| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2023-1256 | Cri | 0.64 | 9.8 | 0.01 | Mar 16, 2023 | The listed versions of AVEVA Plant SCADA and AVEVA Telemetry Server are vulnerable to an improper authorization exploit which could allow an unauthenticated user to remotely read data, cause denial of service, and tamper with alarm states. | ||
| CVE-2023-0811 | Cri | 0.59 | 9.1 | 0.01 | Mar 16, 2023 | Omron CJ1M unit v4.0 and prior has improper access controls on the memory region where the UM password is stored. If an adversary issues a PROGRAM AREA WRITE command to a specific memory region, they could overwrite the password. This may lead to disabling UM protections or… | ||
| CVE-2023-27041 | Cri | 0.64 | 9.8 | 0.01 | Mar 16, 2023 | School Registration and Fee System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at/bilal final/edit_user.php. | ||
| CVE-2023-28100 | Cri | 0.00 | 10.0 | 0.01 | Mar 16, 2023 | Flatpak is a system for building, distributing, and running sandboxed desktop applications on Linux. Versions prior to 1.10.8, 1.12.8, 1.14.4, and 1.15.4 contain a vulnerability similar to CVE-2017-5226, but using the `TIOCLINUX` ioctl command instead of `TIOCSTI`. If a Flatpak… | ||
| CVE-2023-27040 | Cri | 0.64 | 9.8 | 0.02 | Mar 16, 2023 | Simple Image Gallery v1.0 was discovered to contain a remote code execution (RCE) vulnerability via the username parameter. | ||
| CVE-2020-22647 | Cri | 0.59 | 9.1 | 0.01 | Mar 16, 2023 | An issue found in DepositGame v.1.0 allows an attacker to gain sensitive information via the GetBonusWithdraw and withdraw functions. | ||
| CVE-2020-19947 | Cri | 0.62 | 9.6 | 0.01 | Mar 16, 2023 | Cross Site Scripting vulnerability found in Markdown Edit allows a remote attacker to execute arbitrary code via the edit parameter of the webpage. | ||
| CVE-2023-27250 | — | Cri | 0.64 | 9.8 | 0.01 | Mar 16, 2023 | Online Book Store Project v1.0 is vulnerable to SQL Injection via /bookstore/bookPerPub.php. | |
| CVE-2023-26784 | Cri | 0.64 | 9.8 | 0.01 | Mar 16, 2023 | SQL Injection vulnerability found in Kirin Fortress Machine v.1.7-2020-0610 allows attackers to execute arbitrary code via the /admin.php?controller=admin_commonuser parameter. | ||
| CVE-2023-24795 | Cri | 0.64 | 9.8 | 0.01 | Mar 16, 2023 | Command execution vulnerability was discovered in JHR-N916R router firmware version<=21.11.1.1483. | ||
| CVE-2023-23150 | Cri | 0.64 | 9.8 | 0.01 | Mar 16, 2023 | SA-WR915ND router firmware v17.35.1 was discovered to be vulnerable to code execution. | ||
| CVE-2023-25280 | Cri | 0.84 | 9.8 | 0.98 | KEV | Mar 16, 2023 | OS Command injection vulnerability in D-Link DIR820LA1_FW105B03 allows attackers to escalate privileges to root via a crafted payload with the ping_addr parameter to ping.ccp. | |
| CVE-2023-28461 | Cri | 0.87 | 9.8 | 0.68 | KEV | Mar 15, 2023 | Array Networks Array AG Series and vxAG (9.4.0.481 and earlier) allow remote code execution. An attacker can browse the filesystem on the SSL VPN gateway using a flags attribute in an HTTP header without authentication. The product could then be exploited through a vulnerable… | |
| CVE-2023-24468 | Cri | 0.64 | 9.8 | 0.01 | Mar 15, 2023 | Broken access control in Advanced Authentication versions prior to 6.4.1.1 and 6.3.7.2 | ||
| CVE-2023-25344 | Cri | 0.64 | 9.8 | 0.01 | Mar 15, 2023 | An issue was discovered in swig-templates thru 2.0.4 and swig thru 1.4.2, allows attackers to execute arbitrary code via crafted Object.prototype anonymous function. | ||
