CyberAlerts is shutting down on June 30th, 2025. Thank you for your support!

Threat and Vulnerability Intelligence Database

RSS Feed

Example Searches:

Source: TheRegister
February 14th, 2025 (5 months ago)

CVE-2025-25901

Description: A buffer overflow vulnerability was discovered in TP-Link TL-WR841ND V11, triggered by the dnsserver1 and dnsserver2 parameters at /userRpm/WanSlaacCfgRpm.htm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet.

EPSS Score: 0.05%

Source: CVE
February 14th, 2025 (5 months ago)

CVE-2025-25900

Description: A buffer overflow vulnerability was discovered in TP-Link TL-WR841ND V11 via the username and password parameters at /userRpm/PPPoEv6CfgRpm.htm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet.

EPSS Score: 0.04%

Source: CVE
February 14th, 2025 (5 months ago)

CVE-2025-25899

Description: A buffer overflow vulnerability was discovered in TP-Link TL-WR841ND V11 via the 'gw' parameter at /userRpm/WanDynamicIpV6CfgRpm.htm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet.

EPSS Score: 0.04%

Source: CVE
February 14th, 2025 (5 months ago)

CVE-2025-25898

Description: A buffer overflow vulnerability was discovered in TP-Link TL-WR841ND V11 via the pskSecret parameter at /userRpm/WlanSecurityRpm.htm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet.

EPSS Score: 0.05%

Source: CVE
February 14th, 2025 (5 months ago)

CVE-2025-25897

Description: A buffer overflow vulnerability was discovered in TP-Link TL-WR841ND V11 via the 'ip' parameter at /userRpm/WanStaticIpV6CfgRpm.htm. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet.

EPSS Score: 0.05%

Source: CVE
February 14th, 2025 (5 months ago)

CVE-2025-25389

Description: A SQL Injection vulnerability was found in /admin/forgot-password.php in Phpgurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code via the contactno POST request parameter.

EPSS Score: 0.04%

Source: CVE
February 14th, 2025 (5 months ago)

CVE-2025-25388

Description: A SQL Injection vulnerability was found in /admin/edit-propertytype.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code via the editid GET request parameter.

EPSS Score: 0.04%

Source: CVE
February 14th, 2025 (5 months ago)

CVE-2025-25387

Description: A SQL Injection vulnerability was found in /admin/manage-propertytype.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code via the propertytype POST request parameter.

EPSS Score: 0.04%

Source: CVE
February 14th, 2025 (5 months ago)

CVE-2025-25357

Description: A SQL Injection vulnerability was found in /admin/contactus.php in PHPGurukul Land Record System v1.0, which allows remote attackers to execute arbitrary code via the email POST request parameter.

EPSS Score: 0.06%

Source: CVE
February 14th, 2025 (5 months ago)