A vulnerability was found in Delinea Secret Server up to 11.7. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the component SQL Report Creation. The manipulation leads to improper privilege management.
This vulnerability is known as CVE-2025-6943. Local access is required to approach this attack. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability has been found in linjiashop up to 0.9 and classified as critical. This vulnerability affects unknown code. The manipulation leads to improper access controls.
This vulnerability was named CVE-2025-52101. The attack needs to be done within the local network. There is no exploit available.
A vulnerability was found in Xinference up to 1.3.x. It has been rated as critical. Affected by this issue is some unknown functionality of the component Web GUI. The manipulation leads to improper access controls.
This vulnerability is handled as CVE-2025-45424. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical has been found in Novelsat NS2000 and NS3000. This affects an unknown part. The manipulation leads to missing authentication.
This vulnerability is uniquely identified as CVE-2025-45814. Access to the local network is required for this attack to succeed. There is no exploit available.
A vulnerability was found in Lucee 5.x/6.x. It has been classified as critical. This affects an unknown part of the file /lucee/admin/web.cfm. The manipulation leads to code injection.
This vulnerability is uniquely identified as CVE-2025-34074. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability classified as problematic has been found in Delinea Secret Server up to 11.7.48. Affected is an unknown function of the component Distributed Engine. The manipulation leads to authorization bypass.
This vulnerability is traded as CVE-2025-6942. The attack needs to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in ENENSYS IPGuard 2.10.0. It has been classified as critical. Affected is an unknown function. The manipulation leads to hard-coded credentials.
This vulnerability is traded as CVE-2025-45813. The attack needs to be done within the local network. There is no exploit available.
A vulnerability has been found in Google Chrome 127.x/128.x and classified as problematic. Affected by this vulnerability is an unknown functionality of the component AppBound Cookie Encryption. The manipulation leads to information exposure through discrepancy.
This vulnerability is known as CVE-2025-34091. The attack can be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as problematic was found in Laundry 2.3.0 on Linux. This vulnerability affects unknown code. The manipulation leads to cross-site request forgery.
This vulnerability was named CVE-2025-52841. The attack can be initiated remotely. There is no exploit available.
A vulnerability was found in Google Chrome 127.x/128.x. It has been declared as problematic. This vulnerability affects unknown code of the component Inter-Process Communication. The manipulation leads to untrusted search path.
This vulnerability was named CVE-2025-34090. An attack has to be approached locally. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical has been found in HP Universal Print Driver 7.1.x/7.2.x/7.3.x/7.4. Affected is an unknown function. The manipulation leads to stack-based buffer overflow.
This vulnerability is traded as CVE-2025-43025. Attacking locally is a requirement. There is no exploit available.
A vulnerability, which was classified as problematic, has been found in Laundry 2.3.0. Affected by this issue is some unknown functionality. The manipulation leads to cross site scripting.
This vulnerability is handled as CVE-2025-52842. The attack may be launched remotely. There is no exploit available.