Vulnerabilities (CVE)

Filtered by CWE-284
Angry Yack Logo
Total 4422 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-13815 1 Mogublog Project 1 Mogublog 2025-12-03 6.5 MEDIUM 6.3 MEDIUM
A weakness has been identified in moxi159753 Mogu Blog v2 up to 5.2. The affected element is an unknown function of the file /file/pictures. This manipulation of the argument filedatas causes unrestricted upload. The attack may be initiated remotely. The exploit has been made available to the public and could be exploited. The vendor was contacted early about this disclosure but did not respond in any way.
CVE-2025-66027 1 Rallly 1 Rallly 2025-12-03 N/A 6.5 MEDIUM
Rallly is an open-source scheduling and collaboration tool. Prior to version 4.5.6, an information disclosure vulnerability exposes participant details, including names and email addresses through the /api/trpc/polls.get,polls.participants.list endpoint, even when Pro privacy features are enabled. This bypasses intended privacy controls that should prevent participants from viewing other users’ personal information. This issue has been patched in version 4.5.6.
CVE-2023-0661 1 Devolutions 1 Devolutions Server 2025-12-03 N/A 6.5 MEDIUM
Improper access control in Devolutions Server allows an authenticated user to access unauthorized sensitive data.
CVE-2025-59230 1 Microsoft 16 Windows 10 1507, Windows 10 1607, Windows 10 1809 and 13 more 2025-12-03 N/A 7.8 HIGH
Improper access control in Windows Remote Access Connection Manager allows an authorized attacker to elevate privileges locally.
CVE-2025-13573 1 Projectworlds 1 Advanced Library Management System 2025-12-02 6.5 MEDIUM 6.3 MEDIUM
A security flaw has been discovered in projectworlds can pass malicious payloads up to 1.0. This vulnerability affects unknown code of the file /add_book.php. The manipulation of the argument image results in unrestricted upload. The attack can be executed remotely. The exploit has been released to the public and may be exploited.
CVE-2025-13574 1 Fabian 1 Online Bidding System 2025-12-02 5.8 MEDIUM 4.7 MEDIUM
A weakness has been identified in code-projects Online Bidding System 1.0. This issue affects the function categoryadd of the file /administrator/addcategory.php. This manipulation of the argument catimage causes unrestricted upload. The attack is possible to be carried out remotely. The exploit has been made available to the public and could be exploited.
CVE-2025-48983 1 Veeam 1 Veeam Backup \& Replication 2025-12-01 N/A 9.9 CRITICAL
A vulnerability in the Mount service of Veeam Backup & Replication, which allows for remote code execution (RCE) on the Backup infrastructure hosts by an authenticated domain user.
CVE-2025-65963 2025-12-01 N/A 5.4 MEDIUM
Files is a module for managing files inside spaces and user profiles. Prior to versions 0.16.11 and 0.17.2, insufficient authorization checks allow non-member users to create new folders, up- and download files as a ZIP archive in public spaces. Private spaces are not affected. This issue has been patched in versions 0.16.11 and 0.17.2.
CVE-2025-66223 2025-12-01 N/A N/A
OpenObserve is a cloud-native observability platform. Prior to version 0.16.0, organization invitation tokens do not expire once issued, remain valid even after the invited user is removed from the organization, and allow multiple invitations to the same email with different roles where all issued links remain valid simultaneously. This results in broken access control where a removed or demoted user can regain access or escalate privileges. This issue has been patched in version 0.16.0.
CVE-2025-64064 1 Primakon 1 Project Contract Management 2025-12-01 N/A 8.8 HIGH
Primakon Pi Portal 1.0.18 /api/v2/pp_users endpoint fails to adequately check user permissions before processing a PATCH request to modify the PP_SECURITY_PROFILE_ID. Because of weak access controls any low level user can use this API and change their permission to Administrator by using PP_SECURITY_PROFILE_ID=2 inside body of request and escalate privileges.
CVE-2025-64066 1 Primakon 1 Project Contract Management 2025-12-01 N/A 8.6 HIGH
Primakon Pi Portal 1.0.18 REST /api/v2/user/register endpoint suffers from a Broken Access Control vulnerability. The endpoint fails to implement any authorization checks, allowing unauthenticated attackers to perform POST requests to register new user accounts in the application's local database. This bypasses the intended security architecture, which relies on an external Identity Provider for initial user registration and assumes that internal user creation is an administrative-only function. ...

