CVE Database

Comprehensive vulnerability intelligence with advanced analytics

5.4

CVE-2025-27915

Medium KEV

An issue was discovered in Zimbra Collaboration (ZCS) 9.0 and 10.0 and 10.1. A stored cross-site scripting (XSS) vulnerability exists in the Classic Web Client due to insufficient sanitization of HTML content in ICS files. When a user views an e-mail message containing a malicious ICS entry, its embedded JavaScript…

Published: Mar 12, 2025
Modified: Nov 04, 2025
Product: synacor zimbra_collaboration_suite
EPSS: 26.52%
View Details
4.4

CVE-2025-21590

Medium KEV

An Improper Isolation or Compartmentalization vulnerability in the kernel of Juniper Networks Junos OS allows a local attacker with high privileges to compromise the integrity of the device. A local attacker with access to the shell is able to inject arbitrary code which can compromise an affected device. This issue…

Published: Mar 12, 2025
Modified: Oct 24, 2025
Product: juniper junos
EPSS: 2.74%
View Details
10.0

CVE-2025-24201

Critical KEV

An out-of-bounds write issue was addressed with improved checks to prevent unauthorized actions. This issue is fixed in visionOS 2.3.2, iOS 18.3.2 and iPadOS 18.3.2, macOS Sequoia 15.3.2, Safari 18.3.1, watchOS 11.4, iPadOS 17.7.6, iOS 16.7.11 and iPadOS 16.7.11, iOS 15.8.4 and iPadOS 15.8.4. Maliciously crafted web content may be…

Published: Mar 11, 2025
Modified: Nov 14, 2025
Product: apple safari
EPSS: 0.07%
View Details
7.0

Improper neutralization in Microsoft Management Console allows an unauthorized attacker to bypass a security feature locally.

Published: Mar 11, 2025
Modified: Oct 27, 2025
Product: microsoft windows_10_1507
EPSS: 10.03%
View Details
5.5

CVE-2025-24991

Medium KEV

Out-of-bounds read in Windows NTFS allows an authorized attacker to disclose information locally.

Published: Mar 11, 2025
Modified: Oct 27, 2025
Product: microsoft windows_10_1507
EPSS: 0.71%
View Details
4.6

CVE-2025-24984

Medium KEV

Insertion of sensitive information into log file in Windows NTFS allows an unauthorized attacker to disclose information with a physical attack.

Published: Mar 11, 2025
Modified: Oct 27, 2025
Product: microsoft windows_10_1507
EPSS: 4.97%
View Details
8.1

An out of bounds write exists in FreeType versions 2.13.0 and below (newer versions of FreeType are not vulnerable) when attempting to parse font subglyph structures related to TrueType GX and variable font files. The vulnerable code assigns a signed short value to an unsigned long and then adds a…

Published: Mar 11, 2025
Modified: Oct 27, 2025
Product: freetype freetype
EPSS: 76.68%
View Details
9.8

CVE-2024-54085

Critical KEV

AMI’s SPx contains a vulnerability in the BMC where an Attacker may bypass authentication remotely through the Redfish Host Interface. A successful exploitation of this vulnerability may lead to a loss of confidentiality, integrity, and/or availability.

Published: Mar 11, 2025
Modified: Nov 05, 2025
Product: netapp sgf6112_firmware
EPSS: 10.47%
View Details
9.8

CVE-2025-1316

Critical KEV

Edimax IC-7100 does not properly neutralize requests. An attacker can create specially crafted requests to achieve remote code execution on the device

Published: Mar 05, 2025
Modified: Oct 30, 2025
EPSS: 84.08%
View Details
7.1

VMware ESXi, Workstation, and Fusion contain an information disclosure vulnerability due to an out-of-bounds read in HGFS. A malicious actor with administrative privileges to a virtual machine may be able to exploit this issue to leak memory from the vmx process.

Published: Mar 04, 2025
Modified: Oct 30, 2025
Product: vmware telco_cloud_platform
EPSS: 3.96%
View Details
8.2

VMware ESXi contains an arbitrary write vulnerability. A malicious actor with privileges within the VMX process may trigger an arbitrary kernel write leading to an escape of the sandbox.

Published: Mar 04, 2025
Modified: Oct 30, 2025
Product: vmware telco_cloud_platform
EPSS: 7.05%
View Details
9.3

CVE-2025-22224

Critical KEV

VMware ESXi, and Workstation contain a TOCTOU (Time-of-Check Time-of-Use) vulnerability that leads to an out-of-bounds write. A malicious actor with local administrative privileges on a virtual machine may exploit this issue to execute code as the virtual machine's VMX process running on the host.

