CVE tracker
367 subscribers
5.02K links
News monitoring: @irnewsagency

Main channel: @orgsecuritygate

Site: SecurityGate.org
Download Telegram
CVE-2025-2231 - PDF-XChange Editor RTF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability

CVE ID : CVE-2025-2231
Published : March 24, 2025, 8:15 p.m. | 1 hour, 42 minutes ago
Description : PDF-XChange Editor RTF File Parsing Out-Of-Bounds Read Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of PDF-XChange Editor. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the parsing of RTF files. The issue results from the lack of proper validation of user-supplied data, which can result in a read past the end of an allocated buffer. An attacker can leverage this vulnerability to execute code in the context of the current process. Was ZDI-CAN-25473.
Severity: 7.8 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-2708 - Zhijiantianya Ruoyi-Vue-Pro Backend File Upload Interface Remote Path Traversal Vulnerability

CVE ID : CVE-2025-2708
Published : March 24, 2025, 8:15 p.m. | 1 hour, 42 minutes ago
Description : A vulnerability, which was classified as critical, was found in zhijiantianya ruoyi-vue-pro 2.4.1. This affects an unknown part of the file /admin-api/infra/file/upload of the component Backend File Upload Interface. The manipulation of the argument path leads to path traversal. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 5.4 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-2709 - Yonyou UFIDA ERP-NC Cross Site Scripting Vulnerability

CVE ID : CVE-2025-2709
Published : March 24, 2025, 8:15 p.m. | 1 hour, 42 minutes ago
Description : A vulnerability has been found in Yonyou UFIDA ERP-NC 5.0 and classified as problematic. This vulnerability affects unknown code of the file /login.jsp. The manipulation of the argument key/redirect leads to cross site scripting. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 4.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-29100 - Tenda AC8 Buffer Overflow

CVE ID : CVE-2025-29100
Published : March 24, 2025, 9:15 p.m. | 42 minutes ago
Description : Tenda AC8 V16.03.34.06 is vulnerable to Buffer Overflow in the fromSetRouteStatic function via the parameter list.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-29135 - Tenda AC7 Stack-Based Buffer Overflow Vulnerability

CVE ID : CVE-2025-29135
Published : March 24, 2025, 9:15 p.m. | 42 minutes ago
Description : A stack-based buffer overflow vulnerability in Tenda AC7 V15.03.06.44 allows a remote attacker to execute arbitrary code through a stack overflow attack using the security parameter of the formWifiBasicSet function.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-29310 - Onos LLDP Deserialization Command Injection Vulnerability

CVE ID : CVE-2025-29310
Published : March 24, 2025, 9:15 p.m. | 42 minutes ago
Description : An issue in onos v2.7.0 allows attackers to trigger a packet deserialization problem when supplying a crafted LLDP packet. This vulnerability allows attackers to execute arbitrary commands or access network information.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-29311 - Onos Private Key Disclosure via LLDP Brute Force

CVE ID : CVE-2025-29311
Published : March 24, 2025, 9:15 p.m. | 42 minutes ago
Description : Limited secret space in LLDP packets used in onos v2.7.0 allows attackers to obtain the private key via a bruteforce attack. Attackers are able to leverage this vulnerability into creating crafted LLDP packets.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-29312 - "Onos Legacy Switch Link Type Manipulation Vulnerability"

CVE ID : CVE-2025-29312
Published : March 24, 2025, 9:15 p.m. | 42 minutes ago
Description : An issue in onos v2.7.0 allows attackers to trigger unexpected behavior within a device connected to a legacy switch via changing the link type from indirect to direct.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-29313 - OpenDaylight SFC Sodium Denial of Service

CVE ID : CVE-2025-29313
Published : March 24, 2025, 9:15 p.m. | 42 minutes ago
Description : Use of incorrectly resolved name or reference in OpenDaylight Service Function Chaining (SFC) Subproject SFC Sodium-SR4 and below allows attackers to cause a Denial of Service (DoS).
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-29314 - OpenDaylight SFC Sodium Cookie Insecure Configuration Information Disclosure

CVE ID : CVE-2025-29314
Published : March 24, 2025, 9:15 p.m. | 42 minutes ago
Description : Insecure Shiro cookie configurations in OpenDaylight Service Function Chaining (SFC) Subproject SFC Sodium-SR4 and below allow attackers to access sensitive information via a man-in-the-middle attack.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-29315 - OpenDaylight SFC Sodium Privilege Escalation Vulnerability

CVE ID : CVE-2025-29315
Published : March 24, 2025, 9:15 p.m. | 42 minutes ago
Description : An issue in the Shiro-based RBAC (Role-based Access Control) mechanism of OpenDaylight Service Function Chaining (SFC) Subproject SFC Sodium-SR4 and below allows attackers to execute privileged operations via a crafted request.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-2710 - Yonyou UFIDA ERP-NC Cross-Site Scripting Vulnerability