Show More

CVE-2024-23681 1 Ls1intum 1 Artemis Java Test Sandbox 2025-11-28 N/A 8.2 HIGH
Artemis Java Test Sandbox versions before 1.11.2 are vulnerable to a sandbox escape when an attacker loads untrusted libraries using System.load or System.loadLibrary. An attacker can abuse this issue to execute arbitrary Java when a victim executes the supposedly sandboxed code.
CVE-2024-53010 1 Qualcomm 386 Aqt1000, Aqt1000 Firmware, Ar8035 and 383 more 2025-11-28 N/A 7.8 HIGH
Memory corruption may occur while attaching VM when the HLOS retains access to VM.
CVE-2025-27062 1 Qualcomm 306 315 5g Iot Modem, 315 5g Iot Modem Firmware, Apq8064au and 303 more 2025-11-28 N/A 7.8 HIGH
Memory corruption while handling client exceptions, allowing unauthorized channel access.
CVE-2025-24314 1 Intel 1 Computing Improvement Program 2025-11-26 N/A 2.2 LOW
Improper access control for some Intel(R) CIP software before version WIN_DCA_2.4.0.11001 within Ring 3: User Applications may allow an information disclosure. Unprivileged software adversary with a privileged user combined with a high complexity attack may enable data exposure. This result may potentially occur via network access when attack requirements are present without special internal knowledge and requires no user interaction. The potential vulnerability may impact the confidentiality (l ...

Show More

CVE-2025-31216 1 Apple 2 Ipados, Iphone Os 2025-11-26 N/A 2.4 LOW
The issue was addressed with improved checks. This issue is fixed in iPadOS 17.7.7, iOS 18.5 and iPadOS 18.5. An attacker with physical access to a device may be able to override managed Wi-Fi profiles.
CVE-2025-64660 1 Microsoft 1 Visual Studio Code 2025-11-26 N/A 8.0 HIGH
Improper access control in GitHub Copilot and Visual Studio Code allows an authorized attacker to execute code over a network.
CVE-2025-13443 1 Macrozheng 1 Mall 2025-11-25 5.5 MEDIUM 5.4 MEDIUM
A vulnerability was detected in macrozheng mall up to 1.0.3. Affected by this issue is the function delete of the file /member/readHistory/delete. Performing manipulation of the argument ids results in improper access controls. Remote exploitation of the attack is possible. The exploit is now public and may be used.
CVE-2025-60799 1 Phppgadmin Project 1 Phppgadmin 2025-11-25 N/A 6.1 MEDIUM
phpPgAdmin 7.13.0 and earlier contains an incorrect access control vulnerability in sql.php at lines 68-76. The application allows unauthorized manipulation of session variables by accepting user-controlled parameters ('subject', 'server', 'database', 'queryid') without proper validation or access control checks. Attackers can exploit this to store arbitrary SQL queries in $_SESSION['sqlquery'] by manipulating these parameters, potentially leading to session poisoning, stored cross-site scriptin ...

Show More

CVE-2025-48986 1 Revive-adserver 1 Revive Adserver 2025-11-25 N/A 8.8 HIGH
Authorization bypass in Revive Adserver 5.5.2 and 6.0.1 and earlier versions causes an logged in attacker to change other users' email address and potentialy take over their accounts using the forgot password functionality.
CVE-2025-53092 1 Strapi 1 Strapi 2025-11-25 N/A 6.5 MEDIUM
Strapi is an open source headless content management system. Strapi versions prior to 5.20.0 contain a CORS misconfiguration vulnerability in default installations. By default, Strapi reflects the value of the Origin header back in the Access-Control-Allow-Origin response header without proper validation or whitelisting. This allows an attacker-controlled site to send credentialed requests to the Strapi backend. An attacker can exploit this by hosting a malicious site on a different origin (e.g. ...

