integratus systems

Exchange Platform Services

 
  • Join Now-Sign Up
  • Log In
Category : IS Partners

Platform – Version 2.0 Release

  Intelligence Platform – Data Services Version 2.0 Released November 17 2017   About Platform   Platform develops a broader […]

  • Blog
  • Editor Paper Extracts
  • Editor Picks Articles
  • Editor Picks Maps
  • Editor Picks Reports
  • IS Competitive Intelligence Briefings
  • IS Intelligence Work Group
  • IS Partners
  • IS Projects Work Group
  • IS Reports
  • IS Security Work Group
  • IS Working Group Briefings
  • Uncategorized

IS Security Alerts Advisories

  • CVE-2025-37162 | HPE Aruba Networking 100 Cellular Bridge bis 10.7.1.1 Command Line Interface erweiterte Rechte
    Es wurde eine Schwachstelle in HPE Aruba Networking 100 Cellular Bridge bis 10.7.1.1 ausgemacht. Sie wurde als kritisch eingestuft. Davon betroffen ist unbekannter Code der Komponente Command Line Interface. Mittels ... read more
  • CVE-2025-37161 | HPE Aruba Networking 100 Cellular Bridge bis 10.7.1.1 Web-based Management Interface Denial of Service
    Eine Schwachstelle wurde in HPE Aruba Networking 100 Cellular Bridge bis 10.7.1.1 gefunden. Sie wurde als problematisch eingestuft. Hierbei betrifft es unbekannten Programmcode der Komponente Web-based Management Interface. Durch Manipulation ... read more
  • CVE-2025-12710 | Pet-Manager Plugin up to 3.6.1 on WordPress Shortcode kwm-petfinder cross site scripting
    A vulnerability, which was classified as problematic, has been found in Pet-Manager Plugin up to 3.6.1 on WordPress. Affected by this vulnerability is the function kwm-petfinder of the component Shortcode ... read more
  • CVE-2025-63226 | Sencore SMP100 SMP Media Platform 4.2.160/60.1.4/60.1.29 /UserManagement.html user session
    A vulnerability, which was classified as very critical, has been found in Sencore SMP100 SMP Media Platform 4.2.160/60.1.4/60.1.29. This affects an unknown function of the file /UserManagement.html. The manipulation leads ... read more
  • CVE-2025-6251 | Royal Elementor Addons and Templates Plugin up to 1.7.1036 on WordPress item['field_id'] cross site scripting
    A vulnerability marked as problematic has been reported in Royal Elementor Addons and Templates Plugin up to 1.7.1036 on WordPress. The impacted element is an unknown function. Performing manipulation of ... read more
  • CVE-2025-12842 | Booking Plugin up to 1.4.7 on WordPress Notifications tslot_appt_email Remote Code Execution
    A vulnerability has been found in Booking Plugin up to 1.4.7 on WordPress and classified as critical. Affected is the function tslot_appt_email of the component Notifications Handler. This manipulation causes ... read more
  • CVE-2025-12770 | New User Approve Plugin up to 3.0.9 on WordPress REST API Endpoint api_key information disclosure
    A vulnerability was found in New User Approve Plugin up to 3.0.9 on WordPress and classified as problematic. Affected by this vulnerability is an unknown functionality of the component REST ... read more
  • CVE-2025-37162 | HPE Aruba Networking 100 Cellular Bridge up to 10.7.1.1 Command Line Interface command injection
    A vulnerability was found in HPE Aruba Networking 100 Cellular Bridge up to 10.7.1.1 and classified as critical. This vulnerability affects unknown code of the component Command Line Interface. Executing ... read more
  • CVE-2025-37161 | HPE Aruba Networking 100 Cellular Bridge up to 10.7.1.1 Web-based Management Interface denial of service
    A vulnerability has been found in HPE Aruba Networking 100 Cellular Bridge up to 10.7.1.1 and classified as problematic. This affects an unknown part of the component Web-based Management Interface. ... read more
  • CVE-2025-12535 | SureForms Plugin up to 1.13.1 on WordPress REST API Endpoint wp_rest cross-site request forgery
    A vulnerability, which was classified as problematic, was found in SureForms Plugin up to 1.13.1 on WordPress. Affected by this issue is the function wp_rest of the component REST API ... read more
  • CVE-2025-12359 | Responsive Lightbox & Gallery Plugin up to 2.5.3 on WordPress get_image_size_by_url server-side request forgery
    A vulnerability classified as critical was found in Responsive Lightbox & Gallery Plugin up to 2.5.3 on WordPress. Affected is the function get_image_size_by_url. The manipulation results in server-side request forgery. ... read more