| CVE-2020-27507 | Cri | 0.00 | 9.8 | 0.01 | Mar 15, 2023 | The Kamailio SIP before 5.5.0 server mishandles INVITE requests with duplicated fields and overlength tag, leading to a buffer overflow that crashes the server or possibly have unspecified other impact. | ||
| CVE-2022-44580 | Cri | 0.59 | 9.1 | 0.01 | Mar 15, 2023 | SQL Injection (SQLi) vulnerability in RichPlugins Plugin for Google Reviews plugin <= 2.2.3 versions. | ||
| CVE-2023-24726 | Cri | 0.64 | 9.8 | 0.01 | Mar 15, 2023 | Art Gallery Management System v1.0 was discovered to contain a SQL injection vulnerability via the viewid parameter on the enquiry page. | ||
| CVE-2023-27240 | Cri | 0.64 | 9.8 | 0.03 | Mar 15, 2023 | Tenda AX3 V16.03.12.11 was discovered to contain a command injection vulnerability via the lanip parameter at /goform/AdvSetLanip. | ||
| CVE-2023-27239 | Cri | 0.64 | 9.8 | 0.01 | Mar 15, 2023 | Tenda AX3 V16.03.12.11 was discovered to contain a stack overflow via the shareSpeed parameter at /goform/WifiGuestSet. | ||
| CVE-2023-28371 | Cri | 0.00 | 9.8 | 0.02 | Mar 15, 2023 | In Stellarium through 1.2, attackers can write to files that are typically unintended, such as ones with absolute pathnames or .. directory traversal. | ||
| CVE-2023-27757 | — | Cri | 0.64 | 9.8 | 0.01 | Mar 15, 2023 | An arbitrary file upload vulnerability in the /admin/user/uploadImg component of PerfreeBlog v3.1.1 allows attackers to execute arbitrary code via a crafted JPG file. | |
| CVE-2023-1327 | Cri | 0.64 | 9.8 | 0.01 | Mar 14, 2023 | Netgear RAX30 (AX2400), prior to version 1.0.6.74, was affected by an authentication bypass vulnerability, allowing an unauthenticated attacker to gain administrative access to the device's web management interface by resetting the admin password. | ||
| CVE-2023-26511 | Cri | 0.64 | 9.8 | 0.01 | Mar 14, 2023 | A Hard Coded Admin Credentials issue in the Web-UI Admin Panel in Propius MachineSelector 6.6.0 and 6.6.1 allows remote attackers to gain access to the admin panel Propiusadmin.php, which allows taking control of the affected system. | ||
| CVE-2023-28343 | Cri | 0.74 | 9.8 | 0.85 | Mar 14, 2023 | OS command injection affects Altenergy Power Control Software C1.2.5 via shell metacharacters in the index.php/management/set_timezone timezone parameter, because of set_timezone in models/management_model.php. | ||
| CVE-2023-23415 | Cri | 0.64 | 9.8 | 0.03 | Mar 14, 2023 | Internet Control Message Protocol (ICMP) Remote Code Execution Vulnerability | ||
| CVE-2023-23397 | Cri | 0.83 | 9.8 | 0.97 | KEV | Mar 14, 2023 | Microsoft Outlook Elevation of Privilege Vulnerability | |
| CVE-2023-23392 | Cri | 0.64 | 9.8 | 0.02 | Mar 14, 2023 | HTTP Protocol Stack Remote Code Execution Vulnerability | ||
| CVE-2023-21708 | Cri | 0.64 | 9.8 | 0.01 | Mar 14, 2023 | Remote Procedure Call Runtime Remote Code Execution Vulnerability | ||
| CVE-2022-39214 | Cri | 0.02 | 9.6 | 0.26 | Mar 14, 2023 | Combodo iTop is an open source, web-based IT service management platform. Prior to versions 2.7.8 and 3.0.2-1, a user who can log in on iTop is able to take over any account just by knowing the account's username. This issue is fixed in versions 2.7.8 and 3.0.2-1. | ||
| CVE-2023-27074 | Cri | 0.64 | 9.8 | 0.01 | Mar 14, 2023 | BP Monitoring Management System v1.0 was discovered to contain a SQL injection vulnerability via the emailid parameter in the login page. | ||
