A vulnerability has been found in Linux Kernel up to 6.0.6 and classified as critical. Affected by this vulnerability is the function kcm_rfree of the component kcm. The manipulation leads to state issue.
This vulnerability is referenced as CVE-2022-50291. The attack needs to be initiated within the local network. No exploit is available.
The affected component should be upgraded.
A vulnerability was found in Linux Kernel up to 6.1.1. It has been classified as critical. The affected element is the function ocfs2_stack_glue_init of the component ocfs2. The manipulation leads to memory leak.
This vulnerability is uniquely identified as CVE-2022-50289. The attack can only be initiated within the local network. No exploit exists.
Upgrading the affected component is recommended.
A vulnerability described as critical has been identified in Linux Kernel up to 5.10.162/5.15.85/6.0.15/6.1.1. Affected is the function ieee80211_if_add of the component wifi. Executing manipulation can lead to memory leak.
This vulnerability is registered as CVE-2022-50290. The attack requires access to the local network. No exploit is available.
Upgrading the affected component is recommended.
A vulnerability was found in Linux Kernel up to 6.0.15/6.1.1. It has been declared as critical. The affected element is an unknown function. Executing manipulation can lead to memory leak.
This vulnerability is tracked as CVE-2022-50287. The attack is only possible within the local network. No exploit exists.
It is recommended to upgrade the affected component.
A vulnerability labeled as critical has been found in Linux Kernel up to 5.4.228/5.10.162/5.15.86/6.0.17/6.1.3. This affects the function ext4_clu_mapped of the component ext4. Such manipulation leads to denial of service.
This vulnerability is listed as CVE-2022-50286. The attack must be carried out from within the local network. There is no available exploit.
The affected component should be upgraded.
A vulnerability was found in Linux Kernel up to 6.1.4 and classified as critical. Impacted is the function qlcnic_dcb_enable. Executing manipulation can lead to use after free.
This vulnerability is handled as CVE-2022-50288. The attack can only be done within the local network. There is not any exploit available.
It is suggested to upgrade the affected component.
A vulnerability identified as critical has been detected in Tuya Smart Life App 5.6.1. This affects an unknown part of the component Matter Protocol Handler. The manipulation leads to privilege escalation.
This vulnerability is uniquely identified as CVE-2025-56557. The attack can only be initiated within the local network. No exploit exists.
A vulnerability, which was classified as problematic, has been found in Microsoft PC Manager. Impacted is an unknown function. Performing manipulation results in cleartext storage of sensitive information.
This vulnerability is cataloged as CVE-2025-49728. The attack must be initiated from a local position. There is no exploit available.
It is advisable to upgrade the affected component.
A vulnerability marked as critical has been reported in Campcodes Grocery Sales and Inventory System 1.0. This affects an unknown function of the file /ajax.php?action=save_product. This manipulation of the argument ID causes sql injection.
This vulnerability is registered as CVE-2025-10562. Remote exploitation of the attack is possible. Furthermore, an exploit is available.
A vulnerability was found in Microsoft Edge on Android. It has been classified as problematic. The affected element is an unknown function. The manipulation leads to insufficient ui warning of dangerous operations.
This vulnerability is traded as CVE-2025-47967. It is possible to initiate the attack remotely. There is no exploit available.
Upgrading the affected component is recommended.
A vulnerability was found in TDuckCLoud 5.1 and classified as critical. Affected by this vulnerability is an unknown functionality of the component Upload Module. Such manipulation leads to sql injection.
This vulnerability is documented as CVE-2025-57631. The attack can be executed remotely. There is not any exploit available.
A vulnerability was found in zhangyd-c OneBlog 2.3.9. It has been classified as problematic. Affected by this issue is some unknown functionality of the file /api/comment. Performing manipulation results in denial of service.
This vulnerability is reported as CVE-2025-56264. The attacker must have access to the local network to execute the attack. No exploit exists.
A vulnerability was found in by-night sms 1.0. It has been declared as critical. This affects an unknown part of the file /api/sms/upload/headImg. Executing manipulation can lead to unrestricted upload.
This vulnerability appears as CVE-2025-56263. The attack may be performed from remote. There is no available exploit.
A vulnerability identified as critical has been detected in Zimbra Collaboration Suite. This affects an unknown function of the component EnableTwoFactorAuthRequest SOAP Endpoint. Performing manipulation results in improper authentication.
This vulnerability is known as CVE-2025-54391. Remote exploitation of the attack is possible. No exploit is available.
A vulnerability classified as problematic was found in Pictures Pro Photo Cart 3.9. Affected by this issue is some unknown functionality of the file index.php. Executing manipulation of the argument qtitle can lead to cross site scripting.
This vulnerability is tracked as CVE-2008-3786. The attack can be launched remotely. Moreover, an exploit is present.
A vulnerability was found in Appstate phpWebSite up to 0.9.3-4 and classified as critical. This vulnerability affects unknown code of the file links.php. The manipulation of the argument cid results in sql injection.
This vulnerability is cataloged as CVE-2008-6266. The attack may be launched remotely. Furthermore, there is an exploit available.
A vulnerability was found in phpWebSite 1.4.0. It has been declared as problematic. The affected element is an unknown function of the file index.php of the component Search Module. Executing manipulation of the argument Search can lead to cross site scripting.
The identification of this vulnerability is CVE-2008-0092. The attack may be launched remotely. Furthermore, there is an exploit available.