capitalfinance exchange

Exchange Platform Services

 
  • Join Now-Sign Up
  • Log In
Category : Editor Picks Maps

18 Marketing Trends And Predictions From C-Level Leaders In China

CMOS and their teams will embrace AI in 2018 – Knowingly or Unwittingly The Future of Marketing is About Connection […]

  • Blog
  • Editor Paper Extracts
  • Editor Picks Articles
  • Editor Picks Maps
  • Editor Picks Reports
  • IS Competitive Intelligence Briefings
  • IS Intelligence Work Group
  • IS Partners
  • IS Projects Work Group
  • IS Reports
  • IS Security Work Group
  • IS Working Group Briefings
  • Uncategorized

IS Security Alerts Advisories

  • 93.04324
    Newly Added (1)Android/FakeWallet.KV!trModified (2)Android/Agent.MGV!trAndroid/Agent.MHV!tr ... read more
  • CVE-2024-10762 | lunary-ai lunary up to 1.5.8 Delete Request /v1/evaluators/ authorization
    A vulnerability, which was classified as problematic, has been found in lunary-ai lunary up to 1.5.8. Affected by this issue is some unknown functionality of the file /v1/evaluators/ of the ... read more
  • CVE-2007-1458 | CARE2X config_options_mascot.php root_path privileges management (EDB-3472 / XFDB-32981)
    A vulnerability, which was classified as critical, has been found in CARE2X. Affected by this issue is some unknown functionality of the file main/config_options_mascot.php. The manipulation of the argument root_path ... read more
  • CVE-2012-6069 | 3s-software CODESYS Runtime System 2.3.9.8 Listener path traversal (ID 42396 / BID-56300)
    A vulnerability was found in 3s-software CODESYS Runtime System 2.3.9.8 and classified as problematic. This issue affects some unknown processing of the component Listener. The manipulation leads to path traversal. ... read more
  • CVE-2014-0769 | Festo CECX-X-M1 Modular Controller improper authentication (XFDB-92893 / SBV-48477)
    A vulnerability was found in Festo CECX-X-M1 Modular Controller. It has been classified as problematic. This affects an unknown part. The manipulation leads to improper authentication. This vulnerability is uniquely ... read more
  • CVE-2014-0760 | Festo CECX-X-M1 Modular Controller improper authentication (XFDB-92892 / SBV-47322)
    A vulnerability was found in Festo CECX-X-M1 Modular Controller and classified as critical. Affected by this issue is some unknown functionality. The manipulation leads to improper authentication. This vulnerability is ... read more
  • CVE-2022-31631 | PHP up to 8.0.26/8.1.14/8.2.1 SQLite Driver sqlite_driver.c PDO::quote integer overflow (Bug 81740 / Nessus ID 234513)
    A vulnerability was found in PHP up to 8.0.26/8.1.14/8.2.1. It has been classified as critical. Affected is the function PDO::quote of the file ext/pdo_sqlite/sqlite_driver.c of the component SQLite Driver. The ... read more
  • CVE-2023-4104 | Mozilla VPN Client 2.14.1 on Linux vpndaemon improper authentication
    A vulnerability classified as critical was found in Mozilla VPN Client 2.14.1 on Linux. Affected by this vulnerability is an unknown functionality of the component vpndaemon. The manipulation leads to ... read more
  • CVE-2024-10273 | lunary-ai lunary up to 1.5.6 PATCH Endpoint privileges management
    A vulnerability classified as critical was found in lunary-ai lunary up to 1.5.6. This vulnerability affects unknown code of the component PATCH Endpoint. The manipulation leads to improper privilege management. ... read more
  • CVE-2024-10274 | lunary-ai lunary up to 1.5.6 Organization /users/me/org improper authorization
    A vulnerability, which was classified as critical, has been found in lunary-ai lunary up to 1.5.6. This issue affects some unknown processing of the file /users/me/org of the component Organization ... read more