| CVE-2023-25957 | Cri | 0.59 | 9.1 | 0.01 | Mar 14, 2023 | A vulnerability has been identified in Mendix SAML (Mendix 7 compatible) (All versions >= V1.16.4 < V1.17.3), Mendix SAML (Mendix 8 compatible) (All versions >= V2.2.0 < V2.3.0), Mendix SAML (Mendix 9 latest compatible, New Track) (All versions >= V3.1.9 < V3.3.1), Mendix SAML… | ||
| CVE-2023-27500 | Cri | 0.62 | 9.6 | 0.01 | Mar 14, 2023 | An attacker with non-administrative authorizations can exploit a directory traversal flaw in program SAPRSBRO to over-write system files. In this attack, no data can be read but potentially critical OS files can be over-written making the system unavailable. | ||
| CVE-2023-27269 | Cri | 0.62 | 9.6 | 0.01 | Mar 14, 2023 | SAP NetWeaver Application Server for ABAP and ABAP Platform - versions 700, 701, 702, 731, 740, 750, 751, 752, 753, 754, 755, 756, 757, 791, allows an attacker with non-administrative authorizations to exploit a directory traversal flaw in an available service to overwrite the… | ||
| CVE-2023-25617 | Cri | 0.59 | 9.0 | 0.01 | Mar 14, 2023 | SAP Business Object (Adaptive Job Server) - versions 420, 430, allows remote execution of arbitrary commands on Unix, when program objects execution is enabled, to authenticated users with scheduling rights, using the BI Launchpad, Central Management Console or a custom… | ||
| CVE-2023-25616 | Cri | 0.64 | 9.9 | 0.01 | Mar 14, 2023 | In some scenario, SAP Business Objects Business Intelligence Platform (CMC) - versions 420, 430, Program Object execution can lead to code injection vulnerability which could allow an attacker to gain access to resources that are allowed by extra privileges. Successful attack… | ||
| CVE-2023-23857 | Cri | 0.64 | 9.9 | 0.01 | Mar 14, 2023 | Due to missing authentication check, SAP NetWeaver AS for Java - version 7.50, allows an unauthenticated attacker to attach to an open interface and make use of an open naming and directory API to access services which can be used to perform unauthorized operations affecting… | ||
| CVE-2023-27582 | — | Cri | 0.52 | 9.1 | 0.01 | Mar 13, 2023 | maddy is a composable, all-in-one mail server. Starting with version 0.2.0 and prior to version 0.6.3, maddy allows a full authentication bypass if SASL authorization username is specified when using the PLAIN authentication mechanisms. Instead of validating the specified… | |
| CVE-2023-27052 | Cri | 0.64 | 9.8 | 0.01 | Mar 13, 2023 | E-Commerce System v1.0 ws discovered to contain a SQL injection vulnerability via the id parameter at /admin/delete_user.php. | ||
| CVE-2023-27583 | Cri | 0.00 | 9.8 | 0.01 | Mar 13, 2023 | PanIndex is a network disk directory index. In Panindex prior to version 3.1.3, a hard-coded JWT key `PanIndex` is used. An attacker can use the hard-coded JWT key to sign JWT token and perform any actions as a user with admin privileges. Version 3.1.3 has a patch for the… | ||
| CVE-2023-0354 | Cri | 0.59 | 9.1 | 0.01 | Mar 13, 2023 | The Akuvox E11 web server can be accessed without any user authentication, and this could allow an attacker to access sensitive information, as well as create and download packet captures with known default URLs. | ||
| CVE-2023-0352 | Cri | 0.59 | 9.1 | 0.01 | Mar 13, 2023 | The Akuvox E11 password recovery webpage can be accessed without authentication, and an attacker could download the device key file. An attacker could then use this page to reset the password back to the default. | ||
| CVE-2023-0345 | Cri | 0.64 | 9.8 | 0.01 | Mar 13, 2023 | The Akuvox E11 secure shell (SSH) server is enabled by default and can be accessed by the root user. This password cannot be changed by the user. | ||
