Search
Search Results (314484 CVEs found)
CVE | Vendors | Products | Updated | CVSS v3.1 |
---|---|---|---|---|
CVE-2025-5372 | 2 Libssh, Redhat | 4 Libssh, Enterprise Linux, Openshift and 1 more | 2025-10-15 | 5 Medium |
A flaw was found in libssh versions built with OpenSSL versions older than 3.0, specifically in the ssh_kdf() function responsible for key derivation. Due to inconsistent interpretation of return values where OpenSSL uses 0 to indicate failure and libssh uses 0 for success—the function may mistakenly return a success status even when key derivation fails. This results in uninitialized cryptographic key buffers being used in subsequent communication, potentially compromising SSH sessions' confidentiality, integrity, and availability. | ||||
CVE-2025-41699 | 2025-10-15 | 8.8 High | ||
An low privileged remote attacker with an account for the Web-based management can change the system configuration to perform a command injection as root, resulting in a total loss of confidentiality, availability and integrity due to improper control of generation of code ('Code Injection'). | ||||
CVE-2016-7836 | 1 Skygroup | 1 Skysea Client View | 2025-10-15 | 9.8 Critical |
SKYSEA Client View Ver.11.221.03 and earlier allows remote code execution via a flaw in processing authentication on the TCP connection with the management console program. | ||||
CVE-2025-20712 | 2025-10-15 | 8.8 High | ||
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (proximal/adjacent) escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00422323; Issue ID: MSV-3810. | ||||
CVE-2025-20711 | 2025-10-15 | 8.8 High | ||
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to remote (proximal/adjacent) escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00422399; Issue ID: MSV-3748. | ||||
CVE-2025-20710 | 2025-10-15 | 8.8 High | ||
In wlan AP driver, there is a possible out of bounds write due to an integer overflow. This could lead to remote (proximal/adjacent) escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: WCNCR00418785; Issue ID: MSV-3515. | ||||
CVE-2025-20713 | 2025-10-15 | 7.8 High | ||
In wlan AP driver, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege if a malicious actor has already obtained the System privilege. User interaction is not needed for exploitation. Patch ID: WCNCR00432661; Issue ID: MSV-3904. | ||||
CVE-2025-62448 | 2025-10-15 | N/A | ||
Not used | ||||
CVE-2025-62447 | 2025-10-15 | N/A | ||
Not used | ||||
CVE-2025-62446 | 2025-10-15 | N/A | ||
Not used | ||||
CVE-2025-62445 | 2025-10-15 | N/A | ||
Not used | ||||
CVE-2025-62444 | 2025-10-15 | N/A | ||
Not used | ||||
CVE-2025-62443 | 2025-10-15 | N/A | ||
Not used | ||||
CVE-2025-62442 | 2025-10-15 | N/A | ||
Not used | ||||
CVE-2025-62441 | 2025-10-15 | N/A | ||
Not used | ||||
CVE-2025-62440 | 2025-10-15 | N/A | ||
Not used | ||||
CVE-2025-31718 | 2025-10-15 | 7.5 High | ||
In modem, there is a possible system crash due to improper input validation. This could lead to remote escalation of privilege with no additional execution privileges needed. | ||||
CVE-2025-31717 | 2025-10-15 | 7.5 High | ||
In modem, there is a possible system crash due to improper input validation. This could lead to remote denial of service with no additional execution privileges needed. | ||||
CVE-2024-30098 | 1 Microsoft | 13 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 10 more | 2025-10-14 | 7.5 High |
Windows Cryptographic Services Security Feature Bypass Vulnerability | ||||
CVE-2024-30105 | 2 Microsoft, Redhat | 3 .net, Visual Studio 2022, Enterprise Linux | 2025-10-14 | 7.5 High |
.NET and Visual Studio Denial of Service Vulnerability |