  • CVE-2024-10275 | lunary-ai lunary up to 1.5.6 RBAC access control
    A vulnerability, which was classified as critical, was found in lunary-ai lunary up to 1.5.6. Affected is an unknown function of the component RBAC. The manipulation leads to improper access ... read more
  • CVE-2024-10330 | lunary-ai lunary up to 1.5.6 /v1/evaluators/ access control
    A vulnerability has been found in lunary-ai lunary up to 1.5.6 and classified as critical. Affected by this vulnerability is an unknown functionality of the file /v1/evaluators/. The manipulation leads ... read more
  • Navigating Heightened Cyber Risks from Iranian Threats
    Recent geopolitical tensions have undeniably elevated the global cybersecurity risk landscape. While we haven't yet observed a widespread surge in direct Iranian cyberattacks, the potential for increased cyber operations from ... read more
  • CVE-2025-53195 | JetEngine Plugin up to 3.7.0 on WordPress cross site scripting
    A vulnerability was found in JetEngine Plugin up to 3.7.0 on WordPress. It has been declared as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to ... read more
  • CVE-2025-53316 | wp-gdpr-cookie-consen Plugin up to 1.0.0 on WordPress cross-site request forgery
    A vulnerability was found in wp-gdpr-cookie-consen Plugin up to 1.0.0 on WordPress. It has been classified as problematic. Affected is an unknown function. The manipulation leads to cross-site request forgery. ... read more
  • Cisco Services and Support Demos at Cisco Live: A Recap!
    Look back at the Cisco Customer Experience team’s services demos from Cisco Live 2025. ... read more
  • 93.04323
    Newly Added (1)Android/Agent.HRO!tr ... read more
  • CVE-2025-53195 | JetEngine Plugin bis 3.7.0 auf WordPress Cross Site Scripting
    In JetEngine Plugin bis 3.7.0 für WordPress wurde eine problematische Schwachstelle ausgemacht. Es geht um eine nicht näher bekannte Funktion. Durch Beeinflussen mit unbekannten Daten kann eine Cross Site Scripting-Schwachstelle ... read more
  • CVE-2025-53316 | wp-gdpr-cookie-consen Plugin bis 1.0.0 auf WordPress Cross Site Request Forgery
    Es wurde eine problematische Schwachstelle in wp-gdpr-cookie-consen Plugin bis 1.0.0 für WordPress ausgemacht. Betroffen hiervon ist ein unbekannter Ablauf. Durch das Beeinflussen mit unbekannten Daten kann eine Cross Site Request ... read more
  • CVE-2025-6762 | diyhi bbs bis 6.8 HTTP Header /admin/login getUrl Host erweiterte Rechte
    Es wurde eine Schwachstelle in diyhi bbs bis 6.8 entdeckt. Sie wurde als kritisch eingestuft. Dabei betrifft es die Funktion getUrl der Datei /admin/login der Komponente HTTP Header Handler. Dank ... read more
  • CVE-2025-6768 | sfturing hosp_order bis 627f426331da8086ce8fff2017d65b1ddef384f8 HospitalServiceImpl.java findAllHosByCondition hospitalName SQL Injection (Issue 110)
    Es wurde eine kritische Schwachstelle in sfturing hosp_order bis 627f426331da8086ce8fff2017d65b1ddef384f8 entdeckt. Es geht dabei um die Funktion findAllHosByCondition der Datei HospitalServiceImpl.java. Durch Beeinflussen des Arguments hospitalName mit unbekannten Daten kann ... read more
  • CVE-2025-6765 | Intelbras InControl 2.21.60.9 HTTP PUT Request /v1/operador/ erweiterte Rechte
    Eine Schwachstelle wurde in Intelbras InControl 2.21.60.9 entdeckt. Sie wurde als kritisch eingestuft. Davon betroffen ist unbekannter Code der Datei /v1/operador/ der Komponente HTTP PUT Request Handler. Durch die Manipulation ... read more
