漏洞列表 352225
CVE ID 标题 严重程度 CVSS 发布时间 受影响产品 数据源 操作
CVE-2025-15150
PX4 PX4-Autopilot mavlink_log_handler.cpp log_entry_from_id stack-based overflow
MEDIUM 4.8 2025-12-28
PX4 PX4-Autopilot PX4 PX4-Autopilot +16个
CVE NVD
CVE-2025-15149
rawchen ecms Add New Product updateProductServlet.java updateProductServlet cross site scripting
MEDIUM 4.8 2025-12-28
rawchen ecms
CVE NVD
CVE-2025-15148
CmsEasy Backend Template Management template_admin.php savetemp_action code injection
MEDIUM 5.1 2025-12-28
cmseasy cmseasy
CVE NVD
CVE-2025-15146
SohuTV CacheCloud UserManageController.java doUserList cross site scripting
MEDIUM 4.8 2025-12-28
SohuTV CacheCloud SohuTV CacheCloud +2个
CVE NVD
CVE-2025-15145
SohuTV CacheCloud TotalManageController.java doTotalList cross site scripting
MEDIUM 4.8 2025-12-28
SohuTV CacheCloud SohuTV CacheCloud +2个
CVE NVD
CVE-2025-15144
dayrui XunRuiCMS JSONP Callback Init.php dr_exit_msg cross site scripting
MEDIUM 5.3 2025-12-28
dayrui XunRuiCMS dayrui XunRuiCMS +1个
CVE NVD
CVE-2025-68973
GNUPG 安全漏洞
HIGH 7.8 2025-12-28
GnuPG GnuPG gnupg gnupg
CVE NVD +1
CVE-2025-15143
EyouCMS Backend Template Management FilemanagerLogic.php sql injection
MEDIUM 5.1 2025-12-28
eyoucms eyoucms
CVE NVD
CVE-2025-15142
9786 phpok3w show.php sql injection
MEDIUM 6.9 2025-12-28
9786 phpok3w
CVE NVD
CVE-2025-15141
Halo Configuration actuator information disclosure
LOW 2.3 2025-12-28
未知
CVE NVD
CVE-2025-15140
saiftheboss7 onlinemcqexam quesadd.php sql injection
MEDIUM 6.9 2025-12-28
saiftheboss7 onlinemcqexam
CVE NVD
CVE-2025-15139
TRENDnet TEW-822DRE formWsc sub_43ACF4  command injection
MEDIUM 5.3 2025-12-28
TRENDnet TEW-822DRE TRENDnet TEW-822DRE +2个
CVE NVD
CVE-2025-15138
prasathmani TinyFileManager tinyfilemanager.php path traversal
MEDIUM 5.1 2025-12-28
prasathmani TinyFileManager prasathmani TinyFileManager +6个
CVE NVD
CVE-2025-15137
TRENDnet TEW-800MB NTPSyncWithHost.cgi sub_F934  command injection
HIGH 8.7 2025-12-28
TRENDnet TEW-800MB trendnet tew-800mb_firmware
CVE NVD
CVE-2025-15136
TRENDnet TEW-800MB Management wizardset do_setWizard_asp command injection
HIGH 8.7 2025-12-28
TRENDnet TEW-800MB trendnet tew-800mb_firmware
CVE NVD
CVE-2025-15135
joey-zhou xiaozhi-esp32-server-java Cookie AuthenticationInterceptor.java tryAuthenticateWithCookies improper authentication
MEDIUM 5.3 2025-12-28
joey-zhou xiaozhi-esp32-server-java
CVE NVD
CVE-2025-15134
yourmaileyes MOOC Submission MainController.java subreview cross site scripting
MEDIUM 5.1 2025-12-28
yourmaileyes MOOC yourmaileyes MOOC +16个
CVE NVD
CVE-2025-15133
ZSPACE Z4Pro+ HTTP POST Request close zfilev2_api_CloseSafe command injection
MEDIUM 5.3 2025-12-28
ZSPACE Z4Pro+ zspace z4pro\+_firmware
CVE NVD
CVE-2025-15132
ZSPACE Z4Pro+ HTTP POST Request open zfilev2_api_open command injection
MEDIUM 5.3 2025-12-28
ZSPACE Z4Pro+ zspace z4pro\+_firmware
CVE NVD
CVE-2025-15131
ZSPACE Z4Pro+ HTTP POST Request status zfilev2_api_SafeStatus command injection
MEDIUM 5.3 2025-12-28
ZSPACE Z4Pro+ zspace z4pro\+_firmware
CVE NVD