  • CVE-2025-13054 | User Profile Builder Plugin up to 3.14.8 on WordPress Shortcode cross site scripting
    A vulnerability classified as problematic has been found in User Profile Builder Plugin up to 3.14.8 on WordPress. This impacts an unknown function of the component Shortcode Handler. The manipulation ... read more
  • CVE-2025-12426 | Quiz Maker Plugin up to 6.7.0.80 on WordPress ays_quiz_check_answer information disclosure
    A vulnerability described as problematic has been identified in Quiz Maker Plugin up to 6.7.0.80 on WordPress. This affects the function ays_quiz_check_answer. Executing manipulation can lead to information disclosure. This ... read more
  • CVE-2025-13145 | WP Import Plugin up to 7.33.1 on WordPress CSV Import SingleImportExport.php import_single_post_as_csv deserialization
    A vulnerability, which was classified as problematic, was found in WP Import Plugin up to 7.33.1 on WordPress. This impacts the function import_single_post_as_csv of the file SingleImportExport.php of the component ... read more
  • CVE-2025-13085 | SiteSEO Plugin up to 1.3.2 on WordPress AJAX resolve_variables resource injection
    A vulnerability identified as problematic has been detected in SiteSEO Plugin up to 1.3.2 on WordPress. Impacted is the function resolve_variables of the component AJAX Handler. This manipulation causes improper ... read more
  • CVE-2025-12646 | Community Events Plugin up to 1.5.4 on WordPress dayofyear sql injection
    A vulnerability categorized as critical has been discovered in Community Events Plugin up to 1.5.4 on WordPress. This issue affects some unknown processing. The manipulation of the argument dayofyear results ... read more
  • CVE-2025-12814 | SiteSEO Plugin up to 1.3.2 on WordPress Setting siteseo_reset_settings
    A vulnerability was found in SiteSEO Plugin up to 1.3.2 on WordPress. It has been rated as critical. This vulnerability affects the function siteseo_reset_settings of the component Setting Handler. The ... read more
  • CVE-2025-12174 | Directorist Plugin up to 8.5.2 on WordPress authorization
    A vulnerability was found in Directorist Plugin up to 8.5.2 on WordPress. It has been declared as critical. This affects an unknown part. Executing manipulation can lead to missing authorization. ... read more
  • CVE-2025-12822 | WP Login and Register using JWT Plugin up to 3.0.0 on WordPress API Key mo_jwt_generate_new_api_key authorization
    A vulnerability was found in WP Login and Register using JWT Plugin up to 3.0.0 on WordPress. It has been classified as problematic. Affected by this issue is the function ... read more
  • CVE-2025-12878 | FunnelKit Plugin up to 3.13.1.2 on WordPress Shortcode wfop_phone cross site scripting
    A vulnerability labeled as problematic has been found in FunnelKit Plugin up to 3.13.1.2 on WordPress. The affected element is the function wfop_phone of the component Shortcode Handler. Such manipulation ... read more
  • Best AirTag wallets 2025: I tested the best options to track your cards and cash
    Never lose your cards and cash with Apple AirTag tracking wallets or alternatives from brands like Ridge, Nomad, and Chipolo. ... read more
  • The top 10 robot vacuums and mowers ZDNET readers bought in 2025
    I review dozens of robot vacuums and at least a handful of robot mowers each year. Read on to see which were the most popular among our readers in 2025. ... read more
  • New in Snort3: Enhanced rule grouping for greater flexibility and control
    Today, Cisco Talos is introducing new capabilities for Snort3 users within Cisco Secure Firewall. These enhancements are designed to give you greater flexibility in how you manage, organize, and prioritize ... read more
  • CVE-2025-41736 | Metz Connect Energy-Controlling EWIO2-M fino a 2.1.x escalationi di privilegi (VDE-2025-097)
    Un punto di debole di livello critico è stato rilevato in Metz Connect Energy-Controlling EWIO2-M, Energy-Controlling EWIO2-M-BM and Ethernet-IO EWIO2-BM fino a 2.1.x. É interessato una funzione sconosciuta. Per causa ... read more
  • CVE-2025-41346 | Informática del Este WinPlus 24.11.27 escalationi di privilegi
    Un punto di criticita di livello critico è stato rilevato in Informática del Este WinPlus 24.11.27. Riguarda una funzione sconosciuta. Mediante la manipolazione di un input sconosciuto conseguenza di una ... read more
