CVE tracker
369 subscribers
5.05K links
News monitoring: @irnewsagency

Main channel: @orgsecuritygate

Site: SecurityGate.org
Download Telegram
CVE-2025-2597 - ITIUM 6050 Reflected Cross-Site Scripting (XSS)

CVE ID : CVE-2025-2597
Published : March 21, 2025, 12:15 p.m. | 1 hour, 40 minutes ago
Description : Reflected Cross-Site Scripting (XSS) in ITIUM 6050 version 5.5.5.2-b3526 from Impact Technologies. This vulnerability could allow an attacker to execute malicious Javascript code via GET and POST requests to the ‘/index.php’ endpoint and injecting code into the ‘id_session.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-2589 - Code-projects Human Resource Management System Unauthorized Access Vulnerability

CVE ID : CVE-2025-2589
Published : March 21, 2025, 1:15 p.m. | 40 minutes ago
Description : A vulnerability was found in code-projects Human Resource Management System 1.0.1 and classified as critical. This issue affects the function Index of the file \handler\Account.go. The manipulation of the argument user_cookie leads to improper authorization. The exploit has been disclosed to the public and may be used.
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-2590 - Code-projects Human Resource Management System Cross-Site Scripting Vulnerability

CVE ID : CVE-2025-2590
Published : March 21, 2025, 1:15 p.m. | 40 minutes ago
Description : A vulnerability was found in code-projects Human Resource Management System 1.0.1. It has been classified as problematic. Affected is the function UpdateRecruitmentById of the file \handler\recruitment.go. The manipulation of the argument c leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.
Severity: 2.4 | LOW
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2024-57490 - Guangzhou Hongfan Technology Co., LTD. iOffice20 Login Authentication Bypass Vulnerability

CVE ID : CVE-2024-57490
Published : March 21, 2025, 2:15 p.m. | 3 hours, 40 minutes ago
Description : Guangzhou Hongfan Technology Co., LTD. iOffice20 has any user login vulnerability. An attacker can log in to any system account including the system administrator through a logical flaw.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-2591 - "Open Asset Import Library Assimp Divide By Zero Vulnerability"

CVE ID : CVE-2025-2591
Published : March 21, 2025, 2:15 p.m. | 3 hours, 40 minutes ago
Description : A vulnerability classified as problematic was found in Open Asset Import Library Assimp 5.4.3. This vulnerability affects the function MDLImporter::InternReadFile_Quake1 of the file code/AssetLib/MDL/MDLLoader.cpp. The manipulation of the argument skinwidth/skinheight leads to divide by zero. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The patch is identified as ab66a1674fcfac87aaba4c8b900b315ebc3e7dbd. It is recommended to apply a patch to fix this issue.
Severity: 4.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-2592 - "Open Asset Import Library (Assimp) Heap-Based Buffer Overflow Vulnerability"

CVE ID : CVE-2025-2592
Published : March 21, 2025, 2:15 p.m. | 3 hours, 40 minutes ago
Description : A vulnerability, which was classified as critical, has been found in Open Asset Import Library Assimp 5.4.3. This issue affects the function CSMImporter::InternReadFile of the file code/AssetLib/CSM/CSMLoader.cpp. The manipulation leads to heap-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The patch is named 2690e354da0c681db000cfd892a55226788f2743. It is recommended to apply a patch to fix this issue.
Severity: 6.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2021-25635 - LibreOffice Improper Certificate Validation Certificate Spoofing Vulnerability

CVE ID : CVE-2021-25635
Published : March 21, 2025, 3:15 p.m. | 2 hours, 40 minutes ago
Description : An Improper Certificate Validation vulnerability in LibreOffice allowed an attacker to self sign an ODF document, with a signature untrusted by the target, then modify it to change the signature algorithm to an invalid (or unknown to LibreOffice) algorithm and LibreOffice would incorrectly present such a signature with an unknown algorithm as a valid signature issued by a trusted person This issue affects LibreOffice: from 7.0 before 7.0.5, from 7.1 before 7.1.1.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-24915 - Nessus Agent Windows Local Privilege Escalation

CVE ID : CVE-2025-24915
Published : March 21, 2025, 3:15 p.m. | 2 hours, 40 minutes ago
Description : When installing Nessus Agent to a non-default location on a Windows host, Nessus Agent versions prior to 10.8.3 did not enforce secure permissions for sub-directories.  This could allow for local privilege escalation if users had not secured the directories in the non-default installation location.
Severity: 7.8 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-27612 - Libcontainer Capability Elevation Vulnerability

CVE ID : CVE-2025-27612
Published : March 21, 2025, 3:15 p.m. | 2 hours, 40 minutes ago
Description : libcontainer is a library for container control. Prior to libcontainer 0.5.3, while creating a tenant container, the tenant builder accepts a list of capabilities to be added in the spec of tenant container. The logic here adds the given capabilities to all capabilities of main container if present in spec, otherwise simply set provided capabilities as capabilities of the tenant container. However, setting inherited caps in any case for tenant container can lead to elevation of capabilities, similar to CVE-2022-29162. This does not affect youki binary itself. This is only applicable if you are using libcontainer directly and using the tenant builder.
Severity: 5.9 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-29640 - "PhpGurukul Testing Management System SQL Injection"

CVE ID : CVE-2025-29640
Published : March 21, 2025, 3:15 p.m. | 2 hours, 40 minutes ago
Description : Phpgurukul Human Metapneumovirus (HMPV) – Testing Management System v1.0 is vulnerable to SQL Injection in /patient-report.php via the parameter searchdata..
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-29641 - "PhpGurukul Vehicle Record Management System SQL Injection Vulnerability"

