快速搜索提示:
按厂商查询(如:microsoft)|
按产品查询(如:microsoft sql_server)
漏洞列表 355639
| CVE ID | 标题 | 严重程度 | CVSS | 发布时间 | 受影响产品 | 数据源 | 操作 |
|---|---|---|---|---|---|---|---|
| CVE-2025-13414 |
Chamber Dashboard Business Directory <= 3.3.11 - Missing Authorization to Unauthenticated Business Information Export
|
MEDIUM | 5.3 | 2025-11-25 |
gwendydd Chamber Dashboard Business Directory
|
CVE NVD | |
| CVE-2025-12043 |
Autochat Automatic Conversation <= 1.1.9 - Missing Authorization to Unauthenticated Settings Update
|
MEDIUM | 5.3 | 2025-11-25 |
autochat Autochat Automatic Conversation
|
CVE NVD | |
| CVE-2025-59365 |
A stack buffer overflow vulnerability has been identified in certain router models. An authenticated...
|
MEDIUM | 6.9 | 2025-11-25 |
ASUS Router
ASUS Router
+1个
|
CVE NVD | |
| CVE-2025-59366 |
An authentication-bypass vulnerability exists in AiCloud. This vulnerability can be triggered by an ...
|
CRITICAL | 9.2 | 2025-11-25 |
ASUS Router
ASUS Router
+1个
|
CVE NVD | |
| CVE-2025-64693 |
Security Point (Windows) of MaLion and MaLionCloud contains a heap-based buffer overflow vulnerabili...
|
CRITICAL | 9.3 | 2025-11-25 |
Intercom, Inc. Security Point (Windows) of MaLion
Intercom, Inc. Security Point (Windows) of MaLionCloud
|
CVE NVD | |
| CVE-2025-62691 |
Security Point (Windows) of MaLion and MaLionCloud contains a stack-based buffer overflow vulnerabil...
|
CRITICAL | 9.3 | 2025-11-25 |
Intercom, Inc. Security Point (Windows) of MaLion
Intercom, Inc. Security Point (Windows) of MaLionCloud
|
CVE NVD | |
| CVE-2025-59485 |
Incorrect default permissions issue exists in Security Point (Windows) of MaLion prior to Ver.5.3.4....
|
MEDIUM | 4.8 | 2025-11-25 |
Intercom, Inc. Security Point (Windows) of MaLion
|
CVE NVD | |
| CVE-2025-12742 |
Remote Code Execution in Looker via Teradata JDBC Driver
|
HIGH | 7.5 | 2025-11-25 |
Google Cloud Looker
|
CVE NVD | |
| CVE-2025-13644 |
MongoDB may be susceptible to Invariant Failure due to batched delete
|
HIGH | 7.1 | 2025-11-25 |
MongoDB Inc. MongoDB Server
mongodb mongodb
+1个
|
CVE NVD | |
| CVE-2025-13643 |
MongoDB Server may allow queries to be terminated by unauthorized users
|
LOW | 2.3 | 2025-11-25 |
MongoDB Inc. MongoDB Server
mongodb mongodb
+1个
|
CVE NVD | |
| CVE-2025-12893 |
Improper Certificate Validation May Allow Successful TLS Handshaking Despite Invalid Extended Key Usage Fields in MongoDB Server
|
LOW | 2.3 | 2025-11-25 |
MongoDB Inc. MongoDB Server
mongodb mongodb
|
CVE NVD | |
| CVE-2025-13507 |
Time-series operations may cause internal BSON size limit to be exceed
|
HIGH | 7.1 | 2025-11-25 |
MongoDB Inc. MongoDB Server
mongodb mongodb
|
CVE NVD | |
| CVE-2025-13068 |
Telegram Bot & Channel <= 4.1 - Unauthenticated Stored Cross-Site Scripting via Telegram Username
|
HIGH | 7.2 | 2025-11-25 |
milmor Telegram Bot & Channel
|
CVE NVD | |
| CVE-2025-13559 |
EduKart Pro <= 1.0.3 - Unauthenticated Privilege Escalation
|
CRITICAL | 9.8 | 2025-11-25 |
venusweb EduKart Pro
|
CVE NVD | |
| CVE-2025-13558 |
Blog2Social <= 8.7.0 - Missing Authorization to Authenticated (Subscriber+) Arbitrary Post Trashing
|
MEDIUM | 5.4 | 2025-11-25 |
pr-gateway Blog2Social: Social Media Auto Post & Scheduler
|
CVE NVD | |
| CVE-2025-64730 |
Cross-site scripting vulnerability exists in SNC-CX600W all versions. If this vulnerability is explo...
|
MEDIUM | 4.8 | 2025-11-25 |
Sony Corporation SNC-CX600W
sony snc-cx600w_firmware
|
CVE NVD | |
| CVE-2025-62497 |
Cross-site request forgery vulnerability exists in SNC-CX600W versions prior to Ver.2.8.0. If a user...
|
LOW | 2.1 | 2025-11-25 |
Sony Corporation SNC-CX600W
sony snc-cx600w_firmware
|
CVE NVD | |
| CVE-2025-64304 |
"FOD" App uses hard-coded cryptographic keys, which may allow a local unauthenticated attacker to re...
|
MEDIUM | 5.1 | 2025-11-25 |
Fuji Television Network, Inc. "FOD" App for Android
Fuji Television Network, Inc. "FOD" App for iOS
|
CVE NVD | |
| CVE-2025-10646 |
Search Exclude <= 2.5.7 – Missing Authorization to Authenticated (Contributor+) Search Settings Modification via REST API
|
MEDIUM | 4.3 | 2025-11-25 |
quadlayers Search Exclude
|
CVE NVD | |
| CVE-2025-6389 |
Sneeit Framework <= 8.3 - Unauthenticated Remote Code Execution in sneeit_articles_pagination_callback
|
CRITICAL | 9.8 | 2025-11-25 |
Sneeit Sneeit Framework
|
CVE NVD |