  • CVE-2025-13196 | Element Pack Addons for Elementor Plugin up to 8.3.4 on WordPress Street Map Widget render cross site scripting
    A vulnerability was found in Element Pack Addons for Elementor Plugin up to 8.3.4 on WordPress and classified as problematic. The affected element is the function render of the component ... read more
  • CVE-2025-40547 | SolarWinds Serv-U escape output (EUVD-2025-197930)
    A vulnerability was found in SolarWinds Serv-U. It has been classified as critical. Affected is an unknown function. The manipulation leads to escaping of output. This vulnerability is documented as ... read more
  • CVE-2025-12457 | Enable SVG, WebP, and ICO Upload Plugin up to 1.1.2 on WordPress SVG File cross site scripting
    A vulnerability labeled as problematic has been found in Enable SVG, WebP, and ICO Upload Plugin up to 1.1.2 on WordPress. This vulnerability affects unknown code of the component SVG ... read more
  • CVE-2025-12481 | WP Duplicate Page Plugin up to 1.7 on WordPress saveSettings authorization
    A vulnerability has been found in WP Duplicate Page Plugin up to 1.7 on WordPress and classified as problematic. Impacted is the function saveSettings. This manipulation causes missing authorization. This ... read more
  • CVE-2025-12639 | wModes Plugin up to 1.2.2 on WordPress AJAX Endpoint authorization
    A vulnerability has been found in wModes Plugin up to 1.2.2 on WordPress and classified as problematic. This issue affects some unknown processing of the component AJAX Endpoint. The manipulation ... read more
  • CVE-2025-12392 | Cryptocurrency Payment Gateway for WooCommerce Plugin Status Update handle_optin_optout authorization
    A vulnerability was found in Cryptocurrency Payment Gateway for WooCommerce Plugin up to 2.0.22 on WordPress. It has been declared as problematic. The impacted element is the function handle_optin_optout of ... read more
  • CVE-2025-11734 | AIOSEO Broken Link Checker Plugin up to 1.2.5 on WordPress REST API Endpoint aioseo_blc_broken_links_page authorization
    A vulnerability was found in AIOSEO Broken Link Checker Plugin up to 1.2.5 on WordPress and classified as problematic. This affects the function aioseo_blc_broken_links_page of the component REST API Endpoint. ... read more
  • CVE-2025-13133 | Simple User Import Export Plugin up to 1.1.7 on WordPress Import/Export csv injection
    A vulnerability, which was classified as critical, was found in Simple User Import Export Plugin up to 1.1.7 on WordPress. The affected element is an unknown function of the component ... read more
  • CVE-2025-12079 | WP Twitter Auto Publish Plugin up to 1.7.3 on WordPress cross site scripting
    A vulnerability described as problematic has been identified in WP Twitter Auto Publish Plugin up to 1.7.3 on WordPress. Impacted is an unknown function. Executing manipulation can lead to cross ... read more
  • CVE-2025-12691 | Photonic Gallery & Lightbox for Flickr, SmugMug & Others Plugin cross site scripting
    A vulnerability marked as problematic has been reported in Photonic Gallery & Lightbox for Flickr, SmugMug & Others Plugin up to 3.21 on WordPress. This issue affects some unknown processing. ... read more
  • CVE-2025-12088 | Meta Display Block Plugin up to 1.0.0 on WordPress cross site scripting
    A vulnerability has been found in Meta Display Block Plugin up to 1.0.0 on WordPress and classified as problematic. Affected is an unknown function. Performing manipulation results in cross site ... read more
  • CVE-2025-13069 | Enable SVG, WebP, and ICO Upload Plugin up to 1.1.2 on WordPress ICO File unrestricted upload
    A vulnerability, which was classified as critical, has been found in Enable SVG, WebP, and ICO Upload Plugin up to 1.1.2 on WordPress. This vulnerability affects unknown code of the ... read more
  • CVE-2025-12955 | delabon Live Sales Notification for Woocommerce Plugin up to 2.3.39 on WordPress Customer Information getOrders authorization
    A vulnerability, which was classified as problematic, was found in delabon Live Sales Notification for Woocommerce Plugin up to 2.3.39 on WordPress. This issue affects the function getOrders of the ... read more
  • CVE-2025-12391 | Restrictions for BuddyPress Plugin up to 1.5.2 on WordPress Status Update handle_optin_optout authorization
    A vulnerability was found in Restrictions for BuddyPress Plugin up to 1.5.2 on WordPress. It has been rated as problematic. Affected by this vulnerability is the function handle_optin_optout of the ... read more
