A vulnerability categorized as critical has been discovered in Google Android 13/14/15/16. The affected element is an unknown function. The manipulation results in sql injection.
This vulnerability is known as CVE-2025-48544. It is possible to launch the attack remotely. No exploit is available.
Applying a patch is advised to resolve this issue.
A vulnerability labeled as critical has been found in HPE Virtual Intranet Access up to 4.7.5. Affected by this issue is some unknown functionality. Executing a manipulation can lead to improper privilege management.
The identification of this vulnerability is CVE-2025-37186. The attack can only be executed locally. There is no exploit available.
A vulnerability categorized as critical has been discovered in MegaTKC Aero CMS 0.0.1. Affected by this vulnerability is an unknown functionality. Executing a manipulation of the argument Author can lead to sql injection.
This vulnerability appears as CVE-2022-50895. The attack may be performed from remote. In addition, an exploit is available.
A vulnerability classified as problematic has been found in Primera PTPublisher 2.3.4. Impacted is an unknown function of the file Technology\PTPublisher\UsbFlashDongleService.exe of the component PTProtect Service. Performing a manipulation results in unquoted search path.
This vulnerability was named CVE-2022-50915. The attack needs to be approached locally. In addition, an exploit is available.
A vulnerability, which was classified as problematic, has been found in ProtonVPN 1.26.0. The impacted element is an unknown function of the component WireGuard Service. The manipulation leads to unquoted search path.
This vulnerability is referenced as CVE-2022-50917. The attack can only be performed from a local environment. Furthermore, an exploit is available.
A vulnerability was found in Cobiansoft Cobian Backup 0.9.93. It has been declared as problematic. Affected by this issue is some unknown functionality. Executing a manipulation can lead to unquoted search path.
This vulnerability is registered as CVE-2022-50923. The attack needs to be launched locally. Furthermore, an exploit is available.
A vulnerability marked as problematic has been reported in Dolibarr ERP-CRM 14.0.2. Affected is an unknown function of the component Ticket Creation Module. This manipulation causes cross site scripting.
This vulnerability is tracked as CVE-2021-47779. The attack is possible to be carried out remotely. Moreover, an exploit is present.
A vulnerability, which was classified as critical, was found in zhblue hustoj up to 26.01.23. The impacted element is the function problem_import_qduoj of the component ZIP File Handler. Such manipulation leads to path traversal.
This vulnerability is uniquely identified as CVE-2026-24479. The attack can be launched remotely. No exploit exists.
You should upgrade the affected component.
A vulnerability marked as problematic has been reported in sigstore sigstore-python up to 4.1.x. This issue affects the function _OAuthSession of the component OAuth Authentication. Performing a manipulation results in cross-site request forgery.
This vulnerability is known as CVE-2026-24408. Remote exploitation of the attack is possible. No exploit is available.
It is suggested to upgrade the affected component.
A vulnerability has been found in LibTIFF 4.0.7 and classified as critical. This affects an unknown part of the file tools/tiffcp. The manipulation of the argument BitsPerSample leads to memory corruption.
This vulnerability is listed as CVE-2017-5225. The attack may be initiated remotely. There is no available exploit.
The affected component should be upgraded.
A vulnerability identified as problematic has been detected in Adrenalin 5.4.0. This impacts an unknown function of the file flexiportal/GeneralInfo.aspx. The manipulation of the argument strAction as part of Parameter leads to cross site scripting (Reflected).
This vulnerability is documented as CVE-2018-12234. The attack can be initiated remotely. Additionally, an exploit exists.
A vulnerability was found in Adrenalin HRMS 5.4.0. It has been rated as problematic. The affected element is an unknown function of the file ApplicationtEmployeeSearch. This manipulation of the argument prntDDLCntrlName/prntFrmName causes cross site scripting (Reflected).
This vulnerability appears as CVE-2018-12650. The attack may be initiated remotely. In addition, an exploit is available.
A vulnerability categorized as problematic has been discovered in Adrenalin 5.4. This issue affects some unknown processing of the file ShiftEmployeeSearch.aspx. The manipulation of the argument prntDDLCntrlName as part of Parameter results in cross site scripting (Reflected).
This vulnerability is known as CVE-2018-12651. It is possible to launch the attack remotely. No exploit is available.
A vulnerability has been found in Adrenalin 5.4 and classified as problematic. Affected by this issue is some unknown functionality of the file LeaveEmployeeSearch.aspx. Performing a manipulation of the argument prntFrmName/prntDDLCntrlName as part of Parameter results in cross site scripting (Reflected).
This vulnerability is reported as CVE-2018-12652. The attack is possible to be carried out remotely. No exploit exists.
A vulnerability was found in Adrenalin 5.4 and classified as problematic. This affects an unknown part of the file RPT/SSRSDynamicEditReports.aspx. Executing a manipulation of the argument ReportId as part of Parameter can lead to cross site scripting (Reflected).
This vulnerability appears as CVE-2018-12653. The attack may be performed from remote. In addition, an exploit is available.
A vulnerability, which was classified as very critical, was found in Zscaler Client Connector up to 4.2.0 on Windows. Affected by this issue is some unknown functionality of the component Repair App. Executing a manipulation can lead to time-of-check time-of-use.
This vulnerability is handled as CVE-2024-23463. The attack can be executed remotely. There is not any exploit available.
You should upgrade the affected component.
A vulnerability was found in Zscaler Client Connector on Windows. It has been declared as critical. This issue affects some unknown processing of the component Anti-Tampering. Such manipulation leads to improper privilege management.
This vulnerability is uniquely identified as CVE-2024-23457. Local access is required to approach this attack. No exploit exists.
It is recommended to upgrade the affected component.