General-Purpose System Vulnerabilities
Vulnerabilities related to traditional IT systems, servers, and desktop applications.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2025-50003 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability i… | Critical (9.8) | 2026-01-22 | General-Purpose |
| CVE-2025-50002 | Unrestricted Upload of File with Dangerous Type vulnerability in Farost Energia energia allows Upload a Web Shell to a … | Critical (9.8) | 2026-01-22 | General-Purpose |
| CVE-2025-49994 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability i… | Critical (9.8) | 2026-01-22 | General-Purpose |
| CVE-2025-49375 | Missing Authorization vulnerability in cozythemes HomeLancer homelancer allows Exploiting Incorrectly Configured Access… | High (8.8) | 2026-01-22 | General-Purpose |
| CVE-2025-49336 | Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in pondol Pondol BBS… | Medium (5.4) | 2026-01-22 | General-Purpose |