快速搜索提示:
按厂商查询(如:microsoft)|
按产品查询(如:microsoft sql_server)
漏洞列表 354299
| CVE ID | 标题 | 严重程度 | CVSS | 发布时间 | 受影响产品 | 数据源 | 操作 |
|---|---|---|---|---|---|---|---|
| CVE-2025-41102 |
Multiple vulnerabilities in Fairsketch's RISE CRM Framework
|
MEDIUM | 5.1 | 2025-11-11 |
Fairsketch RISE CRM Framework
fairsketch rise_ultimate_project_manager
|
CVE NVD | |
| CVE-2025-41101 |
Multiple vulnerabilities in Fairsketch's RISE CRM Framework
|
MEDIUM | 5.1 | 2025-11-11 |
Fairsketch RISE CRM Framework
fairsketch rise_ultimate_project_manager
|
CVE NVD | |
| CVE-2025-11960 |
Reflected XSS in Aryom's KVKNET
|
MEDIUM | 6.1 | 2025-11-11 |
Aryom Software High Technology Systems Inc. KVKNET
|
CVE NVD | |
| CVE-2025-12846 |
Blocksy Companion <= 2.1.19 - Authenticated (Author+) Arbitrary File Upload via SVG Upload Bypass
|
HIGH | 8.8 | 2025-11-11 |
creativethemeshq Blocksy Companion
|
CVE NVD | |
| CVE-2025-12788 |
Hydra Booking – All in One Appointment Booking System | Appointment Scheduling, Booking Calendar & WooCommerce Bookings <= 1.1.27 - Missing Payment Verification to Unauthenticated Payment Bypass
|
MEDIUM | 5.3 | 2025-11-11 |
themefic Hydra Booking — Appointment Scheduling & Booking Calendar
|
CVE NVD | |
| CVE-2025-12953 |
Classified Listing – AI-Powered Classified ads & Business Directory Plugin <= 5.2.0 - Missing Authorization to Authenticated (Subscriber+) Listing Types Tampering
|
MEDIUM | 4.3 | 2025-11-11 |
techlabpro1 Classified Listing – AI-Powered Classified ads & Business Directory Plugin
|
CVE NVD | |
| CVE-2025-12787 |
Hydra Booking – All in One Appointment Booking System | Appointment Scheduling, Booking Calendar & WooCommerce Bookings <= 1.1.27 - Unauthenticated Arbitrary Booking Cancellation via Weak Hash Generation
|
MEDIUM | 5.3 | 2025-11-11 |
themefic Hydra Booking — Appointment Scheduling & Booking Calendar
|
CVE NVD | |
| CVE-2025-12539 |
TNC Toolbox: Web Performance <= 1.4.2 - Unauthenticated Sensitive Information Exposure to Privilege Escalation/cPanel Account Takeover
|
CRITICAL | 10.0 | 2025-11-11 |
leopardhost TNC Toolbox: Web Performance
|
CVE NVD | |
| CVE-2025-7633 |
Stored XSS
|
HIGH | 7.3 | 2025-11-11 |
Zohocorp ManageEngine Exchange Reporter Plus
zohocorp manageengine_exchange_reporter_plus
+1个
|
CVE NVD | |
| CVE-2025-7632 |
Stored XSS
|
HIGH | 7.3 | 2025-11-11 |
Zohocorp ManageEngine Exchange Reporter Plus
zohocorp manageengine_exchange_reporter_plus
+1个
|
CVE NVD | |
| CVE-2025-7430 |
Stored XSS
|
HIGH | 7.3 | 2025-11-11 |
Zohocorp ManageEngine Exchange Reporter Plus
zohocorp manageengine_exchange_reporter_plus
+1个
|
CVE NVD | |
| CVE-2017-20210 |
Photo Station
|
CRITICAL | 9.8 | 2025-11-11 |
QNAP Systems Inc. Photo Station
qnap photo_station
+1个
|
CVE NVD | |
| CVE-2025-5317 |
Improper access restriction to critical folder in Bitdefender Endpoint Security Tools for Mac
|
MEDIUM | 6.8 | 2025-11-11 |
Bitdefender Endpoint Security Tools for Mac
bitdefender endpoint_security
|
CVE NVD | |
| CVE-2025-7429 |
Stored XSS
|
HIGH | 7.3 | 2025-11-11 |
Zohocorp ManageEngine Exchange Reporter Plus
zohocorp manageengine_exchange_reporter_plus
+1个
|
CVE NVD | |
| CVE-2025-9055 |
The VAPIX Edge storage API that allowed a privilege escalation, enabling a VAPIX administrator-privi...
|
MEDIUM | 6.4 | 2025-11-11 |
Axis Communications AB AXIS OS
|
CVE NVD | |
| CVE-2025-8998 |
It was possible to upload files with a specific name to a temporary directory, which may result in p...
|
LOW | 3.1 | 2025-11-11 |
Axis Communications AB AXIS OS
|
CVE NVD | |
| CVE-2025-9524 |
The VAPIX API port.cgi did not have sufficient input validation, which may result in process crashes...
|
MEDIUM | 4.3 | 2025-11-11 |
Axis Communications AB AXIS OS
|
CVE NVD | |
| CVE-2025-10714 |
AXIS Optimizer was vulnerable to an unquoted search path vulnerability, which could potentially lead...
|
HIGH | 8.4 | 2025-11-11 |
Axis Communications AB AXIS Optimizer
|
CVE NVD | |
| CVE-2025-8108 |
An ACAP configuration file has improper permissions and lacks input validation, which could potentia...
|
MEDIUM | 6.7 | 2025-11-11 |
Axis Communications AB AXIS OS
axis axis_os
|
CVE NVD | |
| CVE-2025-6779 |
An ACAP configuration file has improper permissions, which could allow command injection and potenti...
|
MEDIUM | 6.7 | 2025-11-11 |
Axis Communications AB AXIS OS
axis axis_os
|
CVE NVD |