A vulnerability was found in Devs Palace ERP Online up to 4.0.0. It has been classified as problematic. This impacts an unknown function of the file /inventory/item-save. This manipulation causes cross site scripting.
This vulnerability is tracked as CVE-2026-8221. The attack is possible to be carried out remotely. Moreover, an exploit is present.
The vendor was contacted early about this disclosure but did not respond in any way.
A vulnerability was found in Linux Kernel up to 6.12.77/6.18.18/6.19.8. It has been declared as critical. Affected by this issue is the function nfsd_nl_listener_set_doit. Executing a manipulation can lead to improper update of reference count.
This vulnerability is tracked as CVE-2026-43394. The attack is only possible within the local network. No exploit exists.
It is recommended to upgrade the affected component.
A vulnerability was found in Linux Kernel up to 6.19.8. It has been rated as critical. Affected by this issue is the function rcu_tasks_wait_gp. Performing a manipulation results in infinite loop.
This vulnerability is reported as CVE-2026-43385. The attacker must have access to the local network to execute the attack. No exploit exists.
Upgrading the affected component is advised.
A vulnerability categorized as critical has been discovered in Linux Kernel up to 6.6.129/6.12.77/6.18.18/6.19.8. Impacted is the function ufshcd_rtc_work. The manipulation results in denial of service.
This vulnerability is reported as CVE-2026-43415. The attacker must have access to the local network to execute the attack. No exploit exists.
It is advisable to upgrade the affected component.
A vulnerability, which was classified as problematic, was found in IBM WebSphere Portal up to 8.0.0.1 CF10. This issue affects some unknown processing of the component Render Engine. Executing a manipulation can lead to cross site scripting.
This vulnerability is tracked as CVE-2014-0828. The attack can be launched remotely. Moreover, an exploit is present.
You should upgrade the affected component.
A vulnerability has been found in IBM WebSphere Portal up to 8.0.0.1 CF10 and classified as problematic. Impacted is an unknown function of the component WCM UI. The manipulation leads to cross site scripting.
This vulnerability is listed as CVE-2014-0901. The attack may be initiated remotely. In addition, an exploit is available.
The affected component should be upgraded.
A vulnerability labeled as problematic has been found in Cisco Unity Connection up to 8.6(2)SU3. The impacted element is an unknown function of the component Web Inbox. Executing a manipulation can lead to cross site scripting.
This vulnerability appears as CVE-2014-2125. The attack may be performed from remote. In addition, an exploit is available.
The affected component should be upgraded.
A vulnerability classified as critical was found in Cisco Web Security Appliance 7.1.0/7.5/7.7. Affected by this vulnerability is an unknown functionality. Such manipulation as part of URL leads to improper input validation.
This vulnerability is uniquely identified as CVE-2014-2137. The attack can be launched remotely. No exploit exists.
Upgrading the affected component is advised.
A vulnerability, which was classified as problematic, has been found in Cisco Security Manager 4.2. Affected by this issue is some unknown functionality of the component HTTP Header Handler. Performing a manipulation results in improper input validation.
This vulnerability was named CVE-2014-2138. The attack may be initiated remotely. There is no available exploit.
It is advisable to upgrade the affected component.
A vulnerability was found in ZyXEL P660. It has been rated as problematic. This affects an unknown part of the component SYN Packet Handler. This manipulation causes improper input validation.
This vulnerability is tracked as CVE-2013-3588. The attack is possible to be carried out remotely. Moreover, an exploit is present.
It is advisable to implement restrictive firewalling.
A vulnerability categorized as problematic has been discovered in Pearson eSIS Enterprise Student Information System. This affects an unknown function. Executing a manipulation can lead to cross site scripting.
The identification of this vulnerability is CVE-2014-1942. The attack may be launched remotely. There is no exploit available.
A vulnerability identified as problematic has been detected in Ganglia Web 3.5.7. This impacts an unknown function of the file views_view.php. The manipulation of the argument view_name leads to cross site scripting.
This vulnerability is referenced as CVE-2013-1770. Remote exploitation of the attack is possible. No exploit is available.
A vulnerability labeled as critical has been found in vTiger CRM up to 5.4.0. Affected is an unknown function. The manipulation of the argument emailaddress results in sql injection.
This vulnerability is identified as CVE-2013-3213. The attack can be executed remotely. Additionally, an exploit exists.
A vulnerability marked as problematic has been reported in Jeff Kreitner hms-testimonials up to 2.0.10. Affected by this vulnerability is an unknown functionality of the component Advanced Settings. This manipulation causes cross-site request forgery.
This vulnerability is tracked as CVE-2013-4240. The attack is possible to be carried out remotely. Moreover, an exploit is present.
It is suggested to upgrade the affected component.