  • CVE-2023-24998 | Oracle Banking Supply Chain Finance 14.7.0.2.0/14.7.1.0.0 Security denial of service (Nessus ID 214593)
    A vulnerability categorized as critical has been discovered in Oracle Banking Supply Chain Finance 14.7.0.2.0/14.7.1.0.0. This affects an unknown function of the component Security. Such manipulation leads to denial of ... read more
  • CVE-2025-12469 | FunnelKit Automations Plugin up to 3.6.4.1 on WordPress AJAX check_nonce authorization (EUVD-2025-37778)
    A vulnerability classified as critical was found in FunnelKit Automations Plugin up to 3.6.4.1 on WordPress. Impacted is the function check_nonce of the component AJAX Handler. Such manipulation leads to ... read more
  • CVE-2025-11917 | etruel WPeMatico RSS Feed Fetcher Plugin up to 2.8.11 on WordPress wpematico_test_feed server-side request forgery (EUVD-2025-37792)
    A vulnerability identified as critical has been detected in etruel WPeMatico RSS Feed Fetcher Plugin up to 2.8.11 on WordPress. Affected by this vulnerability is the function wpematico_test_feed. Performing manipulation ... read more
  • CVE-2023-24998 | Oracle Business Intelligence Enterprise Edition 12.2.1.4.0 Analytics Web Answers denial of service (Nessus ID 214593)
    A vulnerability, which was classified as critical, was found in Oracle Business Intelligence Enterprise Edition 12.2.1.4.0. This affects an unknown part of the component Analytics Web Answers. The manipulation results ... read more
  • CVE-2023-24998 | Oracle Financial Services Trade-Based Anti Money Laundering Enterprise Edition Platform denial of service (Nessus ID 214593)
    A vulnerability was found in Oracle Financial Services Trade-Based Anti Money Laundering Enterprise Edition 8.0.8 and classified as critical. Affected is an unknown function of the component Platform. Such manipulation ... read more
  • CVE-2023-24998 | Oracle Data Integrator 12.2.1.4.0 Runtime Java agent for ODI denial of service (Nessus ID 214593)
    A vulnerability marked as critical has been reported in Oracle Data Integrator 12.2.1.4.0. This affects an unknown part of the component Runtime Java agent for ODI. Performing manipulation results in ... read more
  • CVE-2023-24998 | Oracle MySQL Enterprise Monitor up to 8.0.34 Monitoring denial of service (Nessus ID 214593)
    A vulnerability labeled as critical has been found in Oracle MySQL Enterprise Monitor up to 8.0.34. This affects an unknown function of the component Monitoring. Such manipulation leads to denial ... read more
  • CVE-2025-23153 | Linux Kernel up to 6.14.2 crc_t10dif_arch privilege escalation (EUVD-2025-13083 / Nessus ID 240657)
    A vulnerability classified as problematic was found in Linux Kernel up to 6.14.2. This affects the function crc_t10dif_arch. Executing manipulation can lead to privilege escalation. This vulnerability is registered as ... read more
  • CVE-2025-23154 | Linux Kernel up to 6.12.23/6.13.11/6.14.2 io_req_post_cqe state issue (EUVD-2025-13089 / Nessus ID 240657)
    A vulnerability was found in Linux Kernel up to 6.12.23/6.13.11/6.14.2. It has been rated as problematic. Affected by this vulnerability is the function io_req_post_cqe. The manipulation leads to state issue. ... read more
  • CVE-2023-24998 | Oracle Financial Services Analytical Applications Infrastructure Platform denial of service (Nessus ID 214593)
    A vulnerability classified as critical was found in Oracle Financial Services Analytical Applications Infrastructure 8.0.7/8.0.8/8.1.0/8.1.1/8.1.2. The affected element is an unknown function of the component Platform. Executing manipulation can lead ... read more
  • CVE-2023-24998 | Oracle Retail Bulk Data Integration 16.0.3/19.0.1 BDI Job Scheduler denial of service (Nessus ID 214593)
    A vulnerability classified as critical has been found in Oracle Retail Bulk Data Integration 16.0.3/19.0.1. The affected element is an unknown function of the component BDI Job Scheduler. Performing manipulation ... read more

integratus systems © 2025

KAVI IS iCOMMEX Platform v 02.25 Sunday, November 23, 2025

Login

Login to integratus systems Exchange Platform Services

Forgot password?
Register Now

Hello

  • Your Account Type is
  • Your Mail Id is
  • Your Username is

Security Briefing Search

PDF Library Search

IS Partners Search

Reset Password

Reset Password

You have no permission to access this content