Show More

CVE-2025-6741 1 Devolutions 1 Devolutions Server 2025-11-25 N/A 7.7 HIGH
Improper access control in secure message component in Devolutions Server allows an authenticated user to steal unauthorized entries via the secure message entry attachment feature This issue affects the following versions : * Devolutions Server 2025.2.2.0 through 2025.2.4.0 * Devolutions Server 2025.1.11.0 and earlier
CVE-2025-4433 1 Devolutions 1 Devolutions Server 2025-11-25 N/A 8.8 HIGH
Improper access control in user group management in Devolutions Server 2025.1.7.0 and earlier allows a non-administrative user with both "User Management" and "User Group Management" permissions to perform privilege escalation by adding users to groups with administrative privileges.
CVE-2016-9905 3 Debian, Mozilla, Redhat 6 Debian Linux, Firefox, Thunderbird and 3 more 2025-11-25 6.8 MEDIUM 8.8 HIGH
A potentially exploitable crash in "EnumerateSubDocuments" while adding or removing sub-documents. This vulnerability affects Firefox ESR < 45.6 and Thunderbird < 45.6.
CVE-2025-5409 1 Mist 1 Mist 2025-11-25 7.5 HIGH 7.3 HIGH
A vulnerability was found in Mist Community Edition up to 4.7.1. It has been classified as critical. This affects the function create_token of the file src/mist/api/auth/views.py of the component API Token Handler. The manipulation leads to improper access controls. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. Upgrading to version 4.7.2 is able to address this issue. The identifier of the patch is db10ecb62ac832c1ed4924556d167efb9b ...

