5391 vulnerabilidades Orden: CVSS EPSS Año ID
CVE-2025-28355
Software Genérico Web
4.7
MEDIUM
EPSS
0.2%
2025 2 PoCs

Volmarg Personal Management System 1.4.65 is vulnerable to Cross Site Request Forgery (CSRF) allowing attackers to execute arbitrary code and obtain sensitive information via the SameSite cookie attribute defaults value set to none

CVE-2025-59096
Kaba exos 9300 General
4.6
MEDIUM
EPSS
0.0%
2025 CWE-798 2 PoCs

The default password for the extended admin user mode in the application U9ExosAdmin.exe ("Kaba 9300 Administration") is hard-coded in multiple locations as well as documented in the locally stored user documentation.

CVE-2025-61074
Software Genérico Web
4.6
MEDIUM
EPSS
0.0%
2025 1 PoC

A stored Cross Site Scripting (XSS) vulnerability in the bulletin board (SchwarzeBrett) in adata Software GmbH Mitarbeiter Portal 2.15.2.0 allows remote authenticated users to execute arbitrary JavaScript code in the web browser of other users via manipulation of the 'Inhalt' parameter of the '/SchwarzeBrett/Nachrichten/CreateNachricht' or '/SchwarzeBrett/Nachrichten/EditNachricht/' requests.

CVE-2025-20884
Samsung Mobile Devices General
4.6
MEDIUM
EPSS
0.2%
2025 1 PoC

Improper access control in Samsung Message prior to SMR Jan-2025 Release 1 allows physical attackers to access data across multiple user profiles.

CVE-2025-1888
Aperio Eslide Manager Web
4.6
MEDIUM
EPSS
0.1%
2025 CWE-79 1 PoC

The Leica Web Viewer within the Aperio Eslide Manager Application is vulnerable to reflected cross-site scripting (XSS). An authenticated user can access the slides within a project and injecting malicious JavaScript into the "memo" field. The memo field has a hover over action that will display a Microsoft Tool Tip which a user can use to quickly view the memo associated with the slide and execute the JavaScript.

CVE-2025-47827
🔥 KEV Software Genérico General
4.6
MEDIUM
EPSS
0.9%
2025 1 PoC

In IGEL OS before 11, Secure Boot can be bypassed because the igel-flash-driver module improperly verifies a cryptographic signature. Ultimately, a crafted root filesystem can be mounted from an unverified SquashFS image.

CVE-2025-21063
Samsung Voice Recorder General
4.6
MEDIUM
EPSS
0.0%
2025 1 PoC

Improper access control in Samsung Voice Recorder prior to version 21.5.73.12 in Android 15 and 21.5.81.40 in Android 16 allows physical attackers to access recording files on the lock screen.

CVE-2025-20966
Samsung Gallery General
4.6
MEDIUM
EPSS
0.1%
2025 1 PoC

Improper access control in Samsung Gallery prior to version 14.5.10.3 in Global Android 13, 14.5.09.3 in China Android 13, and 15.5.04.5 in Android 14 allows physical attackers to access data across multiple user profiles.

CVE-2025-60914
Software Genérico General
4.6
MEDIUM
EPSS
0.0%
2025 1 PoC

Incorrect access control in Austrian Archaeological Institute Openatlas before v8.12.0 allows attackers to access sensitive information via sending a crafted GET request to the /display_logo endpoint.

CVE-2025-48073
openexr General
4.6
MEDIUM
EPSS
0.1%
2025 CWE-476 1 PoC

OpenEXR provides the specification and reference implementation of the EXR file format, an image storage format for the motion picture industry. In version 3.3.2, when reading a deep scanline image with a large sample count in reduceMemory mode, it is possible to crash a target application with a NULL pointer dereference in a write operation. This is fixed in version 3.3.3.

