5391 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2025-24097
iOS and iPadOS General
5.0
MEDIUM
EPSS
0.0%
2025 2 PoCs

A permissions issue was addressed with additional restrictions. This issue is fixed in iOS 18.4 and iPadOS 18.4, iPadOS 17.7.7, macOS Sequoia 15.4, macOS Sonoma 14.7.5, tvOS 18.4, watchOS 11.4. An app may be able to read arbitrary file metadata.

CVE-2025-12941
C6220 Networking
5.0
MEDIUM
EPSS
0.0%
2025 CWE-306 1 PoC

Denial of Service Vulnerability in NETGEAR C6220 and C6230 (DOCSIS® 3.0 Two-in-one Cable Modem + WiFi Router) allows authenticated local WiFi users reboot the router.

CVE-2025-32103
CrushFTP Windows
5.0
MEDIUM
EPSS
1.6%
2025 CWE-40 2 PoCs

CrushFTP 9.x and 10.x through 10.8.4 and 11.x through 11.3.1 allows directory traversal via the /WebInterface/function/ URI to read files accessible by SMB at UNC share pathnames, bypassing SecurityManager restrictions.

CVE-2025-48461
Advantech Wireless Sensing and Equipment (WISE) General
5.0
MEDIUM
EPSS
0.0%
2025 1 PoC

Successful exploitation of the vulnerability could allow an unauthenticated attacker to conduct brute force guessing and account takeover as the session cookies are predictable, potentially allowing the attackers to gain root, admin or user access and reset passwords.

CVE-2025-47226
Snipe-IT General
5.0
MEDIUM
EPSS
1.0%
2025 CWE-425 2 PoCs

Grokability Snipe-IT before 8.1.0 has incorrect authorization for accessing asset information.

CVE-2025-59397
Open Web Analytics Web Database
5.0
MEDIUM
EPSS
0.0%
2025 CWE-89 2 PoCs

Open Web Analytics (OWA) before 1.8.1 allows owa_db.php v[value] SQL injection.

CVE-2025-60251
Go2 General
5.0
MEDIUM
EPSS
0.0%
2025 CWE-306 1 PoC

Unitree Go2, G1, H1, and B2 devices through 2025-09-20 accept any handshake secret with the unitree substring.

CVE-2025-32102
CrushFTP General
5.0
MEDIUM
EPSS
0.5%
2025 CWE-918 2 PoCs

CrushFTP 9.x and 10.x through 10.8.4 and 11.x through 11.3.1 allows SSRF via the host and port parameters in a command=telnetSocket request to the /WebInterface/function/ URI.

CVE-2025-21036
Samsung Notes General
5.0
MEDIUM
EPSS
0.0%
2025 1 PoC

Improper access control in Samsung Notes prior to version 4.4.30.63 allows local privileged attackers to access exported note files. User interaction is required for triggering this vulnerability.

CVE-2025-20996
Smart Switch General
5.0
MEDIUM
EPSS
0.0%
2025 1 PoC

Improper authorization in Smart Switch installed on non-Samsung Device prior to version 3.7.64.10 allows local attackers to read data with the privilege of Smart Switch. User interaction is required for triggering this vulnerability.

CVE-2025-5101
GitLab DevOps
5.0
MEDIUM
EPSS
0.0%
2025 CWE-94 1 PoC

An issue has been discovered in GitLab CE/EE affecting all versions before 18.1.5, 18.2 before 18.2.5, and 18.3 before 18.3.1 that under certain conditions could have allowed an authenticated attacker to distribute malicious code that appears harmless in the web interface by taking advantage of ambiguity between branches and tags during repository imports.

CVE-2025-69620
Software Genérico General
5.0
MEDIUM
EPSS
0.0%
2025 1 PoC

A path traversal in Moo Chan Song v4.5.7 allows attackers to cause a Denial of Service (DoS) via writing files to the internal storage.

CVE-2025-26127
Software Genérico Web Cloud
5.0
MEDIUM
EPSS
0.1%
2025 1 PoC

A stored cross-site scripting (XSS) vulnerability in the Send for Approval function of FileCloud v23.241.2 allows attackers to execute arbitrary web scripts or HTML via a crafted payload.

CVE-2025-12630
Upload.am Web Windows
4.9
MEDIUM
EPSS
0.0%
2025 1 PoC

The Upload.am WordPress plugin before 1.0.1 is vulnerable to arbitrary option disclosure due to a missing capability check on its AJAX request handler, allowing users such as contributor to view site options.

CVE-2025-3471
SureForms Web Windows
4.9
MEDIUM
EPSS
0.2%
2025 1 PoC

The SureForms WordPress plugin before 1.4.4 does not have proper authorisation check when updating its settings via the REST API, which could allow Contributor and above roles to perform such action

CVE-2025-60449
Software Genérico Web
4.9
MEDIUM
EPSS
0.1%
2025 1 PoC

An information disclosure vulnerability has been discovered in SeaCMS 13.1. The vulnerability exists in the admin_safe.php component located in the /btcoan/ directory. This security flaw allows authenticated administrators to scan and download not only the application’s source code but also potentially any file accessible on the server’s root directory.

CVE-2025-11794
Mattermost Web
4.9
MEDIUM
EPSS
0.0%
2025 CWE-200 1 PoC

Mattermost versions 10.11.x <= 10.11.3, 10.5.x <= 10.5.11, 10.12.x <= 10.12.0 fail to sanitize user data which allows system administrators to access password hashes and MFA secrets via the POST /api/v4/users/{user_id}/email/verify/member endpoint

CVE-2025-50099
MySQL Server Database
4.9
MEDIUM
EPSS
0.1%
2025 1 PoC

Vulnerability in the MySQL Server product of Oracle MySQL (component: InnoDB). Supported versions that are affected are 8.0.0-8.0.42, 8.4.0-8.4.5 and 9.0.0-9.3.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).

CVE-2025-50097
MySQL Server Database
4.9
MEDIUM
EPSS
0.1%
2025 1 PoC

Vulnerability in the MySQL Server product of Oracle MySQL (component: Server: Security: Encryption). Supported versions that are affected are 8.0.0-8.0.42, 8.4.0-8.4.5 and 9.0.0-9.3.0. Easily exploitable vulnerability allows high privileged attacker with network access via multiple protocols to compromise MySQL Server. Successful attacks of this vulnerability can result in unauthorized ability to cause a hang or frequently repeatable crash (complete DOS) of MySQL Server. CVSS 3.1 Base Score 4.9 (Availability impacts). CVSS Vector: (CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:H).

CVE-2025-9345
File Manager, Code Editor, and Backup by Managefy Web Windows
4.9
MEDIUM
EPSS
0.1%
2025 CWE-22 1 PoC

The File Manager, Code Editor, and Backup by Managefy plugin for WordPress is vulnerable to Path Traversal in all versions up to, and including, 1.4.8 via the ajax_downloadfile() function. This makes it possible for authenticated attackers, with Subscriber-level access and above, to perform actions on files outside of the originally intended directory.