  • CVE-2025-6761 | Kingdee Cloud-Starry-Sky Enterprise Edition 6.x/7.x/8.x/9.0 Freemarker Engine DynamicForm 4 Action.class plugin.buildMobilePopHtml Remote Code Execution (KDPSIRT-2025-00090)
    Eine kritische Schwachstelle wurde in Kingdee Cloud-Starry-Sky Enterprise Edition 6.x/7.x/8.x/9.0 ausgemacht. Dies betrifft die Funktion plugin.buildMobilePopHtml der Datei k3o2oboswebappactionDynamicForm 4 Action.class der Komponente Freemarker Engine. Dank der Manipulation mit unbekannten ... read more
  • CVE-2025-6767 | sfturing hosp_order bis 627f426331da8086ce8fff2017d65b1ddef384f8 DoctorServiceImpl.java findDoctorByCondition hospitalName SQL Injection (Issue 109)
    Eine Schwachstelle wurde in sfturing hosp_order bis 627f426331da8086ce8fff2017d65b1ddef384f8 ausgemacht. Sie wurde als kritisch eingestuft. Es geht hierbei um die Funktion findDoctorByCondition der Datei DoctorServiceImpl.java. Durch das Beeinflussen des Arguments hospitalName ... read more
  • CVE-2025-6766 | sfturing hosp_order bis 627f426331da8086ce8fff2017d65b1ddef384f8 OfficeServiceImpl.java getOfficeName officesName SQL Injection (Issue 108)
    In sfturing hosp_order bis 627f426331da8086ce8fff2017d65b1ddef384f8 wurde eine Schwachstelle ausgemacht. Sie wurde als kritisch eingestuft. Es geht um die Funktion getOfficeName der Datei OfficeServiceImpl.java. Durch Manipulieren des Arguments officesName mit unbekannten ... read more
  • CVE-2025-6522 | TrendMakers Sight Bulb Pro Service Port 16668 erweiterte Rechte (icsa-25-177-02)
    Es wurde eine Schwachstelle in TrendMakers Sight Bulb Pro ausgemacht. Sie wurde als kritisch eingestuft. Betroffen hiervon ist ein unbekannter Ablauf der Komponente Service Port 16668. Durch das Manipulieren mit ... read more
  • CVE-2025-6521 | TrendMakers Sight Bulb Pro AES Key Exchange schwache Verschlüsselung (icsa-25-177-02)
    Eine Schwachstelle wurde in TrendMakers Sight Bulb Pro gefunden. Sie wurde als problematisch eingestuft. Betroffen davon ist ein unbekannter Prozess der Komponente AES Key Exchange. Mittels Manipulieren mit unbekannten Daten ... read more
  • CVE-2025-36529 | TB-eye XRN-410SN erweiterte Rechte
    Es wurde eine Schwachstelle in TB-eye XRN-410SN, XRN-810SN, XRN-1610SN, PRN-4011N, HRX-421FN, HRX-821, HRX-1621, HRX-435FN, HRX-835, HRX-1635, XRN-425SFN, XRN-426S, XRN-820S, XRN-1620S, XRN-3210R, XRN-6410R and XRN-6410DR gefunden. Sie wurde als kritisch eingestuft. ... read more
  • CVE-2025-41418 | TB-eye XRN-410SN CGI Process Pufferüberlauf
    In TB-eye XRN-410SN, XRN-810SN, XRN-1610SN, PRN-4011N, HRX-421FN, HRX-821, HRX-1621, HRX-435FN, HRX-835, HRX-1635, XRN-425SFN, XRN-426S, XRN-820S, XRN-1620S, XRN-3210R, XRN-6410R and XRN-6410DR wurde eine Schwachstelle gefunden. Sie wurde als kritisch eingestuft. Betroffen ... read more
  • CVE-2025-6763 | Comet System H3531 1.60 Web-based Management Interface /setupA.cfg schwache Authentisierung
    In Comet System T0510, T3510, T3511, T4511, T6640, T7511, T7611, P8510, P8552 and H3531 1.60 wurde eine Schwachstelle entdeckt. Sie wurde als kritisch eingestuft. Hierbei betrifft es unbekannten Programmcode der ... read more
  • CVE-2025-6765 | Intelbras InControl 2.21.60.9 HTTP PUT Request /v1/operador/ permission
    A vulnerability, which was classified as critical, has been found in Intelbras InControl 2.21.60.9. This issue affects some unknown processing of the file /v1/operador/ of the component HTTP PUT Request ... read more
  • CVE-2025-6767 | sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8 DoctorServiceImpl.java findDoctorByCondition hospitalName sql injection (Issue 109)
    A vulnerability was found in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8. It has been rated as critical. This issue affects the function findDoctorByCondition of the file DoctorServiceImpl.java. The manipulation of the ... read more
