CVE-Datenbank
Archiv bekannter Schwachstellen (CVEs) mit CVSS-Wert, Schweregrad, betroffenen Produkten und Herstellern. Nach Jahr und Schweregrad filterbar.
- CVE-2025-32463Kritisch9.3
Sudo before 1.9.17p1 allows local users to obtain root access because /etc/nsswitch.conf from a user-controlled directory is used with the --chroot option.
- CVE-2025-20281Kritisch10.0
A vulnerability in a specific API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to execute arbitrary code on the underlying operating system as root. The attacker does not require any valid credentials to exploit this vulnerability. This vulnerability is due to insufficient validation of user-supplied input. An attacker could exploit this vulnerability by submitting a crafted API request. A successful exploit could allow the attacker to obtain root privileges on an affected device.
- CVE-2025-6543Kritisch9.8
Memory overflow vulnerability leading to unintended control flow and Denial of Service in NetScaler ADC and NetScaler Gateway when configured as Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server
- CVE-2025-32975Kritisch10.0
Quest KACE Systems Management Appliance (SMA) 13.0.x before 13.0.385, 13.1.x before 13.1.81, 13.2.x before 13.2.183, 14.0.x before 14.0.341 (Patch 5), and 14.1.x before 14.1.101 (Patch 4) contains an authentication bypass vulnerability that allows attackers to impersonate legitimate users without valid credentials. The vulnerability exists in the SSO authentication handling mechanism and can lead to complete administrative takeover.
- CVE-2025-48700Mittel6.1
Ein Problem wurde in Zimbra Collaboration (ZCS) 8.8.15 und 9.0 und 10.0 und 10.1 entdeckt. Eine Cross-Site-Scripting (XSS)-Schwachstelle in der Zimbra Classic UI ermöglicht es Angreifern, beliebigen JavaScript-Code innerhalb der Sitzung des Benutzers auszuführen, was möglicherweise zu unbefugtem Zugriff auf vertrauliche Informationen führt. Dieses Problem entsteht durch unzureichende Bereinigung von HTML-Inhalten, insbesondere unter Einbeziehung manipulierter Tag-Strukturen und Attributwerte, die eine @import-Direktive und andere Script-Injection-Vektoren enthalten. Die Schwachstelle wird ausgelöst, wenn ein Benutzer eine manipulierte E-Mail-Nachricht in der Classic UI anzeigt, ohne dass eine zusätzliche Benutzerinteraktion erforderlich ist.
- CVE-2025-6218Hoch7.8
RARLAB WinRAR Directory Traversal Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitrary code on affected installations of RARLAB WinRAR. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The specific flaw exists within the handling of file paths within archive files. A crafted file path can cause the process to traverse to unintended directories. An attacker can leverage this vulnerability to execute code in the context of the current user. Was ZDI-CAN-27198.
- CVE-2025-5777Hoch7.5
Insufficient input validation leading to memory overread when the NetScaler is configured as a Gateway (VPN virtual server, ICA Proxy, CVPN, RDP Proxy) OR AAA virtual server
- CVE-2025-43200Mittel4.2
This issue was addressed with improved checks. This issue is fixed in iOS 15.8.4 and iPadOS 15.8.4, iOS 16.7.11 and iPadOS 16.7.11, iOS 18.3.1 and iPadOS 18.3.1, iPadOS 17.7.5, macOS Sequoia 15.3.1, macOS Sonoma 14.7.4, macOS Ventura 13.7.4, visionOS 2.3.1, watchOS 11.3.1. A logic issue existed when processing a maliciously crafted photo or video shared via an iCloud Link. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals.
- CVE-2025-33073Hoch8.8
Improper access control in Windows SMB allows an authorized attacker to elevate privileges over a network.
- CVE-2025-33053Hoch8.8
External control of file name or path in Internet Shortcut Files allows an unauthorized attacker to execute code over a network.
- CVE-2025-47827Mittel4.6
In IGEL OS before 11, Secure Boot can be bypassed because the igel-flash-driver module improperly verifies a cryptographic signature. Ultimately, a crafted root filesystem can be mounted from an unverified SquashFS image.
- CVE-2025-21479Hoch8.6
Memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands.
- CVE-2025-27038Hoch7.5
Memory corruption while rendering graphics using Adreno GPU drivers in Chrome.
- CVE-2025-21480Hoch8.6
Memory corruption due to unauthorized command execution in GPU micronode while executing specific sequence of commands.
- CVE-2025-5419Hoch8.8
Out of bounds read and write in V8 in Google Chrome prior to 137.0.7151.68 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. (Chromium security severity: High)
- CVE-2025-5086Kritisch9.0
A deserialization of untrusted data vulnerability affecting DELMIA Apriso from Release 2020 through Release 2025 could lead to a remote code execution.
- CVE-2025-49113Kritisch9.9
Roundcube Webmail vor 1.5.10 und 1.6.x vor 1.6.11 ermöglicht authentifizierten Benutzern Remote Code Execution, da der _from-Parameter in einer URL in program/actions/settings/upload.php nicht validiert wird, was zu PHP Object Deserialization führt.
- CVE-2025-48928Mittel4.0
The TeleMessage service through 2025-05-05 is based on a JSP application in which the heap content is roughly equivalent to a "core dump" in which a password previously sent over HTTP would be included in this dump, as exploited in the wild in May 2025.
- CVE-2025-48927Mittel5.3
The TeleMessage service through 2025-05-05 configures Spring Boot Actuator with an exposed heap dump endpoint at a /heapdump URI, as exploited in the wild in May 2025.
- CVE-2025-34026Hoch7.5
The Versa Concerto SD-WAN orchestration platform is vulnerable to an authentication bypass in the Traefik reverse proxy configuration, allowing at attacker to access administrative endpoints. The internal Actuator endpoint can be leveraged for access to heap dumps and trace logs.This issue is known to affect Concerto from 12.1.2 through 12.2.0. Additional versions may be vulnerable.
This product uses the NVD API but is not endorsed or certified by the NVD.