CVE-2025-58454 – WeGIA vulnerable to Blind Time-Based SQL Injection in endpoint ‘listar_despachos.php’ parameter ‘id_memorando’
WeGIA is a Web manager for charitable institutions. A SQL Injection vulnerability was identified in WeGIA versions 3.4.10 and prior inthe endpoint /WeGIA/html/memorando/listar_despachos.php, in the id_memorando parameter. This vulnerability allow an authorized attacker to execute arbitrary SQL queries, allowing access to sensitive information. Version 3.4.11 contains a patch.
SEC Consult SA-20250908-0 :: NFC Card Vulnerability Exploitation Leading to Free Top-Up in KioSoft “Stored Value” Unattended Payment Solution (Mifare)
SEC Consult SA-20250908-0 :: NFC Card Vulnerability Exploitation Leading to Free Top-Up in KioSoft “Stored Value” Unattended Payment Solution (Mifare) Full Disclosure mailing list archives From: SEC Consult Vulnerability Lab via Fulldisclosure Date: Mon, 8 Sep 2025 06:40:38 +0000 SEC Consult Vulnerability Lab Securit … Read more Published Date: Sep 08, 2025 (3 hours, 34 minutes ago) […]
CVE-2025-10110 – ChanCMS search sql injection
Affected Products The following products are affected by CVE-2025-10110 vulnerability. Even if cvefeed.io is aware of the exact versions of the products that are affected, the information is not represented in the table below. No affected product recoded yet
CVE-2025-10109 – Campcodes Online Loan Management System ajax.php sql injection
Affected Products The following products are affected by CVE-2025-10109 vulnerability. Even if cvefeed.io is aware of the exact versions of the products that are affected, the information is not represented in the table below. No affected product recoded yet
CVE-2025-58453 – WeGIA vulnerable to Blind Time-Based SQL Injection in endpoint ‘exibe_anexo.php’ parameter ‘id_anexo’
WeGIA is a Web manager for charitable institutions. A SQL Injection vulnerability was identified in WeGIA versions 3.4.10 and prior in the endpoint /WeGIA/html/memorando/exibe_anexo.php, in the id_anexo parameter. This vulnerability allow an authorized attacker to execute arbitrary SQL queries, allowing access to sensitive information. Version 3.4.11 contains a patch.
CVE-2024-45438 – SpamTitan Unauthenticated User Creation
CVE-2024-45438 – SpamTitan Unauthenticated User Creation Full Disclosure mailing list archives From: Seralys Research Team via Fulldisclosure Date: Wed, 20 Aug 2025 14:40:55 +0000 Seralys Security Advisory | https://www.sera … Read more Published Date: Sep 08, 2025 (3 hours, 40 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2024-45438
APPLE-SA-08-20-2025-5 macOS Ventura 13.7.8
APPLE-SA-08-20-2025-5 macOS Ventura 13.7.8 Full Disclosure mailing list archives From: Apple Product Security via Fulldisclosure Date: Wed, 20 Aug 2025 17:10:56 -0700 —–BEGIN PGP SIGNED MESSAGE—– Hash: SH … Read more Published Date: Sep 08, 2025 (3 hours, 40 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-43300
APPLE-SA-08-20-2025-4 macOS Sonoma 14.7.8
APPLE-SA-08-20-2025-4 macOS Sonoma 14.7.8 Full Disclosure mailing list archives From: Apple Product Security via Fulldisclosure Date: Wed, 20 Aug 2025 17:10:30 -0700 —–BEGIN PGP SIGNED MESSAGE—– Hash: SH … Read more Published Date: Sep 08, 2025 (3 hours, 40 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-43300
APPLE-SA-08-20-2025-3 macOS Sequoia 15.6.1
APPLE-SA-08-20-2025-3 macOS Sequoia 15.6.1 Full Disclosure mailing list archives From: Apple Product Security via Fulldisclosure Date: Wed, 20 Aug 2025 17:10:06 -0700 —–BEGIN PGP SIGNED MESSAGE—– Hash: SH … Read more Published Date: Sep 08, 2025 (3 hours, 40 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-43300
APPLE-SA-08-20-2025-2 iPadOS 17.7.10
APPLE-SA-08-20-2025-2 iPadOS 17.7.10 Full Disclosure mailing list archives From: Apple Product Security via Fulldisclosure Date: Wed, 20 Aug 2025 17:09:40 -0700 —–BEGIN PGP SIGNED MESSAGE—– Hash: SH … Read more Published Date: Sep 08, 2025 (3 hours, 40 minutes ago) Vulnerabilities has been mentioned in this article. CVE-2025-43300