Published: Mar 04, 2025
Modified: Oct 30, 2025
Product: vmware telco_cloud_platform
EPSS: 51.47%
View Details
8.6

NAKIVO Backup & Replication before 11.0.0.88174 allows absolute path traversal for reading files via getImageByPath to /c/router (this may lead to remote code execution across the enterprise because PhysicalDiscovery has cleartext credentials).

Published: Mar 04, 2025
Modified: Nov 05, 2025
Product: nakivo backup_\&_replication_director
EPSS: 93.97%
View Details
8.2

An improper access control vulnerability in Power Pages allows an unauthorized attacker to elevate privileges over a network potentially bypassing the user registration control. This vulnerability has already been mitigated in the service and all affected customers have been notified. This update addressed the registration control bypass. Affected customers have…

Published: Feb 19, 2025
Modified: Oct 27, 2025
Product: microsoft power_pages
EPSS: 16.52%
View Details
6.5

CVE-2025-0111

Medium KEV

An authenticated file read vulnerability in the Palo Alto Networks PAN-OS software enables an authenticated attacker with network access to the management web interface to read files on the PAN-OS filesystem that are readable by the “nobody” user. You can greatly reduce the risk of this issue by restricting access…

Published: Feb 12, 2025
Modified: Nov 04, 2025
Product: paloaltonetworks pan-os
EPSS: 2.04%
View Details
9.1

CVE-2025-0108

Critical KEV

An authentication bypass in the Palo Alto Networks PAN-OS software enables an unauthenticated attacker with network access to the management web interface to bypass the authentication otherwise required by the PAN-OS management web interface and invoke certain PHP scripts. While invoking these PHP scripts does not enable remote code execution,…

Published: Feb 12, 2025
Modified: Nov 04, 2025
Product: paloaltonetworks pan-os
EPSS: 94.01%
View Details
7.8

Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability

Published: Feb 11, 2025
Modified: Oct 27, 2025
Product: microsoft windows_server_2016
EPSS: 8.74%
View Details
7.1

Windows Storage Elevation of Privilege Vulnerability

Published: Feb 11, 2025
Modified: Oct 27, 2025
Product: microsoft windows_10_1507
EPSS: 2.27%
View Details
8.1

An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] affecting FortiOS 7.0.0 through 7.0.16 and FortiProxy 7.2.0 through 7.2.12, 7.0.0 through 7.0.19 may allow a remote unauthenticated attacker with prior knowledge of upstream and downstream devices serial numbers to gain super-admin privileges on the downstream device, if the Security…

Published: Feb 11, 2025
Modified: Oct 24, 2025
Product: fortinet fortiproxy
EPSS: 4.37%
View Details
9.9

CVE-2025-24016

Critical KEV

Wazuh is a free and open source platform used for threat prevention, detection, and response. Starting in version 4.4.0 and prior to version 4.9.1, an unsafe deserialization vulnerability allows for remote code execution on Wazuh servers. DistributedAPI parameters are a serialized as JSON and deserialized using `as_wazuh_object` (in `framework/wazuh/core/cluster/common.py`). If…

Published: Feb 10, 2025
Modified: Oct 24, 2025
Product: wazuh wazuh
EPSS: 93.40%
View Details
8.8

Trimble Cityworks versions prior to 15.8.9 and Cityworks with office companion versions prior to 23.10 are vulnerable to a deserialization vulnerability. This could allow an authenticated user to perform a remote code execution attack against a customer’s Microsoft Internet Information Services (IIS) web server.

Published: Feb 06, 2025
Modified: Oct 30, 2025
EPSS: 77.80%
View Details
8.8

**UNSUPPORTED WHEN ASSIGNED** A post-authentication command injection vulnerability in the management commands of the legacy DSL CPE Zyxel VMG4325-B10A firmware version 1.00(AAFR.4)C0_20170615 could allow an authenticated attacker to execute operating system (OS) commands on an affected device via Telnet.

Published: Feb 04, 2025
Modified: Oct 27, 2025
Product: zyxel sbg3300-n000_firmware
EPSS: 39.30%
View Details
8.8

**UNSUPPORTED WHEN ASSIGNED** A post-authentication command injection vulnerability in the CGI program of the legacy DSL CPE Zyxel VMG4325-B10A firmware version 1.00(AAFR.4)C0_20170615 could allow an authenticated attacker to execute operating system (OS) commands on an affected device by sending a crafted HTTP POST request.

Published: Feb 04, 2025
Modified: Oct 27, 2025
Product: zyxel sbg3300-n000_firmware
EPSS: 16.90%
View Details
8.8

Digiever DS-2105 Pro 3.1.0.71-11 devices allow time_tzsetup.cgi Command Injection. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

Published: Feb 03, 2025
Modified: Dec 24, 2025
Product: digiever ds-2105_pro\+_firmware
EPSS: 15.05%
View Details