock.
This vulnerability is known as CVE-2022-49531. The attack needs to be initiated within the local network. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as problematic was found in Palo Alto PAN-OS, Cloud NGFW and Prisma Access. Affected by this vulnerability is an unknown functionality of the component LLDP Frame Handler. The manipulation leads to improper check for unusual conditions.
This vulnerability is known as CVE-2025-0116. It is possible to launch the attack on the physical device. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability has been found in Tenda AC9 15.03.05.14_multi and classified as critical. Affected by this vulnerability is an unknown functionality of the file /goform/AdvSetMacMtuWan. The manipulation of the argument mac leads to stack-based buffer overflow.
This vulnerability is known as CVE-2025-29386. The attack can be launched remotely. There is no exploit available.
A vulnerability was found in Tenda AC9 15.03.05.14_multi. It has been classified as critical. This affects an unknown part of the file /goform/AdvSetMacMtuWan. The manipulation of the argument wanSpeed leads to stack-based buffer overflow.
This vulnerability is uniquely identified as CVE-2025-29387. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability classified as critical was found in code-projects Blood Bank Management System 1.0. This vulnerability affects unknown code of the file /admin/admin_login.php of the component Admin Login Page. The manipulation leads to sql injection.
This vulnerability was named CVE-2025-2391. The attack can be initiated remotely. Furthermore, there is an exploit available.
A vulnerability, which was classified as critical, has been found in code-projects Online Class and Exam Scheduling System 1.0. This issue affects some unknown processing of the file /pages/activate.php. The manipulation of the argument id leads to sql injection.
The identification of this vulnerability is CVE-2025-2392. The attack may be initiated remotely. Furthermore, there is an exploit available.
A vulnerability, which was classified as critical, was found in code-projects Online Class and Exam Scheduling System 1.0. Affected is an unknown function of the file /pages/salut_del.php. The manipulation of the argument id leads to sql injection.
This vulnerability is traded as CVE-2025-2393. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
A vulnerability was found in China Mobile P22g-CIac, ZXWT-MIG-P4G4V, ZXWT-MIG-P8G8V, GT3200-4G4P and GT3200-8G8P up to 20250305. It has been declared as problematic. This vulnerability affects unknown code of the component Telnet Service. The manipulation leads to improper authorization.
This vulnerability was named CVE-2025-2397. The attack can only be initiated within the local network. Furthermore, there is an exploit available.
It is recommended to apply restrictive firewalling.
The vendor was contacted early about this disclosure but did not respond in any way.
Microsoft discovered a new remote access trojan (RAT), dubbed StilachiRAT, that uses sophisticated techniques to avoid detection. In November 2024, Microsoft researchers discovered StilachiRAT, a sophisticated remote access trojan (RAT) designed for stealth, persistence, and data theft. Analysis of its WWStartupCtrl64.dll module revealed that the malware supports sophisticated functionalities to steal credentials from browsers, digital […]