CVE-2025-69893
Software Genérico General
4.6
MEDIUM
EPSS
0.1%
2025 1 PoC

A side-channel vulnerability exists in the implementation of BIP-39 mnemonic processing, as observed in Trezor One v1.13.0 to v1.14.0, Trezor T v1.13.0 to v1.14.0, and Trezor Safe v1.13.0 to v1.14.0 hardware wallets. This originates from the BIP-39 standard guidelines, which induce non-constant time execution and specific branch patterns for word searching. An attacker with physical access during the initial setup phase can collect a single side-channel trace. By utilizing profiling-based Deep Learning Side-Channel Analysis (DL-SCA), the attacker can recover the mnemonic code and subsequently

CVE-2025-20924
Samsung Notes General
4.6
MEDIUM
EPSS
0.1%
2025 1 PoC

Improper access control in Samsung Notes prior to version 4.4.26.71 allows physical attackers to access data across multiple user profiles.

CVE-2025-22383
Software Genérico General
4.6
MEDIUM
EPSS
0.3%
2025 CWE-79 1 PoC

An issue was discovered in Optimizely Configured Commerce before 5.2.2408. A medium-severity input validation issue exists in the Commerce B2B application, affecting the Contact Us functionality. This allows visitors to send e-mail messages that could contain unfiltered HTML markup in specific scenarios.

CVE-2025-63433
Software Genérico General
4.6
MEDIUM
EPSS
0.0%
2025 1 PoC

Xtooltech Xtool AnyScan Android Application 4.40.40 and prior uses a hardcoded cryptographic key and IV to decrypt update metadata. The key is stored as a static value within the application's code. An attacker with the ability to intercept network traffic can use this hardcoded key to decrypt, modify, and re-encrypt the update manifest, allowing them to direct the application to download a malicious update package.

CVE-2025-27442
Zoom Workplace Apps General
4.6
MEDIUM
EPSS
0.4%
2025 CWE-79 1 PoC

Cross site scripting in some Zoom Workplace Apps may allow an unauthenticated user to conduct a loss of integrity via adjacent network access.

CVE-2025-29322
Software Genérico Web
4.6
MEDIUM
EPSS
0.5%
2025 1 PoC

A cross-site scripting (XSS) vulnerability in ScriptCase before v1.0.003 - Build 3 allows attackers to execute arbitrary code via a crafted payload to the "Connection Name" in the New Connection and Rename Connection pages.

CVE-2025-67634
Software Acquisition Guide Tool Web
4.6
MEDIUM
EPSS
0.0%
2025 CWE-79 1 PoC

The CISA Software Acquisition Guide Supplier Response Web Tool before 2025-12-11 was vulnerable to cross-site scripting via text fields. If an attacker could convince a user to import a specially-crafted JSON file, the Tool would load JavaScript from the file into the page. The JavaScript would execute in the context of the user's browser when the user submits the page (clicks 'Next').

CVE-2025-11570
drupal-pattern-lab/unified-twig-extensions Web
4.6
MEDIUM
EPSS
0.0%
2025 CWE-79 2 PoCs

Versions of the package drupal-pattern-lab/unified-twig-extensions from 0.0.0 are vulnerable to Cross-site Scripting (XSS) due to insufficient filtering of data. **Note:** This is exploitable only if the code is executed outside of Drupal; the function is intended to be shared between Drupal and Pattern Lab. The package drupal-pattern-lab/unified-twig-extensions is unmaintained, the fix for this issue exists in version 1.1.1 of [drupal/unified_twig_ext](https://www.drupal.org/project/unified_twig_ext)

CVE-2025-20894
Samsung Email General
4.6
MEDIUM
EPSS
0.2%
2025 1 PoC

Improper access control in Samsung Email prior to version 6.1.97.1 allows physical attackers to access data across multiple user profiles.

CVE-2025-30439
iOS and iPadOS General
4.6
MEDIUM
EPSS
0.1%
2025 2 PoCs

The issue was addressed with improved checks. This issue is fixed in iOS 18.4 and iPadOS 18.4, macOS Sequoia 15.4, visionOS 2.4, watchOS 11.4. An attacker with physical access to a locked device may be able to view sensitive user information.