Vulnerability index

Browse CVEs

20 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Phoniebox HIGH 7.5
CVE-2025-63951

An insecure deserialization vulnerability exists in the rss-mp3.php script of the MiczFlor RPi-Jukebox-RFID project through commit 4b2334f0ae0e87c056…

Fix: after 2025-10-07
Fix from $1,950 2025-12-18
Rpi Jukebox Rfid MEDIUM 6.1
CVE-2025-10369

A vulnerability was determined in MiczFlor RPi-Jukebox-RFID up to 2.8.0. This affects an unknown part of the file /htdocs/cardRegisterNew.php. Execut…

Fix: after 2.8.0
Fix from $1,600 2025-09-13
Rpi Jukebox Rfid MEDIUM 5.4
CVE-2025-10370

A vulnerability was identified in MiczFlor RPi-Jukebox-RFID up to 2.8.0. This vulnerability affects unknown code of the file /htdocs/userScripts.php.…

Fix: after 2.8.0
Fix from $1,600 2025-09-13
Rpi Jukebox Rfid MEDIUM 6.1
CVE-2025-10368

A vulnerability was found in MiczFlor RPi-Jukebox-RFID up to 2.8.0. Affected by this issue is some unknown functionality of the file /htdocs/manageFi…

Fix: after 2.8.0
Fix from $1,600 2025-09-13
Rpi Jukebox Rfid MEDIUM 6.1
CVE-2025-10367

A vulnerability has been found in MiczFlor RPi-Jukebox-RFID up to 2.8.0. Affected by this vulnerability is an unknown functionality of the file /htdo…

Fix: after 2.8.0
Fix from $1,600 2025-09-13
Rpi Jukebox Rfid MEDIUM 5.4
CVE-2025-10366

A flaw has been found in MiczFlor RPi-Jukebox-RFID up to 2.8.0. Affected is an unknown function of the file /htdocs/inc.setWlanIpMail.php. This manip…

Fix: after 2.8.0
Fix from $1,600 2025-09-13
Rpi Jukebox Rfid CRITICAL 9.8
CVE-2025-10328EPSS 9%

A security vulnerability has been detected in MiczFlor RPi-Jukebox-RFID up to 2.8.0. Affected by this issue is some unknown functionality of the file…

Fix: after 2.8.0
Fix from $2,300 2025-09-12
Rpi Jukebox Rfid CRITICAL 9.8
CVE-2025-10326EPSS 7%

A security flaw has been discovered in MiczFlor RPi-Jukebox-RFID up to 2.8.0. Affected is an unknown function of the file /htdocs/api/playlist/single…

Fix: after 2.8.0
Fix from $2,300 2025-09-12
Rpi Jukebox Rfid CRITICAL 9.8
CVE-2025-10327EPSS 10%

A weakness has been identified in MiczFlor RPi-Jukebox-RFID up to 2.8.0. Affected by this vulnerability is an unknown functionality of the file /htdo…

Fix: after 2.8.0
Fix from $2,300 2025-09-12
Phoniebox CRITICAL 9.8
CVE-2024-41364

RPi-Jukebox-RFID v2.7.0 was discovered to contain a remote code execution (RCE) vulnerability via htdocs\trackEdit.php

No fix yet
Fix from $2,300 2024-08-29
Phoniebox CRITICAL 9.8
CVE-2024-41366

RPi-Jukebox-RFID v2.7.0 was discovered to contain a remote code execution (RCE) vulnerability via htdocs\userScripts.php

No fix yet
Fix from $2,300 2024-08-29
Phoniebox CRITICAL 9.8
CVE-2024-41367

RPi-Jukebox-RFID v2.7.0 was discovered to contain a remote code execution (RCE) vulnerability via htdocs\api\playlist\appendFileToPlaylist.php

No fix yet
Fix from $2,300 2024-08-29
Phoniebox CRITICAL 9.8
CVE-2024-41368

RPi-Jukebox-RFID v2.7.0 was discovered to contain a remote code execution (RCE) vulnerability via htdocs\inc.setWlanIpMail.php

No fix yet
Fix from $2,300 2024-08-29
Phoniebox CRITICAL 9.8
CVE-2024-41369

RPi-Jukebox-RFID v2.7.0 was discovered to contain a remote code execution (RCE) vulnerability via htdocs\inc.setWifi.php

No fix yet
Fix from $2,300 2024-08-29
Phoniebox CRITICAL 9.8
CVE-2024-41361

RPi-Jukebox-RFID v2.7.0 was discovered to contain a remote code execution (RCE) vulnerability via htdocs\manageFilesFolders.php

No fix yet
Fix from $2,300 2024-08-29
Phoniebox CRITICAL 9.8
CVE-2024-0714

A vulnerability was found in MiczFlor RPi-Jukebox-RFID up to 2.5.0. It has been rated as critical. Affected by this issue is some unknown functionali…

Fix: after 2.5.0
Fix from $2,300 2024-01-19
Rpi Jukebox Rfid CRITICAL 9.8
CVE-2022-36749

RPi-Jukebox-RFID v2.3.0 was discovered to contain a command injection vulnerability via the component /htdocs/utils/Files.php. This vulnerability is …

Patch available
Fix from $2,300 2022-08-30
Newscoop HIGH 7.8
CVE-2020-11807

Because of Unrestricted Upload of a File with a Dangerous Type, Sourcefabric Newscoop 4.4.7 allows an authenticated user to execute arbitrary PHP cod…

Patch available
Fix from $1,950 2020-05-19
Newscoop HIGH 7.5
CVE-2012-1934

SQL injection vulnerability in admin/country/edit.php in Newscoop before 3.5.5 and 4.x before 4 RC4 allows remote attackers to execute arbitrary SQL …

No fix yet
Fix from $1,950 2012-08-27
Newscoop MEDIUM 6.8
CVE-2012-1933EPSS 6%

Multiple PHP remote file inclusion vulnerabilities in Newscoop 3.5.x before 3.5.5 and 4 before RC4, when register_globals is enabled, allow remote at…

No fix yet
Fix from $1,600 2012-08-27