CVE ID : CVE-2025-2710
Published : March 24, 2025, 9:15 p.m. | 42 minutes ago
Description : A vulnerability was found in Yonyou UFIDA ERP-NC 5.0 and classified as problematic. This issue affects some unknown processing of the file /menu.jsp. The manipulation of the argument flag leads to cross site scripting. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 4.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-2711 - Yonyou UFIDA ERP-NC Cross-Site Scripting Vulnerability

CVE ID : CVE-2025-2711
Published : March 24, 2025, 9:15 p.m. | 42 minutes ago
Description : A vulnerability was found in Yonyou UFIDA ERP-NC 5.0. It has been classified as problematic. Affected is an unknown function of the file /help/systop.jsp. The manipulation of the argument langcode leads to cross site scripting. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 4.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-26512 - SnapCenter Plug-in Remote Privilege Escalation Vulnerability

CVE ID : CVE-2025-26512
Published : March 24, 2025, 10:15 p.m. | 3 hours, 42 minutes ago
Description : SnapCenter versions prior to 6.0.1P1 and 6.1P1 are susceptible to a vulnerability which may allow an authenticated SnapCenter Server user to become an admin user on a remote system where a SnapCenter plug-in has been installed.
Severity: 9.9 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-2712 - Yonyou UFIDA ERP-NC Cross Site Scripting Vulnerability

CVE ID : CVE-2025-2712
Published : March 24, 2025, 10:15 p.m. | 3 hours, 42 minutes ago
Description : A vulnerability was found in Yonyou UFIDA ERP-NC 5.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /help/top.jsp. The manipulation of the argument langcode leads to cross site scripting. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 4.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-2714 - JoomlaUX JUX Real Estate Cross-Site Scripting (XSS)

CVE ID : CVE-2025-2714
Published : March 24, 2025, 10:15 p.m. | 3 hours, 42 minutes ago
Description : A vulnerability was found in JoomlaUX JUX Real Estate 3.4.0. It has been rated as problematic. Affected by this issue is some unknown functionality of the file /extensions/realestate/index.php/agents/agent-register/addagent. The manipulation of the argument plan_id leads to cross site scripting. The attack may be launched remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 4.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-2715 - timschofield webERP Cross-Site Scripting Vulnerability

CVE ID : CVE-2025-2715
Published : March 24, 2025, 11:15 p.m. | 2 hours, 42 minutes ago
Description : A vulnerability classified as problematic has been found in timschofield webERP up to 5.0.0.rc+13. This affects an unknown part of the file ConfirmDispatch_Invoice.php of the component Confirm Dispatch and Invoice Page. The manipulation of the argument Narrative leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 3.5 | LOW
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-2716 - China Mobile P22g-CIac Samba Path Handler Remote Path Traversal Vulnerability

CVE ID : CVE-2025-2716
Published : March 24, 2025, 11:15 p.m. | 2 hours, 42 minutes ago
Description : A vulnerability classified as problematic was found in China Mobile P22g-CIac 1.0.00.488. This vulnerability affects unknown code of the component Samba Path Handler. The manipulation leads to path traversal. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 2.7 | LOW
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-1097 - Kubernetes Ingress-Nginx Arbitrary Code Execution and Secret Disclosure

CVE ID : CVE-2025-1097
Published : March 25, 2025, 12:15 a.m. | 1 hour, 42 minutes ago
Description : A security issue was discovered in ingress-nginx https://github.com/kubernetes/ingress-nginx where the `auth-tls-match-cn` Ingress annotation can be used to inject configuration into nginx. This can lead to arbitrary code execution in the context of the ingress-nginx controller, and disclosure of Secrets accessible to the controller. (Note that in the default installation, the controller can access all Secrets cluster-wide.)
Severity: 8.8 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-1098 - Kubernetes Ingress-Nginx Arbitrary Code Execution and Secret Disclosure Vulnerability

CVE ID : CVE-2025-1098
Published : March 25, 2025, 12:15 a.m. | 1 hour, 42 minutes ago
Description : A security issue was discovered in ingress-nginx https://github.com/kubernetes/ingress-nginx where the `mirror-target` and `mirror-host` Ingress annotations can be used to inject arbitrary configuration into nginx. This can lead to arbitrary code execution in the context of the ingress-nginx controller, and disclosure of Secrets accessible to the controller. (Note that in the default installation, the controller can access all Secrets cluster-wide.)
Severity: 8.8 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-1974 - Kubernetes Ingress-Nginx Code Execution Vulnerability

CVE ID : CVE-2025-1974
Published : March 25, 2025, 12:15 a.m. | 1 hour, 42 minutes ago
Description : A security issue was discovered in Kubernetes where under certain conditions, an unauthenticated attacker with access to the pod network can achieve arbitrary code execution in the context of the ingress-nginx controller. This can lead to disclosure of Secrets accessible to the controller. (Note that in the default installation, the controller can access all Secrets cluster-wide.)
Severity: 9.8 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...