CVE-2025-4917 |
Description: A vulnerability classified as critical has been found in PHPGurukul Auto Taxi Stand Management System 1.0. Affected is an unknown function of the file /admin/new-autoortaxi-entry-form.php. The manipulation of the argument drivername leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. Other parameters might be affected as well. Es wurde eine kritische Schwachstelle in PHPGurukul Auto Taxi Stand Management System 1.0 entdeckt. Betroffen hiervon ist ein unbekannter Ablauf der Datei /admin/new-autoortaxi-entry-form.php. Dank der Manipulation des Arguments drivername mit unbekannten Daten kann eine sql injection-Schwachstelle ausgenutzt werden. Umgesetzt werden kann der Angriff über das Netzwerk. Der Exploit steht zur öffentlichen Verfügung.
CVSS: HIGH (7.3) EPSS Score: 0.03%
May 19th, 2025 (29 days ago)
|
CVE-2025-47760 |
Description: V-SFT v6.2.5.0 and earlier contains an issue with stack-based buffer overflow in VS6MemInIF!set_temp_type_default function. Opening specially crafted V7 or V8 files may lead to crash, information disclosure, and arbitrary code execution.
CVSS: HIGH (7.8) EPSS Score: 0.02%
May 19th, 2025 (29 days ago)
|
CVE-2025-47759 |
Description: V-SFT v6.2.5.0 and earlier contains an issue with stack-based buffer overflow in VS6ComFile!CV7BaseMap::WriteV7DataToRom function. Opening specially crafted V7 or V8 files may lead to crash, information disclosure, and arbitrary code execution.
CVSS: HIGH (7.8) EPSS Score: 0.02%
May 19th, 2025 (29 days ago)
|
CVE-2025-47758 |
Description: V-SFT v6.2.5.0 and earlier contains an issue with stack-based buffer overflow in VS6File!CTxSubFile::get_ProgramFile_name function. Opening specially crafted V7 or V8 files may lead to crash, information disclosure, and arbitrary code execution.
CVSS: HIGH (7.8) EPSS Score: 0.02%
May 19th, 2025 (29 days ago)
|
CVE-2025-47757 |
Description: V-SFT v6.2.5.0 and earlier contains an issue with out-of-bounds read in VS6MemInIF.dll!set_plc_type_default function. Opening specially crafted V7 or V8 files may lead to crash, information disclosure, and arbitrary code execution.
CVSS: HIGH (7.8) EPSS Score: 0.02%
May 19th, 2025 (29 days ago)
|
CVE-2025-47756 |
Description: V-SFT v6.2.5.0 and earlier contains an issue with out-of-bounds read in VS6EditData!CGamenDataRom::set_mr400_strc function. Opening specially crafted V7 or V8 files may lead to crash, information disclosure, and arbitrary code execution.
CVSS: HIGH (7.8) EPSS Score: 0.02%
May 19th, 2025 (29 days ago)
|
CVE-2025-47755 |
Description: V-SFT v6.2.5.0 and earlier contains an issue with out-of-bounds read in VS6EditData!VS4_SaveEnvFile function. Opening specially crafted V7 or V8 files may lead to crash, information disclosure, and arbitrary code execution.
CVSS: HIGH (7.8) EPSS Score: 0.02%
May 19th, 2025 (29 days ago)
|
CVE-2025-47754 |
Description: V-SFT v6.2.5.0 and earlier contains an issue with out-of-bounds read in VS6EditData!Conv_Macro_Data function. Opening specially crafted V7 or V8 files may lead to crash, information disclosure, and arbitrary code execution.
CVSS: HIGH (7.8) EPSS Score: 0.02%
May 19th, 2025 (29 days ago)
|
CVE-2025-47753 |
Description: V-SFT v6.2.5.0 and earlier contains an issue with out-of-bounds read in VS6EditData!CDrawSLine::GetRectArea function. Opening specially crafted V7 or V8 files may lead to crash, information disclosure, and arbitrary code execution.
CVSS: HIGH (7.8) EPSS Score: 0.02%
May 19th, 2025 (29 days ago)
|
CVE-2025-47752 |
Description: V-SFT v6.2.5.0 and earlier contains an issue with out-of-bounds write in VS6ComFile!MakeItemGlidZahyou function. Opening specially crafted V7 or V8 files may lead to crash, information disclosure, and arbitrary code execution.
CVSS: HIGH (7.8) EPSS Score: 0.03%
May 19th, 2025 (29 days ago)
|