A vulnerability classified as critical was found in PHPGurukul Online Library Management System 3.0. This vulnerability affects unknown code of the file index.php. Such manipulation leads to improper privilege management.
This vulnerability is listed as CVE-2025-57118. The attack may be performed from remote. There is no available exploit.
A vulnerability categorized as critical has been discovered in Edimax BR-6473AX 1.0.28. Affected by this issue is the function openwrt_getConfig. The manipulation results in command injection.
This vulnerability is reported as CVE-2025-56706. The attack can be launched remotely. No exploit exists.
A vulnerability classified as critical has been found in blazethemes Blaze Demo Importer Plugin up to 1.0.12 on WordPress. Impacted is the function blaze_demo_importer_install_plugin of the component Install Handler. Performing manipulation results in missing authorization.
This vulnerability is identified as CVE-2025-8446. The attack can be initiated remotely. There is not any exploit available.
A vulnerability was found in Apple macOS up to 14.7/15.6. It has been declared as critical. The affected element is an unknown function of the component Directory Handler. Such manipulation leads to improper resolution of path equivalence.
This vulnerability is documented as CVE-2025-43298. The attack needs to be performed locally. There is not any exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Apple Xcode. It has been classified as problematic. This affects an unknown function of the component Path Handler. This manipulation causes denial of service.
This vulnerability appears as CVE-2025-43375. The attacker needs to be present on the local network. There is no available exploit.
Upgrading the affected component is recommended.
A vulnerability was found in Samsung Smart Phone and classified as critical. Affected by this issue is some unknown functionality of the component SemShareFileProvider. Executing manipulation can lead to improper access controls.
The identification of this vulnerability is CVE-2023-21493. The attack can only be executed locally. There is no exploit available.
It is suggested to upgrade the affected component.
A vulnerability has been found in Samsung Smart Phone and classified as critical. Affected by this vulnerability is an unknown functionality of the component ThemeManager. Performing manipulation results in improper access controls.
This vulnerability was named CVE-2023-21491. The attack needs to be approached locally. There is no available exploit.
The affected component should be upgraded.
A vulnerability was found in Samsung Smart Phone. It has been classified as critical. This affects an unknown part of the component GearManagerStub. The manipulation leads to improper access controls.
This vulnerability is referenced as CVE-2023-21490. The attack can only be performed from a local environment. No exploit is available.
Upgrading the affected component is recommended.
A vulnerability classified as critical was found in Samsung Smart Phone. This affects an unknown function of the component Bootloader. The manipulation results in out-of-bounds write.
This vulnerability is known as CVE-2023-21489. An attack on the physical device is feasible. No exploit is available.
Upgrading the affected component is advised.
A vulnerability labeled as problematic has been found in ARSC Really Simple Chat up to 1.0.1. Impacted is an unknown function of the file home.php of the component Error Message Handler. Such manipulation of the argument arsc_language leads to information disclosure (Path).
This vulnerability is listed as CVE-2002-0463. The attack may be performed from remote. There is no available exploit.
A vulnerability marked as critical has been reported in Hosting Controller up to 1.4.1. The affected element is an unknown function of the file file_editor.asp/folderactions.asp/editoractions.asp. Performing manipulation results in path traversal.
This vulnerability is cataloged as CVE-2002-0464. It is possible to initiate the attack remotely. There is no exploit available.
A vulnerability described as critical has been identified in Hosting Controller up to 1.4.1. The impacted element is an unknown function of the file filemanager.asp. Executing manipulation of the argument OpenPath can lead to path traversal.
This vulnerability is registered as CVE-2002-0465. It is possible to launch the attack remotely. No exploit is available.
A vulnerability was found in PHPNetToolpack 0.1 and classified as critical. This affects an unknown part. Executing manipulation of the argument a_query can lead to os command injection.
This vulnerability is handled as CVE-2002-0471. The attack can be executed remotely. There is not any exploit available.
A vulnerability was found in zlt2000 microservices-platform up to 6.0.0. It has been declared as critical. Affected by this vulnerability is the function Upload of the file zlt-business/file-center/src/main/java/com/central/file/controller/FileController.java. The manipulation results in unrestricted upload.
This vulnerability is cataloged as CVE-2025-8841. The attack may be launched remotely. Furthermore, there is an exploit available.
A vulnerability classified as problematic was found in WuKongOpenSource WukongCRM 11.0. This affects an unknown function of the file /adminFile/upload of the component API Response Handler. Such manipulation leads to information exposure through error message.
This vulnerability is uniquely identified as CVE-2025-8852. The attack can be launched remotely. Moreover, an exploit is present.