2528 vulnerabilidades · General Orden: CVSS EPSS Año ID
CVE-2025-21035
Samsung Calendar General
4.6
MEDIUM
EPSS
0.0%
2025 1 PoC

Improper access control in Samsung Calendar prior to version 12.5.06.5 in Android 14 and 12.6.01.12 in Android 15 allows physical attackers to access data across multiple user profiles.

CVE-2025-48074
openexr General
4.6
MEDIUM
EPSS
0.0%
2025 CWE-770 1 PoC

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. In version 3.3.2, applications trust unvalidated dataWindow size values from file headers, which can lead to excessive memory allocation and performance degradation when processing malicious files. This is fixed in version 3.3.3.

CVE-2025-59096
Kaba exos 9300 General
4.6
MEDIUM
EPSS
0.0%
2025 CWE-798 2 PoCs

The default password for the extended admin user mode in the application U9ExosAdmin.exe ("Kaba 9300 Administration") is hard-coded in multiple locations as well as documented in the locally stored user documentation.

CVE-2025-47814
PSPP General
4.5
MEDIUM
EPSS
0.2%
2025 CWE-122 1 PoC

libpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause a heap-based buffer overflow in inflate_read (called indirectly from spv_read_xml_member) in zip-reader.c.

CVE-2025-20994
Samsung Internet General
4.5
MEDIUM
EPSS
0.0%
2025 1 PoC

Improper handling of insufficient permission in SyncClientProvider in Samsung Internet installed on non-Samsung Device prior to version 28.0.0.59 allows local attackers to access read and write arbitrary files.

CVE-2025-46646
Ghostscript General
4.5
MEDIUM
EPSS
0.1%
2025 CWE-24 1 PoC

In Artifex Ghostscript before 10.05.0, decode_utf8 in base/gp_utf8.c mishandles overlong UTF-8 encoding. NOTE: this issue exists because of an incomplete fix for CVE-2024-46954.

CVE-2025-47815
PSPP General
4.5
MEDIUM
EPSS
0.2%
2025 CWE-122 1 PoC

libpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause a heap-based buffer overflow in inflate_read (called indirectly from zip_member_read_all) in zip-reader.c.

CVE-2025-0757
Pentaho Business Analytics Server General
4.4
MEDIUM
EPSS
0.2%
2025 CWE-79 1 PoC

Overview   The software does not neutralize or incorrectly neutralize user-controllable input before it is placed in output that is used as a web page that is served to other users. (CWE-79)   Description   Hitachi Vantara Pentaho Business Analytics Server prior to versions 10.2.0.2, including 9.3.x and 8.3.x, allow a malicious URL to inject content into the Analyzer plugin interface.   Impact   Once the malicious script is injected, the attacker can perform a variety of malicious activities. The attacker could transfer private information, such as cookies tha

CVE-2025-24909
Pentaho Business Analytics Server General
4.4
MEDIUM
EPSS
0.2%
2025 CWE-79 1 PoC

Overview   The software does not neutralize or incorrectly neutralize user-controllable input before it is placed in output that is used as a web page that is served to other users. (CWE-79)   Description   Hitachi Vantara Pentaho Business Analytics Server prior to versions 10.2.0.2, including 9.3.x and 8.3.x, allow a malicious URL to inject content into the Analyzer plugin interface.   Impact   Once the malicious script is injected, the attacker can perform a variety of malicious activities. The attacker could transfer private information, such as cookies th

CVE-2025-2301
Online Exam Registration General
4.4
MEDIUM
EPSS
0.0%
2025 CWE-639 1 PoC

Authorization Bypass Through User-Controlled Key vulnerability in Akbim Software Online Exam Registration allows Exploitation of Trusted Identifiers.This issue affects Online Exam Registration: before 14.03.2025.

CVE-2025-27459
Endress+Hauser MEAC300-FNADE4 General
4.4
MEDIUM
EPSS
0.1%
2025 CWE-257 1 PoC

The VNC application stores its passwords encrypted within the registry but uses DES for encryption. As DES is broken, the original passwords can be recovered.

CVE-2025-4418
PI Connector for CygNet General
4.4
MEDIUM
EPSS
0.0%
2025 CWE-354 1 PoC

An improper validation of integrity check value vulnerability exists in AVEVA PI Connector for CygNet Versions 1.6.14 and prior that, if exploited, could allow a miscreant with elevated privileges to modify PI Connector for CygNet local data files (cache and buffers) in a way that causes the connector service to become unresponsive.

CVE-2025-20942
Samsung Mobile Devices General
4.4
MEDIUM
EPSS
0.1%
2025 1 PoC

Improper Verification of Intent by Broadcast Receiver in DeviceIdService prior to SMR Apr-2025 Release 1 allows local attackers to reset OAID.

CVE-2025-5278
Software Genérico General
4.4
MEDIUM
EPSS
0.1%
2025 CWE-121 1 PoC

A flaw was found in GNU Coreutils. The sort utility's begfield() function is vulnerable to a heap buffer under-read. The program may access memory outside the allocated buffer if a user runs a crafted command using the traditional key format. A malicious input could lead to a crash or leak sensitive data.

CVE-2025-20911
Samsung Mobile Devices General
4.4
MEDIUM
EPSS
0.1%
2025 1 PoC

Improper access control in sem_wifi service prior to SMR Mar-2025 Release 1 allows privileged local attackers to update MAC address of Galaxy Watch.

CVE-2025-20901
Blockchain Keystore General
4.4
MEDIUM
EPSS
0.1%
2025 1 PoC

Out-of-bounds read in Blockchain Keystore prior to version 1.3.16.5 allows local privileged attackers to read out-of-bounds memory.

CVE-2025-20958
Samsung Mobile Devices General
4.4
MEDIUM
EPSS
0.1%
2025 1 PoC

Improper verification of intent by broadcast receiver in UnifiedWFC prior to SMR May-2025 Release 1 allows local attackers to manipulate VoWiFi related behaviors.

CVE-2025-21018
Blockchain Keystore General
4.4
MEDIUM
EPSS
0.0%
2025 1 PoC

Out-of-bounds read in Blockchain Keystore prior to version 1.3.17.2 allows local privileged attackers to read out-of-bounds memory.

CVE-2025-23247
NVIDIA CUDA Toolkit General
4.4
MEDIUM
EPSS
0.1%
2025 CWE-130 1 PoC

NVIDIA CUDA Toolkit for all platforms contains a vulnerability in the cuobjdump binary, where a failure to check the length of a buffer could allow a user to cause the tool to crash or execute arbitrary code by passing in a malformed ELF file. A successful exploit of this vulnerability might lead to arbitrary code execution.

CVE-2025-10158
rsync General
4.3
MEDIUM
EPSS
0.1%
2025 CWE-129 1 PoC

A malicious client acting as the receiver of an rsync file transfer can trigger an out of bounds read of a heap based buffer, via a negative array index. The malicious rsync client requires at least read access to the remote rsync module in order to trigger the issue.