|
2511
|
2.4 |
LOW
Network
|
-
|
-
|
Se determinó una vulnerabilidad en code-projects Exam Form Submission 1.0. El elemento impactado es una función desconocida del archivo /admin/update_s3.PHP. La ejecución de una manipulación del argu…
|
CWE-79 CWE-94
Cross-site Scripting Code Injection
|
CVE-2026-4578
|
2026-04-25 01:32 |
2026-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2512
|
5.0 |
MEDIUM
Adjacent
|
-
|
-
|
A security vulnerability has been detected in Shenzhen HCC Technology MPOS M6 PLUS 1V.31-N. Affected by this vulnerability is an unknown functionality of the component Bluetooth. Such manipulation le…
|
CWE-287 CWE-306
Improper Authentication Missing Authentication for Critical Function
|
CVE-2026-4582
|
2026-04-25 01:32 |
2026-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2513
|
5.0 |
MEDIUM
Adjacent
|
-
|
-
|
Una vulnerabilidad de seguridad ha sido detectada en Shenzhen HCC Technology MPOS M6 PLUS 1V.31-N. Afectada por esta vulnerabilidad es una funcionalidad desconocida del componente Bluetooth. Tal mani…
|
CWE-287 CWE-306
Improper Authentication Missing Authentication for Critical Function
|
CVE-2026-4582
|
2026-04-25 01:32 |
2026-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2514
|
5.0 |
MEDIUM
Adjacent
|
-
|
-
|
A vulnerability was detected in Shenzhen HCC Technology MPOS M6 PLUS 1V.31-N. Affected by this issue is some unknown functionality of the component Bluetooth Handler. Performing a manipulation result…
|
CWE-287 CWE-294
Improper Authentication Authentication Bypass by Capture-replay
|
CVE-2026-4583
|
2026-04-25 01:32 |
2026-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2515
|
5.0 |
MEDIUM
Adjacent
|
-
|
-
|
Se detectó una vulnerabilidad en Shenzhen HCC Technology MPOS M6 PLUS 1V.31-N. Afecta a alguna funcionalidad desconocida del componente Gestor de Bluetooth. Realizar una manipulación resulta en omisi…
|
CWE-287 CWE-294
Improper Authentication Authentication Bypass by Capture-replay
|
CVE-2026-4583
|
2026-04-25 01:32 |
2026-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2516
|
3.1 |
LOW
Adjacent
|
-
|
-
|
A flaw has been found in Shenzhen HCC Technology MPOS M6 PLUS 1V.31-N. This affects an unknown part of the component Cardholder Data Handler. Executing a manipulation can lead to cleartext transmissi…
|
CWE-310 CWE-319
Cryptographic Issues Cleartext Transmission of Sensitive Information
|
CVE-2026-4584
|
2026-04-25 01:32 |
2026-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2517
|
3.1 |
LOW
Adjacent
|
-
|
-
|
Se ha encontrado una vulnerabilidad en Shenzhen HCC Technology MPOS M6 PLUS 1V.31-N. Esto afecta a una parte desconocida del componente Gestor de Datos del Titular de la Tarjeta. La ejecución de una …
|
CWE-310 CWE-319
Cryptographic Issues Cleartext Transmission of Sensitive Information
|
CVE-2026-4584
|
2026-04-25 01:32 |
2026-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2518
|
9.8 |
CRITICAL
Network
|
-
|
-
|
A vulnerability has been found in Tiandy Easy7 Integrated Management Platform up to 7.17.0. This vulnerability affects unknown code of the file /Easy7/apps/WebService/ImportSystemConfiguration.jsp of…
|
CWE-77 CWE-78
Command Injection OS Command
|
CVE-2026-4585
|
2026-04-25 01:32 |
2026-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2519
|
3.7 |
LOW
Network
|
-
|
-
|
A vulnerability was found in HybridAuth up to 3.12.2. This issue affects some unknown processing of the file src/HttpClient/Curl.php of the component SSL Handler. The manipulation of the argument cur…
|
CWE-287 CWE-295
Improper Authentication Improper Certificate Validation
|
CVE-2026-4587
|
2026-04-25 01:32 |
2026-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2520
|
6.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability was identified in kalcaddle kodbox 1.64. The affected element is the function PathDriverUrl of the file /workspace/source-code/app/controller/explorer/editor.class.php of the componen…
|
CWE-918
Server-Side Request Forgery (SSRF)
|
CVE-2026-4589
|
2026-04-25 01:32 |
2026-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|