  • CVE-2025-6766 | sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8 OfficeServiceImpl.java getOfficeName officesName sql injection (Issue 108)
    A vulnerability was found in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8. It has been declared as critical. This vulnerability affects the function getOfficeName of the file OfficeServiceImpl.java. The manipulation of the ... read more
  • CVE-2025-6522 | TrendMakers Sight Bulb Pro Service Port 16668 command injection (icsa-25-177-02)
    A vulnerability was found in TrendMakers Sight Bulb Pro. It has been classified as critical. This affects an unknown part of the component Service Port 16668. The manipulation leads to ... read more
  • CVE-2025-6521 | TrendMakers Sight Bulb Pro AES Key Exchange risky encryption (icsa-25-177-02)
    A vulnerability was found in TrendMakers Sight Bulb Pro and classified as problematic. Affected by this issue is some unknown functionality of the component AES Key Exchange. The manipulation leads ... read more
  • CVE-2025-36529 | TB-eye XRN-410SN os command injection
    A vulnerability, which was classified as critical, was found in TB-eye XRN-410SN, XRN-810SN, XRN-1610SN, PRN-4011N, HRX-421FN, HRX-821, HRX-1621, HRX-435FN, HRX-835, HRX-1635, XRN-425SFN, XRN-426S, XRN-820S, XRN-1620S, XRN-3210R, XRN-6410R and XRN-6410DR. Affected ... read more
  • CVE-2025-41418 | TB-eye XRN-410SN CGI Process buffer overflow
    A vulnerability has been found in TB-eye XRN-410SN, XRN-810SN, XRN-1610SN, PRN-4011N, HRX-421FN, HRX-821, HRX-1621, HRX-435FN, HRX-835, HRX-1635, XRN-425SFN, XRN-426S, XRN-820S, XRN-1620S, XRN-3210R, XRN-6410R and XRN-6410DR and classified as critical. Affected ... read more
  • CVE-2025-6763 | Comet System H3531 1.60 Web-based Management Interface /setupA.cfg missing authentication
    A vulnerability classified as critical was found in Comet System T0510, T3510, T3511, T4511, T6640, T7511, T7611, P8510, P8552 and H3531 1.60. This vulnerability affects unknown code of the file ... read more
  • CVE-2025-6768 | sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8 HospitalServiceImpl.java findAllHosByCondition hospitalName sql injection (Issue 110)
    A vulnerability classified as critical has been found in sfturing hosp_order up to 627f426331da8086ce8fff2017d65b1ddef384f8. Affected is the function findAllHosByCondition of the file HospitalServiceImpl.java. The manipulation of the argument hospitalName leads ... read more
  • CVE-2025-49278 | Unfoldwp Blogty Plugin up to 1.0.11 on WordPress filename control
    A vulnerability has been found in Unfoldwp Blogty Plugin up to 1.0.11 on WordPress and classified as problematic. Affected by this vulnerability is an unknown functionality. The manipulation leads to ... read more
  • CVE-2025-3821 | SourceCodester Web-based Pharmacy Product Management System 1.0 add-admin.php txtpassword/txtfullname/txtemail Cross Site Scripting
    In SourceCodester Web-based Pharmacy Product Management System 1.0 wurde eine Schwachstelle ausgemacht. Sie wurde als problematisch eingestuft. Dabei geht es um eine nicht genauer bekannte Funktion der Datei add-admin.php. Mittels ... read more
  • CVE-2025-3825 | SourceCodester Web-based Pharmacy Product Management System 1.0 add-category.php txtcategory_name Cross Site Scripting
    Eine problematische Schwachstelle wurde in SourceCodester Web-based Pharmacy Product Management System 1.0 entdeckt. Dies betrifft einen unbekannten Teil der Datei add-category.php. Durch das Beeinflussen des Arguments txtcategory_name mit unbekannten Daten ... read more
