5391 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2025-27448
Endress+Hauser MEAC300-FNADE4 Web
6.8
MEDIUM
EPSS
0.2%
2025 CWE-79 1 PoC

The web application is susceptible to cross-site-scripting attacks. An attacker who can create new dashboards can inject JavaScript code into the dashboard name which will be executed when the website is loaded.

CVE-2025-9337
Armoury Crate General
6.8
MEDIUM
EPSS
0.0%
2025 CWE-476 1 PoC

A null pointer dereference has been identified in the AsIO3.sys driver. The vulnerability can be triggered by a specially crafted input, which may lead to a system crash (BSOD). Refer to the 'Security Update for Armoury Crate App' section on the ASUS Security Advisory for more information.

CVE-2025-63701
Software Genérico General
6.8
MEDIUM
EPSS
0.0%
2025 1 PoC

A heap corruption vulnerability exists in the Advantech TP-3250 printer driver's DrvUI_x64_ADVANTECH.dll (v0.3.9200.20789) when DocumentPropertiesW() is called with a valid dmDriverExtra value but an undersized output buffer. The driver incorrectly assumes the output buffer size matches the input buffer size, leading to invalid memory operations and heap corruption. This vulnerability can cause denial of service through application crashes and potentially lead to code execution in user space. Local access is required to exploit this vulnerability.

CVE-2025-41705
QUINT4-UPS/24DC/24DC/5/EIP General
6.8
MEDIUM
EPSS
0.0%
2025 CWE-523 1 PoC

An unauthenticated remote attacker (MITM) can intercept the websocket messages to gain access to the login credentials for the Webfrontend.

CVE-2025-56463
Software Genérico General
6.8
MEDIUM
EPSS
0.0%
2025 1 PoC

Mercusys MW305R 3.30 and below is has a Transport Layer Security (TLS) certificate private key disclosure.

CVE-2025-0221
Protected Folder General
6.8
MEDIUM
EPSS
0.1%
2025 CWE-476 2 PoCs

A vulnerability has been found in IOBit Protected Folder up to 1.3.0 and classified as problematic. This vulnerability affects the function 0x22200c in the library pffilter.sys of the component IOCTL Handler. The manipulation leads to null pointer dereference. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.

CVE-2025-32063
Infotainment system ECU Networking
6.8
MEDIUM
EPSS
0.0%
2025 CWE-306 2 PoCs

There is a misconfiguration vulnerability inside the Infotainment ECU manufactured by BOSCH. The vulnerability happens during the startup phase of a specific systemd service, and as a result, the following developer features will be activated: the disabled firewall and the launched SSH server. First identified on Nissan Leaf ZE1 manufactured in 2020.

CVE-2025-6037
Vault Web
6.8
MEDIUM
EPSS
0.1%
2025 CWE-295 1 PoC

Vault and Vault Enterprise (“Vault”) TLS certificate auth method did not correctly validate client certificates when configured with a non-CA certificate as [+trusted certificate+|https://developer.hashicorp.com/vault/api-docs/auth/cert#certificate]. In this configuration, an attacker may be able to craft a malicious certificate that could be used to impersonate another user. Fixed in Vault Community Edition 1.20.1 and Vault Enterprise 1.20.1, 1.19.7, 1.18.12, and 1.16.23.

CVE-2025-24272
macOS General
6.8
MEDIUM
EPSS
0.1%
2025 1 PoC

The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15.4, macOS Sonoma 14.7.5, macOS Ventura 13.7.5. An app may be able to modify protected parts of the file system.

CVE-2025-26409
Wattsense Bridge General
6.8
MEDIUM
EPSS
0.2%
2025 CWE-1299 3 PoCs

A serial interface can be accessed with physical access to the PCB of Wattsense Bridge devices. After connecting to the interface, access to the bootloader is possible, as well as a Linux login prompt. The bootloader access can be used to gain a root shell on the device. This issue is fixed in recent firmware versions BSP >= 6.4.1.

CVE-2025-14803
NEX-Forms Web Windows
6.8
MEDIUM
EPSS
0.1%
2025 1 PoC

The NEX-Forms WordPress plugin before 9.1.8 does not sanitise and escape some of its settings. The NEX-Forms WordPress plugin before 9.1.8 can be configured in such a way that could allow subscribers to perform Stored Cross-Site Scripting.

CVE-2025-8023
Mattermost General
6.8
MEDIUM
EPSS
0.1%
2025 CWE-22 1 PoC

Mattermost versions 10.8.x <= 10.8.3, 10.5.x <= 10.5.8, 9.11.x <= 9.11.17, 10.9.x <= 10.9.2 fails to sanitize path traversal sequences in template file destination paths, which allows a system admin to perform path traversal attacks via malicious path components, potentially enabling malicious file placement outside intended directories.

CVE-2025-26637
Windows 10 Version 1507 Windows
6.8
MEDIUM
EPSS
1.4%
2025 CWE-693 1 PoC

Protection mechanism failure in Windows BitLocker allows an unauthorized attacker to bypass a security feature with a physical attack.

CVE-2025-59713
Snipe-IT General
6.8
MEDIUM
EPSS
0.0%
2025 CWE-502 1 PoC

Snipe-IT before 8.1.18 allows unsafe deserialization.

CVE-2025-12502
attention-bar Web Database Windows
6.8
MEDIUM
EPSS
0.0%
2025 1 PoC

The attention-bar WordPress plugin through 0.7.2.1 does not sanitize and escape a parameter before using it in a SQL statement, allowing high privilege users such as administrator to perform SQL injection attacks

CVE-2025-57692
Software Genérico Web
6.8
MEDIUM
EPSS
0.1%
2025 1 PoC

PiranhaCMS 12.0 allows stored XSS in the Text content block of Standard and Standard Archive Pages via /manager/pages, enabling execution of arbitrary JavaScript in another user s browser.

CVE-2025-20897
Secure Folder General
6.8
MEDIUM
EPSS
0.1%
2025 1 PoC

Improper access control in Secure Folder prior to version 1.9.20.50 in Android 14, 1.8.11.0 in Android 13, and 1.7.04.0 in Android 12 allows local attacker to access data in Secure Folder.

CVE-2025-0549
GitLab DevOps
6.8
MEDIUM
EPSS
0.1%
2025 CWE-288 1 PoC

An issue has been discovered in GitLab CE/EE affecting all versions starting from 17.3 prior to 17.9.8, from 17.10 prior to 17.10.6, and from 17.11 prior to 17.11.2. A security vulnerability allows attackers to bypass Device OAuth flow protections, enabling authorization form submission through minimal user interaction.

CVE-2025-14435
Mattermost Web
6.8
MEDIUM
EPSS
0.0%
2025 CWE-770 1 PoC

Mattermost versions 10.11.x <= 10.11.8, 11.1.x <= 11.1.1, 11.0.x <= 11.0.6 fail to prevent infinite re-renders on API errors which allows authenticated users to cause application-level DoS via triggering unbounded component re-render loops.

CVE-2025-2600
Remote Desktop Manager Windows
6.8
MEDIUM
EPSS
0.1%
2025 CWE-285 1 PoC

Improper authorization in the variable component in Devolutions Remote Desktop Manager on Windows allows an authenticated user to use the ELEVATED_PASSWORD variable even though not allowed by the "Allow password in variable policy". This issue affects Remote Desktop Manager versions from 2025.1.24 through 2025.1.25, and all versions up to 2024.3.29.