A vulnerability was found in Samsung Smart Phone and classified as critical. This impacts an unknown function of the component ActivityManagerService. Such manipulation leads to active debug code.
This vulnerability is referenced as CVE-2023-21496. The attack can be executed directly on the physical device. No exploit is available.
It is suggested to upgrade the affected component.
A vulnerability was found in Samsung Smart Phone. It has been declared as critical. This vulnerability affects unknown code of the component mPOS TUI Trustlet. The manipulation results in format string.
This vulnerability is identified as CVE-2023-21497. The attack is only possible with local access. There is not any exploit available.
It is recommended to upgrade the affected component.
A vulnerability marked as critical has been reported in Samsung Smart Phone. This affects an unknown part of the file mm_Authentication.c of the component Shannon Baseband. This manipulation causes memory corruption.
This vulnerability appears as CVE-2023-21494. The attack may be initiated remotely. There is no available exploit.
It is suggested to upgrade the affected component.
A vulnerability, which was classified as critical, has been found in Samsung Smart Phone. This impacts an unknown function of the component Knox Enrollment Service. This manipulation causes improper access controls.
This vulnerability is handled as CVE-2023-21495. It is possible to launch the attack on the local host. There is not any exploit available.
It is advisable to upgrade the affected component.
A vulnerability described as critical has been identified in Tourism Management System 2.0. Affected by this vulnerability is an unknown functionality. Such manipulation leads to unrestricted upload.
This vulnerability is referenced as CVE-2025-57642. It is possible to launch the attack remotely. Furthermore, an exploit is available.
A vulnerability was found in ELEXtensions ELEX WooCommerce Google Shopping Plugin up to 1.4.3 on WordPress. It has been rated as critical. Affected is an unknown function. Performing manipulation of the argument file_to_delete results in sql injection.
This vulnerability is cataloged as CVE-2025-10046. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
A vulnerability, which was classified as critical, has been found in dotCMS Cloud Services. This vulnerability affects unknown code of the file /api/v1/contenttype. The manipulation of the argument sites leads to sql injection.
This vulnerability is traded as CVE-2025-8311. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is advisable to upgrade the affected component.
A vulnerability described as problematic has been identified in Concrete CMS CMS up to 9.4.2 on Members. This vulnerability affects unknown code of the component Members Dashboard Page. Executing manipulation can lead to information disclosure.
The identification of this vulnerability is CVE-2025-8573. The attack may be launched remotely. Furthermore, there is an exploit available.
Upgrading the affected component is recommended.
A vulnerability labeled as critical has been found in Mbed TLS up to 3.6.3. This impacts the function mbedtls_x509_string_to_names. The manipulation of the argument head results in use after free.
This vulnerability is known as CVE-2025-47917. It is possible to launch the attack remotely. Furthermore, an exploit is available.
The affected component should be upgraded.