  • CVE-2025-3826 | SourceCodester Web-based Pharmacy Product Management System 1.0 add-supplier.php txtsupplier_name/txtaddress Cross Site Scripting
    Es wurde eine problematische Schwachstelle in SourceCodester Web-based Pharmacy Product Management System 1.0 gefunden. Dabei betrifft es einen unbekannter Codeteil der Datei add-supplier.php. Durch Beeinflussen des Arguments txtsupplier_name/txtaddress mit unbekannten ... read more
  • CVE-2025-3824 | SourceCodester Web-based Pharmacy Product Management System 1.0 add-product.php txtprice/txtproduct_name Cross Site Scripting
    In SourceCodester Web-based Pharmacy Product Management System 1.0 wurde eine problematische Schwachstelle entdeckt. Das betrifft eine unbekannte Funktionalität der Datei add-product.php. Durch Manipulieren des Arguments txtprice/txtproduct_name mit unbekannten Daten kann ... read more
  • CVE-2025-3823 | SourceCodester Web-based Pharmacy Product Management System 1.0 add-stock.php txttotalcost/txtproductID/txtprice/txtexpirydate Cross Site Scripting
    Es wurde eine problematische Schwachstelle in SourceCodester Web-based Pharmacy Product Management System 1.0 entdeckt. Es betrifft eine unbekannte Funktion der Datei add-stock.php. Durch das Manipulieren des Arguments txttotalcost/txtproductID/txtprice/txtexpirydate mit unbekannten ... read more
  • CVE-2025-3822 | SourceCodester Web-based Pharmacy Product Management System 1.0 changepassword.php Cross Site Scripting
    Eine Schwachstelle wurde in SourceCodester Web-based Pharmacy Product Management System 1.0 ausgemacht. Sie wurde als problematisch eingestuft. Hierbei geht es um eine nicht exakt ausgemachte Funktion der Datei changepassword.php. Mittels ... read more
  • CVE-2025-3822 | SourceCodester Web-based Pharmacy Product Management System 1.0 changepassword.php cross site scripting
    A vulnerability was found in SourceCodester Web-based Pharmacy Product Management System 1.0. It has been rated as problematic. This issue affects some unknown processing of the file changepassword.php. The manipulation ... read more
  • CVE-2025-3821 | SourceCodester Web-based Pharmacy Product Management System 1.0 add-admin.php txtpassword/txtfullname/txtemail cross site scripting
    A vulnerability was found in SourceCodester Web-based Pharmacy Product Management System 1.0. It has been declared as problematic. This vulnerability affects unknown code of the file add-admin.php. The manipulation of ... read more
  • CVE-2025-3826 | SourceCodester Web-based Pharmacy Product Management System 1.0 add-supplier.php txtsupplier_name/txtaddress cross site scripting
    A vulnerability, which was classified as problematic, was found in SourceCodester Web-based Pharmacy Product Management System 1.0. This affects an unknown part of the file add-supplier.php. The manipulation of the ... read more
  • CVE-2025-3825 | SourceCodester Web-based Pharmacy Product Management System 1.0 add-category.php txtcategory_name cross site scripting
    A vulnerability, which was classified as problematic, has been found in SourceCodester Web-based Pharmacy Product Management System 1.0. Affected by this issue is some unknown functionality of the file add-category.php. ... read more

integratus systems © 2025

KAVI IS iCOMMEX Platform v 02.25 Thursday, July 3, 2025

Login

Login to capital finance exchange Platform Services

Forgot password?
Register Now

Hello

  • Your Account Type is
  • Your Mail Id is
  • Your Username is

Security Briefing Search

PDF Library Search

Editor Picks Maps Search

Reset Password

Reset Password

You have no permission to access this content