A vulnerability classified as problematic was found in Archibus app 4.0.3 on iOS. Affected by this vulnerability is an unknown functionality of the component Create Work Request Handler. The manipulation of the argument description leads to cross site scripting.
This vulnerability is known as CVE-2023-48644. The attack can be launched remotely. There is no exploit available.
A vulnerability was found in Lenovo PC Manager 2.6.40.3154/2.8.90.11211/5.1.80.9023. It has been rated as critical. Affected by this issue is some unknown functionality. The manipulation leads to untrusted search path.
This vulnerability is handled as CVE-2025-2501. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as very critical has been found in MediaTek MT6890, MT6990, MT7915, MT7916, MT7981, MT7986, MT7990, MT7992 and MT7993. Affected is an unknown function of the component WLAN AP Driver. The manipulation leads to incorrect authorization.
This vulnerability is traded as CVE-2025-20674. It is possible to launch the attack remotely. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability has been found in Qualcomm Snapdragon Compute, Snapdragon Mobile and Snapdragon Wearables and classified as critical. Affected by this vulnerability is an unknown functionality of the component Shell Binary. The manipulation leads to untrusted pointer dereference.
This vulnerability is known as CVE-2025-21486. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as critical, was found in Qualcomm Snapdragon Compute, Snapdragon Mobile and Snapdragon Wearables. Affected is an unknown function of the component FastRPC. The manipulation leads to time-of-check time-of-use.
This vulnerability is traded as CVE-2025-21485. It is possible to launch the attack on the local host. There is no exploit available.
It is recommended to upgrade the affected component.
Google addressed three vulnerabilities in its Chrome browser, including one that it actively exploited in attacks in the wild. Google released out-of-band updates to address three vulnerabilities in its Chrome browser, including one, tracked as CVE-2025-5419, that is actively exploited in the wild. The vulnerability is an out-of-bounds read and write in the V8 JavaScript […]
A vulnerability, which was classified as problematic, was found in Microsoft Windows Media Player 7. Affected is an unknown function of the component OCX Control Handler. The manipulation leads to denial of service.
This vulnerability is traded as CVE-2000-0929. It is possible to launch the attack remotely. Furthermore, there is an exploit available.