5091 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2025-54336
Software Genérico Web
9.8
CRITICAL
EPSS
0.1%
2025 2 PoCs

In Plesk Obsidian 18.0.70, _isAdminPasswordValid uses an == comparison. Thus, if the correct password is "0e" followed by any digit string, then an attacker can login with any other string that evaluates to 0.0 (such as the 0e0 string). This occurs in admin/plib/LoginManager.php.

CVE-2025-27681
Software Genérico General
9.8
CRITICAL
EPSS
0.3%
2025 2 PoCs

Vasion Print (formerly PrinterLogic) before Virtual Appliance Host 1.0.735 Application 20.0.1330 mishandles Client Inter-process Security V-2022-004.

CVE-2025-2746
🔥 KEV Xperience General ⚡ nuclei
9.8
CRITICAL
EPSS
89.7%
2025 CWE-288 2 PoCs

An authentication bypass vulnerability in Kentico Xperience allows authentication bypass via the Staging Sync Server password handling of empty SHA1 usernames in digest authentication. Authentication bypass allows an attacker to control administrative objects.This issue affects Xperience through 13.0.172.

CVE-2025-54492
libbiosig General
9.8
CRITICAL
EPSS
0.3%
2025 CWE-121 2 PoCs

A stack-based buffer overflow vulnerability exists in the MFER parsing functionality of The Biosig Project libbiosig 3.9.0 and Master Branch (35a819fa). A specially crafted MFER file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.This vulnerability manifests on line 9141 of biosig.c on the current master branch (35a819fa), when the Tag is 67: else if (tag==67) //0x43: Sample skew { int skew=0; // [1] curPos += ifread(&skew, 1, len,hdr); In this

CVE-2025-22938
Software Genérico General
9.8
CRITICAL
EPSS
0.3%
2025 2 PoCs

Adtran 411 ONT L80.00.0011.M2 was discovered to contain weak default passwords.

CVE-2025-65133
Software Genérico Web Database
9.8
CRITICAL
EPSS
0.2%
2025 2 PoCs

A SQL injection vulnerability exists in the School Management System (version 1.0) by manikandan580. An unauthenticated or authenticated remote attacker can supply a crafted HTTP request to the affected endpoint to manipulate SQL query logic and extract sensitive database information.

CVE-2025-52021
Software Genérico Web Database
9.8
CRITICAL
EPSS
0.0%
2025 1 PoC

A SQL Injection vulnerability exists in the edit_product.php file of PuneethReddyHC Online Shopping System Advanced 1.0. The product_id GET parameter is unsafely passed to a SQL query without proper validation or parameterization.

CVE-2025-24232
macOS General
9.8
CRITICAL
EPSS
0.7%
2025 1 PoC

This issue was addressed through improved state management. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. A malicious app may be able to access arbitrary files.

CVE-2025-69929
Software Genérico General
9.8
CRITICAL
EPSS
0.0%
2025 1 PoC

An issue in N3uron Web User Interface v.1.21.7-240207.1047 allows a remote attacker to escalate privileges via the password hashing on the client side using the MD5 algorithm over a predictable string format

CVE-2025-45931
Software Genérico General
9.8
CRITICAL
EPSS
4.7%
2025 1 PoC

An issue D-Link DIR-816-A2 DIR-816A2_FWv1.10CNB05_R1B011D88210 allows a remote attacker to execute arbitrary code via system() function in the bin/goahead file

CVE-2025-30424
macOS General
9.8
CRITICAL
EPSS
0.7%
2025 1 PoC

A logging issue was addressed with improved data redaction. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. Deleting a conversation in Messages may expose user contact information in system logging.

CVE-2025-52688
OmniAccess Stellar Products General
9.8
CRITICAL
EPSS
0.2%
2025 CWE-77 2 PoCs

Successful exploitation of the vulnerability could allow an attacker to inject commands with root privileges on the access point, potentially leading to the loss of confidentiality, integrity, availability, and full control of the access point.

CVE-2025-7955
RingCentral Communications Plugin – FREE Web Windows
9.8
CRITICAL
EPSS
0.6%
2025 CWE-287 1 PoC

The RingCentral Communications plugin for WordPress is vulnerable to Authentication Bypass due to improper validation within the ringcentral_admin_login_2fa_verify() function in versions 1.5 to 1.6.8. This makes it possible for unauthenticated attackers to log in as any user simply by supplying identical bogus codes.

CVE-2025-65656
Software Genérico Web
9.8
CRITICAL
EPSS
0.1%
2025 1 PoC

dcat-admin v2.2.3-beta and before is vulnerable to file inclusion in admin/src/Extend/VersionManager.php.

CVE-2025-63217
Software Genérico General
9.8
CRITICAL
EPSS
0.1%
2025 1 PoC

The Itel DAB MUX (IDMUX build c041640a) is vulnerable to Authentication Bypass due to improper JWT validation across devices. Attackers can reuse a valid JWT token obtained from one device to authenticate and gain administrative access to any other device running the same firmware, even if the passwords and networks are different. This allows full compromise of affected devices.

CVE-2025-32880
Software Genérico Web
9.8
CRITICAL
EPSS
0.2%
2025 3 PoCs

An issue was discovered on COROS PACE 3 devices through 3.0808.0. It implements a function to connect the watch to a WLAN. With WLAN access, the COROS Pace 3 downloads firmware files via HTTP. However, the communication is not encrypted and allows sniffing and machine-in-the-middle attacks.

CVE-2025-56819
Software Genérico General ⚡ nuclei
9.8
CRITICAL
EPSS
11.8%
2025 1 PoC

An issue in Datart v.1.0.0-rc.3 allows a remote attacker to execute arbitrary code via the INIT connection parameter.

CVE-2025-70221
Software Genérico General
9.8
CRITICAL
EPSS
0.1%
2025 1 PoC

Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formLogin.

CVE-2025-70152
Software Genérico Web Database
9.8
CRITICAL
EPSS
0.2%
2025 1 PoC

code-projects Community Project Scholars Tracking System 1.0 is vulnerable to SQL Injection in the admin user management endpoints /admin/save_user.php and /admin/update_user.php. These endpoints lack authentication checks and directly concatenate user-supplied POST parameters (firstname, lastname, username, password, user_id) into SQL queries without validation or parameterization.

CVE-2025-46108
Software Genérico General
9.8
CRITICAL
EPSS
0.1%
2025 1 PoC

D-link Dir-513 A1FW110 is vulnerable to Buffer Overflow in the function formTcpipSetup.