| CVE-2023-25207 | Cri | 0.64 | 9.8 | 0.01 | Mar 13, 2023 | PrestaShop dpdfrance <6.1.3 is vulnerable to SQL Injection via dpdfrance/ajax.php. | ||
| CVE-2023-25279 | Cri | 0.66 | 9.8 | 0.31 | Mar 13, 2023 | OS Command injection vulnerability in D-Link DIR820LA1_FW105B03 allows attackers to escalate privileges to root via a crafted payload. | ||
| CVE-2021-45423 | Cri | 0.64 | 9.8 | 0.01 | Mar 13, 2023 | A Buffer Overflow vulnerabilityexists in Pev 0.81 via the pe_exports function from exports.c.. The array offsets_to_Names is dynamically allocated on the stack using exp->NumberOfFunctions as its size. However, the loop uses exp->NumberOfNames to iterate over it and set its… | ||
| CVE-2023-0037 | Cri | 0.64 | 9.8 | 0.04 | Mar 13, 2023 | The 10Web Map Builder for Google Maps WordPress plugin before 1.0.73 does not properly sanitise and escape some parameters before using them in an SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection | ||
| CVE-2023-27063 | Cri | 0.64 | 9.8 | 0.01 | Mar 13, 2023 | Tenda V15V1.0 V15.11.0.14(1521_3190_1058) was discovered to contain a buffer overflow vulnerability via the DNSDomainName parameter in the formModifyDnsForward function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request. | ||
| CVE-2023-27061 | Cri | 0.64 | 9.8 | 0.01 | Mar 13, 2023 | Tenda V15V1.0 V15.11.0.14(1521_3190_1058) was discovered to contain a buffer overflow vulnerability via the wifiFilterListRemark parameter in the modifyWifiFilterRules function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request. | ||
| CVE-2023-24762 | Cri | 0.64 | 9.8 | 0.03 | Mar 13, 2023 | OS Command injection vulnerability in D-Link DIR-867 DIR_867_FW1.30B07 allows attackers to execute arbitrary commands via a crafted LocalIPAddress parameter for the SetVirtualServerSettings to HNAP1. |
- risk 0.64cvss 9.8epss 0.01
The listed versions of AVEVA Plant SCADA and AVEVA Telemetry Server are vulnerable to an improper authorization exploit which could allow an unauthenticated user to remotely read data, cause denial of service, and tamper with alarm states.
- risk 0.59cvss 9.1epss 0.01
Omron CJ1M unit v4.0 and prior has improper access controls on the memory region where the UM password is stored. If an adversary issues a PROGRAM AREA WRITE command to a specific memory region, they could overwrite the password. This may lead to disabling UM protections or…
- risk 0.64cvss 9.8epss 0.01
School Registration and Fee System v1.0 was discovered to contain a SQL injection vulnerability via the id parameter at/bilal final/edit_user.php.
- risk 0.00cvss 10.0epss 0.01
Flatpak is a system for building, distributing, and running sandboxed desktop applications on Linux. Versions prior to 1.10.8, 1.12.8, 1.14.4, and 1.15.4 contain a vulnerability similar to CVE-2017-5226, but using the `TIOCLINUX` ioctl command instead of `TIOCSTI`. If a Flatpak…
- risk 0.64cvss 9.8epss 0.02
Simple Image Gallery v1.0 was discovered to contain a remote code execution (RCE) vulnerability via the username parameter.
- risk 0.59cvss 9.1epss 0.01
An issue found in DepositGame v.1.0 allows an attacker to gain sensitive information via the GetBonusWithdraw and withdraw functions.
- risk 0.62cvss 9.6epss 0.01
Cross Site Scripting vulnerability found in Markdown Edit allows a remote attacker to execute arbitrary code via the edit parameter of the webpage.
- risk 0.64cvss 9.8epss 0.01
Online Book Store Project v1.0 is vulnerable to SQL Injection via /bookstore/bookPerPub.php.
