NVD Vulnerabilities

Severity Distribution

Publication Trend

Vulnerability Database

CVE ID Description Published Base Score Attack Vector Severity Actions
CVE-2025-41396 A path traversal issue exists in file uploading feature of multiple versions of PowerCMS. Arbitrary files may be overwritten by a product user. 2025-07-31 5.4 NETWORK MEDIUM NVD
CVE-2025-41391 Stored cross-site scripting vulnerability exists in multiple versions of PowerCMS. If a product user accesses a malicious page, an arbitrary script ma... 2025-07-31 5.4 NETWORK MEDIUM NVD
CVE-2025-36563 Reflected cross-site scripting vulnerability exists in multiple versions of PowerCMS. If a product administrator accesses a crafted URL, an arbitrary ... 2025-07-31 6.1 NETWORK MEDIUM NVD
CVE-2025-8371 A vulnerability has been found in code-projects Exam Form Submission 1.0 and classified as critical. Affected by this vulnerability is an unknown func... 2025-07-31 7.3 NETWORK HIGH NVD
CVE-2025-8370 A vulnerability, which was classified as problematic, was found in Portabilis i-Educar 2.9. Affected is an unknown function of the file /intranet/educ... 2025-07-31 4.3 NETWORK MEDIUM NVD
CVE-2025-8369 A vulnerability, which was classified as problematic, has been found in Portabilis i-Educar 2.9. This issue affects some unknown processing of the fil... 2025-07-31 4.3 NETWORK MEDIUM NVD
CVE-2025-8368 A vulnerability classified as problematic was found in Portabilis i-Educar 2.9. This vulnerability affects unknown code of the file /intranet/pesquisa... 2025-07-31 4.3 NETWORK MEDIUM NVD
CVE-2025-53558 ZXHN-F660T and ZXHN-F660A provided by ZTE Japan K.K. use a common credential for all installations. With the knowledge of the credential, an attacker ... 2025-07-31 8.7 ADJACENT HIGH NVD
CVE-2025-8367 A vulnerability classified as problematic has been found in Portabilis i-Educar 2.9. This affects an unknown part of the file /intranet/funcionario_vi... 2025-07-31 4.3 NETWORK MEDIUM NVD
CVE-2025-8366 A vulnerability was found in Portabilis i-Educar 2.9. It has been rated as problematic. Affected by this issue is some unknown functionality of the fi... 2025-07-31 4.3 NETWORK MEDIUM NVD
CVE-2025-7847 The AI Engine plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the rest_simpleFileUpload() function... 2025-07-31 8.8 NETWORK HIGH NVD
CVE-2025-5720 The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘author’ parameter in all versions up t... 2025-07-31 6.4 NETWORK MEDIUM NVD
CVE-2025-8365 A vulnerability was found in Portabilis i-Educar 2.10. It has been declared as problematic. Affected by this vulnerability is an unknown functionality... 2025-07-31 3.5 NETWORK LOW NVD
CVE-2025-8348 A vulnerability has been found in Kehua Charging Pile Cloud Platform 1.0 and classified as critical. This vulnerability affects unknown code of the fi... 2025-07-31 7.3 NETWORK HIGH NVD
CVE-2025-8347 A vulnerability, which was classified as critical, was found in Kehua Charging Pile Cloud Platform 1.0. This affects an unknown part of the file /sys/... 2025-07-31 6.3 NETWORK MEDIUM NVD