CVE ID : CVE-2025-29641
Published : March 21, 2025, 3:15 p.m. | 2 hours, 40 minutes ago
Description : Phpgurukul Vehicle Record Management System v1.0 is vulnerable to SQL Injection in /index.php via the 'searchinputdata' parameter.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-29927 - Next.js Authorization Bypass in Middleware

CVE ID : CVE-2025-29927
Published : March 21, 2025, 3:15 p.m. | 2 hours, 40 minutes ago
Description : Next.js is a React framework for building full-stack web applications. Prior to 14.2.25 and 15.2.3, it is possible to bypass authorization checks within a Next.js application, if the authorization check occurs in middleware. If patching to a safe version is infeasible, it is recommend that you prevent external user requests which contain the x-middleware-subrequest header from reaching your Next.js application. This vulnerability is fixed in 14.2.25 and 15.2.3.
Severity: 9.1 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-2593 - FastCMS SQL Injection Vulnerability

CVE ID : CVE-2025-2593
Published : March 21, 2025, 3:15 p.m. | 2 hours, 40 minutes ago
Description : A vulnerability has been found in FastCMS up to 0.1.5 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /api/client/article/list. The manipulation of the argument orderBy leads to sql injection. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.
Severity: 6.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-2598 - AWS CDK CLI AWS Credentials Information Disclosure

CVE ID : CVE-2025-2598
Published : March 21, 2025, 3:15 p.m. | 2 hours, 40 minutes ago
Description : When the AWS Cloud Development Kit (AWS CDK) Command Line Interface (AWS CDK CLI) is used with a credential plugin which returns an expiration property with the retrieved AWS credentials, the credentials are printed to the console output. To mitigate this issue, users should upgrade to version 2.178.2 or later and ensure any forked or derivative code is patched to incorporate the new fixes.
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-30157 - Envoy HTTP Filter Crash Vulnerability

CVE ID : CVE-2025-30157
Published : March 21, 2025, 3:15 p.m. | 2 hours, 40 minutes ago
Description : Envoy is a cloud-native high-performance edge/middle/service proxy. Prior to 1.33.1, 1.32.4, 1.31.6, and 1.30.10, Envoy's ext_proc HTTP filter is at risk of crashing if a local reply is sent to the external server due to the filter's life time issue. A known situation is the failure of a websocket handshake will trigger a local reply leading to the crash of Envoy. This vulnerability is fixed in 1.33.1, 1.32.4, 1.31.6, and 1.30.10.
Severity: 6.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-30168 - "Parse Server Authentication Provider Cross-Site Credential Abuse"

CVE ID : CVE-2025-30168
Published : March 21, 2025, 3:15 p.m. | 2 hours, 40 minutes ago
Description : Parse Server is an open source backend that can be deployed to any infrastructure that can run Node.js. Prior to 7.5.2 and 8.0.2, the 3rd party authentication handling of Parse Server allows the authentication credentials of some specific authentication providers to be used across multiple Parse Server apps. For example, if a user signed up using the same authentication provider in two unrelated Parse Server apps, the credentials stored by one app can be used to authenticate the same user in the other app. Note that this only affects Parse Server apps that specifically use an affected 3rd party authentication provider for user authentication, for example by setting the Parse Server option auth to configure a Parse Server authentication adapter. The fix of this vulnerability requires to upgrade Parse Server to a version that includes the bug fix, as well as upgrade the client app to send a secure payload, which is different from the previous insecure payload. This vulnerability is fixed in 7.5.2 and 8.0.2.
Severity: 6.9 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2019-16151 - FortiOS Host Header Injection and JavaScript Execution Vulnerability

CVE ID : CVE-2019-16151
Published : March 21, 2025, 4:15 p.m. | 1 hour, 40 minutes ago
Description : An improper neutralization of input during web page generation vulnerability [CWE-79] in FortiOS 6.4.1 and below, 6.2.9 and below may allow a remote unauthenticated attacker to either redirect users to malicious websites via a crafted "Host" header or to execute JavaScript code in the victim's browser context. This happens when the FortiGate has web filtering and category override enabled/configured.
Severity: 4.7 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2023-43029 - IBM Storage Virtualize vSphere Remote Plug-in Information Disclosure

CVE ID : CVE-2023-43029
Published : March 21, 2025, 4:15 p.m. | 1 hour, 40 minutes ago
Description : IBM Storage Virtualize vSphere Remote Plug-in 1.0 and 1.1 could allow a remote user to obtain sensitive credential information after deployment.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2024-53348 - LoxiLB Router Unauthenticated Information Disclosure and Privilege Escalation Vulnerability

CVE ID : CVE-2024-53348
Published : March 21, 2025, 4:15 p.m. | 1 hour, 40 minutes ago
Description : LoxiLB v.0.9.7 and before is vulnerable to Incorrect Access Control which allows attackers to obtain sensitive information and escalate privileges.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2024-53349 - Kuadrant Secret Token Escalation Vulnerability

CVE ID : CVE-2024-53349
Published : March 21, 2025, 4:15 p.m. | 1 hour, 40 minutes ago
Description : Insecure permissions in kuadrant v0.11.3 allow attackers to gain access to the service account's token, leading to escalation of privileges via the secretes component in the k8s cluster
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2024-53350 - Kubeslice Service Account Token Escalation Vulnerability

CVE ID : CVE-2024-53350
Published : March 21, 2025, 5:15 p.m. | 40 minutes ago
Description : Insecure permissions in kubeslice v1.3.1 allow attackers to gain access to the service account's token, leading to escalation of privileges.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...