- risk 0.64cvss 9.8epss 0.01
SQL Injection vulnerability found in Kirin Fortress Machine v.1.7-2020-0610 allows attackers to execute arbitrary code via the /admin.php?controller=admin_commonuser parameter.
- risk 0.64cvss 9.8epss 0.01
Command execution vulnerability was discovered in JHR-N916R router firmware version<=21.11.1.1483.
- risk 0.64cvss 9.8epss 0.01
SA-WR915ND router firmware v17.35.1 was discovered to be vulnerable to code execution.
- risk 0.84cvss 9.8epss 0.98
OS Command injection vulnerability in D-Link DIR820LA1_FW105B03 allows attackers to escalate privileges to root via a crafted payload with the ping_addr parameter to ping.ccp.
- risk 0.87cvss 9.8epss 0.68
Array Networks Array AG Series and vxAG (9.4.0.481 and earlier) allow remote code execution. An attacker can browse the filesystem on the SSL VPN gateway using a flags attribute in an HTTP header without authentication. The product could then be exploited through a vulnerable…
- risk 0.64cvss 9.8epss 0.01
Broken access control in Advanced Authentication versions prior to 6.4.1.1 and 6.3.7.2
- risk 0.64cvss 9.8epss 0.01
An issue was discovered in swig-templates thru 2.0.4 and swig thru 1.4.2, allows attackers to execute arbitrary code via crafted Object.prototype anonymous function.
- risk 0.00cvss 9.8epss 0.01
The Kamailio SIP before 5.5.0 server mishandles INVITE requests with duplicated fields and overlength tag, leading to a buffer overflow that crashes the server or possibly have unspecified other impact.
- risk 0.59cvss 9.1epss 0.01
SQL Injection (SQLi) vulnerability in RichPlugins Plugin for Google Reviews plugin <= 2.2.3 versions.
- risk 0.64cvss 9.8epss 0.01
Art Gallery Management System v1.0 was discovered to contain a SQL injection vulnerability via the viewid parameter on the enquiry page.
- risk 0.64cvss 9.8epss 0.03
Tenda AX3 V16.03.12.11 was discovered to contain a command injection vulnerability via the lanip parameter at /goform/AdvSetLanip.
- risk 0.64cvss 9.8epss 0.01
Tenda AX3 V16.03.12.11 was discovered to contain a stack overflow via the shareSpeed parameter at /goform/WifiGuestSet.
- risk 0.00cvss 9.8epss 0.02
In Stellarium through 1.2, attackers can write to files that are typically unintended, such as ones with absolute pathnames or .. directory traversal.
- risk 0.64cvss 9.8epss 0.01
An arbitrary file upload vulnerability in the /admin/user/uploadImg component of PerfreeBlog v3.1.1 allows attackers to execute arbitrary code via a crafted JPG file.
- risk 0.64cvss 9.8epss 0.01
Netgear RAX30 (AX2400), prior to version 1.0.6.74, was affected by an authentication bypass vulnerability, allowing an unauthenticated attacker to gain administrative access to the device's web management interface by resetting the admin password.
- risk 0.64cvss 9.8epss 0.01
A Hard Coded Admin Credentials issue in the Web-UI Admin Panel in Propius MachineSelector 6.6.0 and 6.6.1 allows remote attackers to gain access to the admin panel Propiusadmin.php, which allows taking control of the affected system.
- risk 0.74cvss 9.8epss 0.85
OS command injection affects Altenergy Power Control Software C1.2.5 via shell metacharacters in the index.php/management/set_timezone timezone parameter, because of set_timezone in models/management_model.php.
- risk 0.64cvss 9.8epss 0.03
Internet Control Message Protocol (ICMP) Remote Code Execution Vulnerability
- risk 0.83cvss 9.8epss 0.97
Microsoft Outlook Elevation of Privilege Vulnerability
- risk 0.64cvss 9.8epss 0.02
HTTP Protocol Stack Remote Code Execution Vulnerability
- risk 0.64cvss 9.8epss 0.01
Remote Procedure Call Runtime Remote Code Execution Vulnerability
- risk 0.02cvss 9.6epss 0.26
Combodo iTop is an open source, web-based IT service management platform. Prior to versions 2.7.8 and 3.0.2-1, a user who can log in on iTop is able to take over any account just by knowing the account's username. This issue is fixed in versions 2.7.8 and 3.0.2-1.
