Aggregator
CVE-2025-5185 | Summer Pearl Group Vacation Rental Management Platform up to 1.0.1 cross-site request forgery
8 months 2 weeks ago
A vulnerability was found in Summer Pearl Group Vacation Rental Management Platform up to 1.0.1. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to cross-site request forgery.
This vulnerability is known as CVE-2025-5185. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
vuldb.com
CVE-2025-4053 | Be-Tech Mifare Classic Card cleartext storage
8 months 2 weeks ago
A vulnerability, which was classified as problematic, has been found in Be-Tech Mifare Classic Card. Affected by this issue is some unknown functionality. The manipulation leads to cleartext storage of sensitive information.
This vulnerability is handled as CVE-2025-4053. It is possible to launch the attack on the physical device. There is no exploit available.
vuldb.com
IBM security advisory (AV25-293)
8 months 2 weeks ago
Canadian Centre for Cyber Security
Dell security advisory (AV25-292)
8 months 2 weeks ago
Canadian Centre for Cyber Security
CVE-2012-4951 | VeriFone VeriCentre Web Console up to 2.0.0 ApplicationName sql injection (VU#180091 / EDB-38010)
8 months 2 weeks ago
A vulnerability classified as critical has been found in VeriFone VeriCentre Web Console up to 2.0.0. This affects an unknown part of the component Web Console. The manipulation of the argument ApplicationName leads to sql injection.
This vulnerability is uniquely identified as CVE-2012-4951. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
vuldb.com
Decoding EASA Regulation Part-IS: A Comprehensive Guide to Strengthening Aviation Cybersecurity
8 months 2 weeks ago
What is EASA? EASA has long been synonymous with excellence in aviation safety. As the regulatory authority for the European Union, EASA sets the standards that govern everything from aircraft design to operational protocols. Its mission is clear: to ensure that every aspect of aviation is as safe and reliable as possible. Cybersecurity has emerged […]
The post Decoding EASA Regulation Part-IS: A Comprehensive Guide to Strengthening Aviation Cybersecurity appeared first on Centraleyes.
The post Decoding EASA Regulation Part-IS: A Comprehensive Guide to Strengthening Aviation Cybersecurity appeared first on Security Boulevard.
Rebecca Kappel
CVE-2025-4682 | Essential Blocks Plugin up to 5.4.0 on WordPress Slider Widget/Post Carousel Widget cross site scripting
8 months 2 weeks ago
A vulnerability was found in Essential Blocks Plugin up to 5.4.0 on WordPress. It has been declared as problematic. This vulnerability affects unknown code of the component Slider Widget/Post Carousel Widget. The manipulation leads to cross site scripting.
This vulnerability was named CVE-2025-4682. The attack can be initiated remotely. There is no exploit available.
vuldb.com
CVE-2025-5221 | FreeFloat FTP Server 1.0.0 QUOTE Command buffer overflow
8 months 2 weeks ago
A vulnerability was found in FreeFloat FTP Server 1.0.0. It has been classified as critical. This affects an unknown part of the component QUOTE Command Handler. The manipulation leads to buffer overflow.
This vulnerability is uniquely identified as CVE-2025-5221. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-5220 | FreeFloat FTP Server 1.0.0 GET Command buffer overflow
8 months 2 weeks ago
A vulnerability was found in FreeFloat FTP Server 1.0.0 and classified as critical. Affected by this issue is some unknown functionality of the component GET Command Handler. The manipulation leads to buffer overflow.
This vulnerability is handled as CVE-2025-5220. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-5219 | FreeFloat FTP Server 1.0.0 ASCII Command buffer overflow
8 months 2 weeks ago
A vulnerability has been found in FreeFloat FTP Server 1.0.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the component ASCII Command Handler. The manipulation leads to buffer overflow.
This vulnerability is known as CVE-2025-5219. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-5218 | FreeFloat FTP Server 1.0.0 LITERAL Command buffer overflow
8 months 2 weeks ago
A vulnerability, which was classified as critical, was found in FreeFloat FTP Server 1.0.0. Affected is an unknown function of the component LITERAL Command Handler. The manipulation leads to buffer overflow.
This vulnerability is traded as CVE-2025-5218. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-5217 | FreeFloat FTP Server 1.0.0 RMDIR Command buffer overflow
8 months 2 weeks ago
A vulnerability, which was classified as critical, has been found in FreeFloat FTP Server 1.0.0. This issue affects some unknown processing of the component RMDIR Command Handler. The manipulation leads to buffer overflow.
The identification of this vulnerability is CVE-2025-5217. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-5216 | PHPGurukul Student Record System 3.20 /login.php ID sql injection
8 months 2 weeks ago
A vulnerability classified as critical was found in PHPGurukul Student Record System 3.20. This vulnerability affects unknown code of the file /login.php. The manipulation of the argument ID leads to sql injection.
This vulnerability was named CVE-2025-5216. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-5215 | D-Link DCS-5020L 1.01_B2 /rame/ptdc.cgi websReadEvent Authorization stack-based overflow
8 months 2 weeks ago
A vulnerability classified as critical has been found in D-Link DCS-5020L 1.01_B2. This affects the function websReadEvent of the file /rame/ptdc.cgi. The manipulation of the argument Authorization leads to stack-based buffer overflow. This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability is uniquely identified as CVE-2025-5215. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
Submit #582971: FreeFloat FTP Server 1.0.0 Buffer Overflow [Accepted]
8 months 2 weeks ago
Submit #582971 / VDB-310317
Fernando Mengali
Submit #582970: FreeFloat FTP Server 1.0.0 Buffer Overflow [Accepted]
8 months 2 weeks ago
Submit #582970 / VDB-310316
Fernando Mengali
Submit #582968: FreeFloat FTP Server 1.0.0 Buffer Overflow [Accepted]
8 months 2 weeks ago
Submit #582968 / VDB-310315
Fernando Mengali
Submit #582965: FreeFloat FTP Server 1.0.0 Buffer Overflow [Accepted]
8 months 2 weeks ago
Submit #582965 / VDB-310314
Fernando Mengali
Submit #582963: FreeFloat FTP Server 1.0.0 Buffer Overflow [Accepted]
8 months 2 weeks ago
Submit #582963 / VDB-310313
Fernando Mengali