Current Conditions
São Paulo
céu limpo

21 ℃
43%
Temperatura
Umidade
Fonte: OpenWeatherMap. - 17:00:02
  1. [USD] USD 116,478.32
  1. [BRL] BRL 647,153.52 [USD] USD 116,478.32 [GBP] GBP 87,000.68 [EUR] EUR 100,403.26
    Price index provided by blockchain.info.
  2. Bitcoin Core version 28.2 is now available for download. See the release notes for more information about the bug fixes in this release.
    If you have any questions, please stop by the #bitcoin IRC chatroom (IRC, web) and we’ll do our best to help you.

[CVE-2024-48013] [Modified: 14-07-2025] [Analyzed] [V3.1 S8.8:HIGH] Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an Execution with Unnecessary Privileges vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Elevation of privileges.

[CVE-2024-48830] [Modified: 14-07-2025] [Analyzed] [V3.1 S7.8:HIGH] Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Command execution.

[CVE-2025-22474] [Modified: 14-07-2025] [Analyzed] [V3.1 S6.8:MEDIUM] Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) a Server-Side Request Forgery (SSRF) vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Server-side request forgery.

[CVE-2025-29431] [Modified: 02-04-2025] [Analyzed] [V3.1 S3.2:LOW] Code-projects Online Class and Exam Scheduling System V1.0 is vulnerable to Cross Site Scripting (XSS) in /pages/department.php via the id, code, and name parameters.

[CVE-2025-2385] [Modified: 07-04-2025] [Analyzed] [V3.1 S7.3:HIGH] A vulnerability has been found in code-projects Modern Bag 1.0 and classified as critical. This vulnerability affects unknown code of the file /login.php. The manipulation of the argument userEmail/userPassword leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used.

[CVE-2025-2386] [Modified: 27-03-2025] [Analyzed] [V3.1 S7.3:HIGH] A vulnerability was found in PHPGurukul Local Services Search Engine Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /serviceman-search.php. The manipulation of the argument location leads to sql injection. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used.

[CVE-2024-48015] [Modified: 14-07-2025] [Analyzed] [V3.1 S6.7:MEDIUM] Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. A high privileged attacker with local access could potentially exploit this vulnerability, leading to Command execution.

[CVE-2024-48017] [Modified: 14-07-2025] [Analyzed] [V3.1 S6.5:MEDIUM] Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. A high privileged attacker with remote access could potentially exploit this vulnerability, leading to Code execution.

[CVE-2024-48828] [Modified: 14-07-2025] [Analyzed] [V3.1 S5.5:MEDIUM] Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an Improper Privilege Management vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Unauthorized access.

[CVE-2024-48831] [Modified: 14-07-2025] [Analyzed] [V3.1 S8.4:HIGH] Dell SmartFabric OS10 Software, version(s) 10.5.6.x, contain(s) a Use of Hard-coded Password vulnerability. An unauthenticated attacker with local access could potentially exploit this vulnerability, leading to Unauthorized access.

[CVE-2024-49559] [Modified: 30-04-2025] [Analyzed] [V3.1 S8.8:HIGH] Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an Use of Default Password vulnerability. A low privileged attacker with remote access could potentially exploit this vulnerability, leading to Unauthorized access.

[CVE-2024-49561] [Modified: 08-05-2025] [Analyzed] [V3.1 S7.8:HIGH] Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an Incorrect Privilege Assignment vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Elevation of privileges.

[CVE-2025-22472] [Modified: 14-07-2025] [Analyzed] [V3.1 S7.8:HIGH] Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to execution of commands with elevated privileges.

[CVE-2025-22473] [Modified: 14-07-2025] [Analyzed] [V3.1 S7.8:HIGH] Dell SmartFabric OS10 Software, version(s) 10.5.4.x, 10.5.5.x, 10.5.6.x, 10.6.0.x, contain(s) an Improper Neutralization of Special Elements used in a Command ('Command Injection') vulnerability. A low privileged attacker with local access could potentially exploit this vulnerability, leading to Code execution.

[CVE-2025-29429] [Modified: 25-03-2025] [Analyzed] [V3.1 S6.1:MEDIUM] Code-projects Online Class and Exam Scheduling System V1.0 is vulnerable to Cross Site Scripting (XSS) in /pages/program.php via the id, code, and name parameters.

[CVE-2025-29430] [Modified: 25-03-2025] [Analyzed] [V3.1 S4.1:MEDIUM] Code-projects Online Class and Exam Scheduling System V1.0 is vulnerable to Cross Site Scripting (XSS) in /pages/room.php via the id and rome parameters.

[CVE-2025-2387] [Modified: 28-05-2025] [Analyzed] [V3.1 S7.3:HIGH] A vulnerability was found in SourceCodester Online Food Ordering System 2.0. It has been classified as critical. Affected is an unknown function of the file /admin/ajax.php?action=add_to_cart. The manipulation of the argument pid leads to sql injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used.

[CVE-2025-29425] [Modified: 25-03-2025] [Analyzed] [V3.1 S5.5:MEDIUM] Code-projects Online Class and Exam Scheduling System 1.0 is vulnerable to SQL Injection in exam_save.php via the parameters member and first.

[CVE-2025-29427] [Modified: 28-03-2025] [Analyzed] [V3.1 S5.9:MEDIUM] Code-projects Online Class and Exam Scheduling System V1.0 is vulnerable to Cross Site Scripting (XSS) in profile.php via the member_first and member_last parameters.

[CVE-2025-2389] [Modified: 28-05-2025] [Analyzed] [V3.1 S4.7:MEDIUM] A vulnerability was found in code-projects Blood Bank Management System 1.0. It has been rated as critical. Affected by this issue is some unknown functionality of the file /admin/add_city.php. The manipulation leads to sql injection. The attack may be launched remotely. The exploit has been disclosed to the public and may be used.