
CVE-2025-6803 – Marvell QConvergeConsole compressDriverFiles Directory Traversal Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2025-6803
27 Jun 2025 — Marvell QConvergeConsole compressDriverFiles Directory Traversal Information Disclosure Vulnerability. • https://www.zerodayinitiative.com/advisories/ZDI-25-452 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •

CVE-2025-6804 – Marvell QConvergeConsole compressFirmwareDumpFiles Directory Traversal Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2025-6804
27 Jun 2025 — Marvell QConvergeConsole compressFirmwareDumpFiles Directory Traversal Information Disclosure Vulnerability. • https://www.zerodayinitiative.com/advisories/ZDI-25-453 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •

CVE-2025-6807 – Marvell QConvergeConsole getDriverTmpPath Directory Traversal Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2025-6807
27 Jun 2025 — Marvell QConvergeConsole getDriverTmpPath Directory Traversal Information Disclosure Vulnerability. • https://www.zerodayinitiative.com/advisories/ZDI-25-463 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •

CVE-2025-36034 – IBM InfoSphere DataStage Flow Designer information disclosure
https://notcve.org/view.php?id=CVE-2025-36034
26 Jun 2025 — IBM InfoSphere DataStage Flow Designer in IBM InfoSphere Information Server 11.7 discloses sensitive user information in API requests in clear text that could be intercepted using man in the middle techniques. • https://www.ibm.com/support/pages/node/7237604 • CWE-319: Cleartext Transmission of Sensitive Information •

CVE-2025-3722
https://notcve.org/view.php?id=CVE-2025-3722
26 Jun 2025 — A path traversal vulnerability in System Information Reporter (SIR) 1.0.3 and prior allowed an authenticated high privileged user to issue malicious ePO post requests to System Information Reporter, leading to creation of files anywhere on the filesystem and possibly overwriting existing files and exposing sensitive information disclosure. • https://thrive.trellix.com/s/article/000014635 • CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') •

CVE-2025-6678 – Autel MaxiCharger AC Wallbox Commercial PIN Missing Authentication Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2025-6678
25 Jun 2025 — Autel MaxiCharger AC Wallbox Commercial PIN Missing Authentication Information Disclosure Vulnerability. • https://www.zerodayinitiative.com/advisories/ZDI-25-342 • CWE-306: Missing Authentication for Critical Function •

CVE-2025-6649 – PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2025-6649
25 Jun 2025 — PDF-XChange Editor U3D File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. • https://www.pdf-xchange.com/support/security-bulletins.html • CWE-125: Out-of-bounds Read •

CVE-2025-6652 – PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2025-6652
25 Jun 2025 — PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. • https://www.pdf-xchange.com/support/security-bulletins.html • CWE-125: Out-of-bounds Read •

CVE-2025-6657 – PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2025-6657
25 Jun 2025 — PDF-XChange Editor PRC File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability. • https://www.pdf-xchange.com/support/security-bulletins.html • CWE-125: Out-of-bounds Read •

CVE-2025-6646 – PDF-XChange Editor U3D File Parsing Use-After-Free Information Disclosure Vulnerability
https://notcve.org/view.php?id=CVE-2025-6646
25 Jun 2025 — PDF-XChange Editor U3D File Parsing Use-After-Free Information Disclosure Vulnerability. • https://www.pdf-xchange.com/support/security-bulletins.html • CWE-416: Use After Free •