-
CVE-2025-0222 – IObit Protected Folder Null Pointer Dereference Vulnerability
CVE ID : CVE-2025-0222 Published : Jan. 5, 2025, 4:15 p.m. | 2 hours, 58 minutes ago Description : A vulnerability was found in IObit Protected Folder up to 13.6.0.5 and classified as problematic. This issue affects the function 0x8001E000/0x8001E004 in the library IUProcessFilter.sys of the component IOCTL Handler. The manipulation leads to null pointer dereference. An…
-
CVE-2025-0220 – Trimble SPS851 Ethernet Configuration Menu Cross-Site Scripting Vulnerability
CVE ID : CVE-2025-0220 Published : Jan. 5, 2025, 1:15 p.m. | 5 hours, 58 minutes ago Description : A vulnerability, which was classified as problematic, was found in Trimble SPS851 488.01. This affects an unknown part of the component Ethernet Configuration Menu. The manipulation of the argument Hostname leads to cross site scripting. It is possible…
-
CVE-2024-13141 – “osuuu LightPicture Cross-Site Scripting”
CVE ID : CVE-2024-13141 Published : Jan. 5, 2025, 3:15 p.m. | 3 hours, 58 minutes ago Description : A vulnerability classified as problematic was found in osuuu LightPicture up to 1.2.2. This vulnerability affects unknown code of the file /api/upload of the component SVG File Upload Handler. The manipulation of the argument file leads to cross…
-
CVE-2024-13140 – Emlog Pro Cross-Site Scripting Vulnerability in Cover Upload Handler
CVE ID : CVE-2024-13140 Published : Jan. 5, 2025, 12:15 p.m. | 6 hours, 58 minutes ago Description : A vulnerability classified as problematic has been found in Emlog Pro up to 2.4.3. Affected is an unknown function of the file /admin/article.php?action=upload_cover of the component Cover Upload Handler. The manipulation of the argument image leads to cross…
-
TheCyberThrone Security Weekly Review – January 04, 2025
TheCyberThrone Security Weekly Review – January 04, 2025 Welcome to TheCyberThrone cybersecurity week in review will be posted covering the important security happenings. This review is for the week ending Saturday, January 04, 2025.CVE-2024-56512 impacts A … Read more Published Date: Jan 05, 2025 (6 hours, 26 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2024-11944…
-
CVE-2025-0219 – Trimble SPS851 Cross-Site Scripting Vulnerability in Receiver Status Identity Tab
CVE ID : CVE-2025-0219 Published : Jan. 5, 2025, 6:15 a.m. | 52 minutes ago Description : A vulnerability, which was classified as problematic, has been found in Trimble SPS851 488.01. Affected by this issue is some unknown functionality of the component Receiver Status Identity Tab. The manipulation of the argument System Name leads to cross…
-
CVE-2024-13131 – Dahua Web Interface Information Disclosure vulnerability
CVE ID : CVE-2024-13131 Published : Jan. 5, 2025, 3:15 a.m. | 3 hours, 52 minutes ago Description : A vulnerability classified as problematic has been found in Dahua IPC-HFW1200S, IPC-HFW2300R-Z, IPC-HFW5220E-Z and IPC-HDW1200S up to 20241222. This affects an unknown part of the file /web_caps/webCapsConfig of the component Web Interface. The manipulation leads to information disclosure.…
-
CVE-2024-13132 – Emlog Pro Cross-Site Scripting Vulnerability in Subpage Handler
CVE ID : CVE-2024-13132 Published : Jan. 5, 2025, 5:15 a.m. | 1 hour, 52 minutes ago Description : A vulnerability classified as problematic was found in Emlog Pro up to 2.4.3. This vulnerability affects unknown code of the file /admin/article.php of the component Subpage Handler. The manipulation leads to cross site scripting. The attack can be…
-
CVE-2024-13133 – ZeroWdd Studentmanager Unrestricted File Upload Vulnerability
CVE ID : CVE-2024-13133 Published : Jan. 5, 2025, 5:15 a.m. | 1 hour, 52 minutes ago Description : A vulnerability, which was classified as critical, has been found in ZeroWdd studentmanager 1.0. This issue affects the function addStudent/editStudent of the file src/main/Java/com/wdd/studentmanager/controller/StudentController. java. The manipulation of the argument file leads to unrestricted upload. The attack may…
-
CVE-2024-13130 – Dahua Web Interface Remote Path Traversal Vulnerability
CVE ID : CVE-2024-13130 Published : Jan. 5, 2025, 1:15 a.m. | 5 hours, 52 minutes ago Description : A vulnerability was found in Dahua IPC-HFW1200S, IPC-HFW2300R-Z, IPC-HFW5220E-Z and IPC-HDW1200S up to 20241222. It has been rated as problematic. Affected by this issue is some unknown functionality of the file ../mtd/Config/Sha1Account1 of the component Web Interface. The…