CVE tracker
305 subscribers
4.34K links
News monitoring: @irnewsagency

Main channel: @orgsecuritygate

Site: SecurityGate.org
Download Telegram
CVE-2026-24914 - "Canon Camera Type Confusion Vulnerability"

CVE ID : CVE-2026-24914
Published : Feb. 6, 2026, 8:26 a.m. | 22 minutes ago
Description : Type confusion vulnerability in the camera module. Impact: Successful exploitation of this vulnerability may affect availability.
Severity: 4.0 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-24915 - Cisco Media Out-of-Bounds Read Vulnerability

CVE ID : CVE-2026-24915
Published : Feb. 6, 2026, 8:27 a.m. | 20 minutes ago
Description : Out-of-bounds read issue in the media subsystem. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.
Severity: 6.2 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-24918 - Apache Communication Module Read Vulnerability

CVE ID : CVE-2026-24918
Published : Feb. 6, 2026, 8:29 a.m. | 19 minutes ago
Description : Address read vulnerability in the communication module. Impact: Successful exploitation of this vulnerability may affect availability.
Severity: 6.8 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-24921 - Cisco HDC Module Read Vulnerability

CVE ID : CVE-2026-24921
Published : Feb. 6, 2026, 8:30 a.m. | 17 minutes ago
Description : Address read vulnerability in the HDC module. Impact: Successful exploitation of this vulnerability will affect availability and confidentiality.
Severity: 4.8 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-2011 - itsourcecode Student Management System controller.php sql injection

CVE ID : CVE-2026-2011
Published : Feb. 6, 2026, 8:32 a.m. | 16 minutes ago
Description : A vulnerability was found in itsourcecode Student Management System 1.0. The affected element is an unknown function of the file /ramonsys/enrollment/controller.php. The manipulation of the argument ID results in sql injection. The attack can be launched remotely. The exploit has been made public and could be used.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-24922 - Cisco HDC Buffer Overflow Vulnerability

CVE ID : CVE-2026-24922
Published : Feb. 6, 2026, 8:32 a.m. | 16 minutes ago
Description : Buffer overflow vulnerability in the HDC module. Impact: Successful exploitation of this vulnerability may affect availability.
Severity: 6.9 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-24923 - "HPDC HDC Permission Control Vulnerability"

CVE ID : CVE-2026-24923
Published : Feb. 6, 2026, 8:39 a.m. | 9 minutes ago
Description : Permission control vulnerability in the HDC module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Severity: 6.3 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-24929 - Adobe Flash Out-of-bounds Read Vulnerability

CVE ID : CVE-2026-24929
Published : Feb. 6, 2026, 8:41 a.m. | 6 minutes ago
Description : Out-of-bounds read vulnerability in the graphics module. Impact: Successful exploitation of this vulnerability may affect availability.
Severity: 5.9 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-24930 - Adobe Flash UAF Concurrency Vulnerability

CVE ID : CVE-2026-24930
Published : Feb. 6, 2026, 8:42 a.m. | 5 minutes ago
Description : UAF concurrency vulnerability in the graphics module. Impact: Successful exploitation of this vulnerability may affect availability.
Severity: 8.4 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-24917 - Apache Security Module Use-After-Free Vulnerability

CVE ID : CVE-2026-24917
Published : Feb. 6, 2026, 9:15 a.m. | 3 hours, 32 minutes ago
Description : UAF vulnerability in the security module. Impact: Successful exploitation of this vulnerability may affect availability.
Severity: 6.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-24919 - "Adobe DFX Out-of-Bounds Write Vulnerability"

CVE ID : CVE-2026-24919
Published : Feb. 6, 2026, 9:15 a.m. | 3 hours, 32 minutes ago
Description : Out-of-bounds write vulnerability in the DFX module. Impact: Successful exploitation of this vulnerability may affect availability.
Severity: 6.0 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-24931 - Verifone Card Module Information Disclosure Vulnerability