Show More

CVE-2024-8164 1 Beikeshop 1 Beikeshop 2025-11-24 6.5 MEDIUM 6.3 MEDIUM
A vulnerability was determined in Chengdu Everbrite Network Technology BeikeShop up to 1.5.5. This affects the function rename of the file /Admin/Http/Controllers/FileManagerController.php. This manipulation of the argument new_name causes unrestricted upload. The attack can be initiated remotely. The exploit has been publicly disclosed and may be utilized. Upgrading to version 1.6.0 is able to mitigate this issue. The affected component should be upgraded.
CVE-2025-13185 1 Bdtask 1 News365 2025-11-21 5.8 MEDIUM 4.7 MEDIUM
A security flaw has been discovered in Bdtask/CodeCanyon News365 up to 7.0.3. This affects an unknown function of the file /admin/dashboard/profile. The manipulation of the argument profile_image/banner_image results in unrestricted upload. The attack can be launched remotely. The exploit has been released to the public and may be exploited. The vendor was contacted early about this disclosure but did not respond in any way.
CVE-2025-12223 1 Bdtask 1 Flight Booking Software 2025-11-21 6.5 MEDIUM 6.3 MEDIUM
A vulnerability was detected in Bdtask Flight Booking Software up to 3.1. This affects an unknown part of the file /b2c/package-information of the component Package Information Module. The manipulation results in unrestricted upload. The attack can be launched remotely. The exploit is now public and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
CVE-2025-12222 1 Bdtask 1 Flight Booking Software 2025-11-21 6.5 MEDIUM 6.3 MEDIUM
A security vulnerability has been detected in Bdtask Flight Booking Software up to 3.1. Affected by this issue is some unknown functionality of the file /admin/transaction/deposit of the component Deposit Handler. The manipulation leads to unrestricted upload. The attack can be initiated remotely. The exploit has been disclosed publicly and may be used. The vendor was contacted early about this disclosure but did not respond in any way.
CVE-2025-9804 1 Wso2 15 Api Control Plane, Api Manager, Api Manager Analytics and 12 more 2025-11-21 N/A 9.6 CRITICAL
An improper access control vulnerability exists in multiple WSO2 products due to insufficient permission enforcement in certain internal SOAP Admin Services and System REST APIs. A low-privileged user may exploit this flaw to perform unauthorized operations, including accessing server-level information. This vulnerability affects only internal administrative interfaces. APIs exposed through the WSO2 API Manager's API Gateway remain unaffected.
CVE-2025-41737 1 Metz-connect 6 Ewio2-bm, Ewio2-bm Firmware, Ewio2-m and 3 more 2025-11-21 N/A 7.5 HIGH
Due to webserver misconfiguration an unauthenticated remote attacker is able to read the source of php modules.
CVE-2025-7895 1 Harry0703 1 Moneyprinterturbo 2025-11-20 6.5 MEDIUM 6.3 MEDIUM
A vulnerability, which was classified as critical, was found in harry0703 MoneyPrinterTurbo up to 1.2.6. Affected is the function upload_bgm_file of the file app/controllers/v1/video.py of the component File Extension Handler. The manipulation of the argument File leads to unrestricted upload. It is possible to launch the attack remotely.
CVE-2025-13250 1 Datax-web Project 1 Datax-web 2025-11-20 6.5 MEDIUM 6.3 MEDIUM
A vulnerability was detected in WeiYe-Jing datax-web up to 2.1.2. This impacts the function remove/update/pause/start/triggerJob of the component Job Handler. Performing manipulation results in improper access controls. The attack may be initiated remotely. The exploit is now public and may be used.
CVE-2025-59512 1 Microsoft 13 Windows 10 1607, Windows 10 1809, Windows 10 21h2 and 10 more 2025-11-20 N/A 7.8 HIGH
Improper access control in Customer Experience Improvement Program (CEIP) allows an authorized attacker to elevate privileges locally.
CVE-2025-54561 1 Desktopalert 1 Pingalert Application Server 2025-11-20 N/A 4.3 MEDIUM
An Incorrect Access Control vulnerability was found in the Application Server of Desktop Alert PingAlert version 6.1.0.11 to 6.1.1.2 which allows remote access to content despite lack of the correct permission through a Broken Authorization Schema.
CVE-2025-54339 1 Desktopalert 1 Pingalert Application Server 2025-11-19 N/A 10.0 CRITICAL
An Incorrect Access Control vulnerability was found in the Application Server of Desktop Alert PingAlert version 6.1.0.11 to 6.1.1.2 exploitable remotely for Escalation of Privileges.
CVE-2025-54343 1 Desktopalert 1 Pingalert Application Server 2025-11-19 N/A 9.6 CRITICAL
An Incorrect Access Control vulnerability was found in the Application Server of Desktop Alert PingAlert version 6.1.0.11 to 6.1.1.2 exploitable remotely for Escalation of Privileges.
CVE-2025-53360 2025-11-19 N/A 4.3 MEDIUM
pluginsGLPI's Database Inventory Plugin "manages" the Teclib' inventory agents in order to perform an inventory of the databases present on the workstation. In versions prior to 1.0.3, any authenticated user could send requests to agents. This issue has been patched in version 1.0.3.
CVE-2024-28390 1 Advancedplugins 1 Ultimateimagetool 2025-11-19 N/A 9.8 CRITICAL
An issue in Advanced Plugins ultimateimagetool module for PrestaShop before v.2.2.01, allows a remote attacker to escalate privileges and obtain sensitive information via Improper Access Control.
CVE-2024-6364 1 Absolute 1 Persistence 2025-11-19 N/A 6.4 MEDIUM
A vulnerability in Absolute Persistence® versions before 2.8 exists when it is not activated. This may allow a skilled attacker with both physical access to the device, and full hostile network control, to initiate OS commands on the device. To remediate this vulnerability, update the device firmware to the latest available version. Please contact the device manufacturer for upgrade instructions or contact Absolute Security, see reference below.