Vulnerabilities > Medium

DATE CVE VULNERABILITY TITLE RISK
2025-03-31 CVE-2025-2983 A vulnerability has been found in Legrand SMS PowerView 1.x and classified as critical.
low complexity
CWE-77
5.5
2025-03-31 CVE-2025-2978 A vulnerability was found in WCMS 11.
network
low complexity
CWE-434
6.3
2025-03-30 CVE-2025-2961 A vulnerability classified as problematic was found in opensolon up to 3.1.0.
network
low complexity
CWE-24
4.3
2025-03-30 CVE-2025-2958 A vulnerability was found in TRENDnet TEW-818DRU 1.0.14.6.
low complexity
CWE-404
6.5
2025-03-30 CVE-2025-2957 A vulnerability was found in TRENDnet TEW-411BRP+ 2.07.
low complexity
CWE-404
6.5
2025-03-30 CVE-2025-2955 A vulnerability has been found in TOTOLINK A3000RU up to 5.9c.5185 and classified as problematic.
network
low complexity
CWE-266
5.3
2025-03-30 CVE-2025-2956 A vulnerability was found in TRENDnet TI-G102i 1.0.7.S0_ /1.0.8.S0_ and classified as problematic.
low complexity
CWE-404
6.5
2025-03-29 CVE-2024-11180 The ElementsKit Elementor addons plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the Countdown Timer Widget ekit_countdown_timer_title parameter in all versions up to, and including, 3.4.7 due to insufficient input sanitization and output escaping.
network
low complexity
CWE-79
6.4
2025-03-29 CVE-2024-13557 The Shortcodes by United Themes plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 5.1.6.
network
low complexity
CWE-94
6.5
2025-03-29 CVE-2025-2840 The DAP to Autoresponders Email Syncing plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.0 through the publicly accessible phpinfo.php script.
network
low complexity
CWE-200
5.3