CVE ID : CVE-2026-24931
Published : Feb. 6, 2026, 9:15 a.m. | 3 hours, 32 minutes ago
Description : Vulnerability of improper criterion security check in the card module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Severity: 5.9 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-2012 - itsourcecode Student Management System index.php sql injection

CVE ID : CVE-2026-2012
Published : Feb. 6, 2026, 9:15 a.m. | 3 hours, 32 minutes ago
Description : A vulnerability was determined in itsourcecode Student Management System 1.0. The impacted element is an unknown function of the file /ramonsys/facultyloading/index.php. This manipulation of the argument ID causes sql injection. The attack may be initiated remotely. The exploit has been publicly disclosed and may be utilized.
Severity: 7.5 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-24920 - Adobe Experience Manager (AEM) Permission Control Vulnerability - Availability

CVE ID : CVE-2026-24920
Published : Feb. 6, 2026, 10:16 a.m. | 2 hours, 32 minutes ago
Description : Permission control vulnerability in the AMS module. Impact: Successful exploitation of this vulnerability may affect availability.
Severity: 6.2 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-24924 - HP Print Module Privilege Escalation Vulnerability

CVE ID : CVE-2026-24924
Published : Feb. 6, 2026, 10:16 a.m. | 2 hours, 32 minutes ago
Description : Vulnerability of improper permission control in the print module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Severity: 6.1 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-24927 - "Siemens Frequency Modulation Out-of-Bounds Access Vulnerability"

CVE ID : CVE-2026-24927
Published : Feb. 6, 2026, 10:16 a.m. | 2 hours, 32 minutes ago
Description : Out-of-bounds access vulnerability in the frequency modulation module. Impact: Successful exploitation of this vulnerability may affect availability.
Severity: 5.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-24928 - Apache File System Out-of-Bounds Write Vulnerability

CVE ID : CVE-2026-24928
Published : Feb. 6, 2026, 10:16 a.m. | 2 hours, 32 minutes ago
Description : Out-of-bounds write vulnerability in the file system module. Impact: Successful exploitation of this vulnerability may affect service confidentiality.
Severity: 5.8 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-2013 - itsourcecode Student Management System index.php sql injection

CVE ID : CVE-2026-2013
Published : Feb. 6, 2026, 10:16 a.m. | 2 hours, 32 minutes ago
Description : A vulnerability was identified in itsourcecode Student Management System 1.0. This affects an unknown function of the file /ramonsys/soa/index.php. Such manipulation of the argument ID leads to sql injection. The attack may be launched remotely. The exploit is publicly available and might be used.
Severity: 7.5 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-2014 - itsourcecode Student Management System index.php sql injection

CVE ID : CVE-2026-2014
Published : Feb. 6, 2026, 10:16 a.m. | 2 hours, 32 minutes ago
Description : A security flaw has been discovered in itsourcecode Student Management System 1.0. This impacts an unknown function of the file /ramonsys/billing/index.php. Performing a manipulation of the argument ID results in sql injection. Remote exploitation of the attack is possible. The exploit has been released to the public and may be used for attacks.
Severity: 7.5 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-2015 - Portabilis i-Educar Final Status Import FinalStatusImportService.php improper authorization

CVE ID : CVE-2026-2015
Published : Feb. 6, 2026, 11:15 a.m. | 1 hour, 32 minutes ago
Description : A weakness has been identified in Portabilis i-Educar up to 2.10. Affected is an unknown function of the file FinalStatusImportService.php of the component Final Status Import. Executing a manipulation of the argument school_id can lead to improper authorization. The attack can be executed remotely. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.
Severity: 6.5 | MEDIUM
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2026-2018 - itsourcecode School Management System controller.php sql injection

CVE ID : CVE-2026-2018
Published : Feb. 6, 2026, 12:02 p.m. | 46 minutes ago
Description : A flaw has been found in itsourcecode School Management System 1.0. This affects an unknown part of the file /ramonsys/settings/controller.php. This manipulation of the argument ID causes sql injection. It is possible to initiate the attack remotely. The exploit has been published and may be used.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...