- risk 0.64cvss 9.8epss 0.01
BP Monitoring Management System v1.0 was discovered to contain a SQL injection vulnerability via the emailid parameter in the login page.
- risk 0.59cvss 9.1epss 0.01
A vulnerability has been identified in Mendix SAML (Mendix 7 compatible) (All versions >= V1.16.4 < V1.17.3), Mendix SAML (Mendix 8 compatible) (All versions >= V2.2.0 < V2.3.0), Mendix SAML (Mendix 9 latest compatible, New Track) (All versions >= V3.1.9 < V3.3.1), Mendix SAML…
- risk 0.62cvss 9.6epss 0.01
An attacker with non-administrative authorizations can exploit a directory traversal flaw in program SAPRSBRO to over-write system files. In this attack, no data can be read but potentially critical OS files can be over-written making the system unavailable.
- risk 0.62cvss 9.6epss 0.01
SAP NetWeaver Application Server for ABAP and ABAP Platform - versions 700, 701, 702, 731, 740, 750, 751, 752, 753, 754, 755, 756, 757, 791, allows an attacker with non-administrative authorizations to exploit a directory traversal flaw in an available service to overwrite the…
- risk 0.59cvss 9.0epss 0.01
SAP Business Object (Adaptive Job Server) - versions 420, 430, allows remote execution of arbitrary commands on Unix, when program objects execution is enabled, to authenticated users with scheduling rights, using the BI Launchpad, Central Management Console or a custom…
- risk 0.64cvss 9.9epss 0.01
In some scenario, SAP Business Objects Business Intelligence Platform (CMC) - versions 420, 430, Program Object execution can lead to code injection vulnerability which could allow an attacker to gain access to resources that are allowed by extra privileges. Successful attack…
- risk 0.64cvss 9.9epss 0.01
Due to missing authentication check, SAP NetWeaver AS for Java - version 7.50, allows an unauthenticated attacker to attach to an open interface and make use of an open naming and directory API to access services which can be used to perform unauthorized operations affecting…
- risk 0.52cvss 9.1epss 0.01
maddy is a composable, all-in-one mail server. Starting with version 0.2.0 and prior to version 0.6.3, maddy allows a full authentication bypass if SASL authorization username is specified when using the PLAIN authentication mechanisms. Instead of validating the specified…
- risk 0.64cvss 9.8epss 0.01
E-Commerce System v1.0 ws discovered to contain a SQL injection vulnerability via the id parameter at /admin/delete_user.php.
- risk 0.00cvss 9.8epss 0.01
PanIndex is a network disk directory index. In Panindex prior to version 3.1.3, a hard-coded JWT key `PanIndex` is used. An attacker can use the hard-coded JWT key to sign JWT token and perform any actions as a user with admin privileges. Version 3.1.3 has a patch for the…
- risk 0.59cvss 9.1epss 0.01
The Akuvox E11 web server can be accessed without any user authentication, and this could allow an attacker to access sensitive information, as well as create and download packet captures with known default URLs.
- risk 0.59cvss 9.1epss 0.01
The Akuvox E11 password recovery webpage can be accessed without authentication, and an attacker could download the device key file. An attacker could then use this page to reset the password back to the default.
- risk 0.64cvss 9.8epss 0.01
The Akuvox E11 secure shell (SSH) server is enabled by default and can be accessed by the root user. This password cannot be changed by the user.
- risk 0.64cvss 9.8epss 0.01
PrestaShop dpdfrance <6.1.3 is vulnerable to SQL Injection via dpdfrance/ajax.php.
- risk 0.66cvss 9.8epss 0.31
OS Command injection vulnerability in D-Link DIR820LA1_FW105B03 allows attackers to escalate privileges to root via a crafted payload.
- risk 0.64cvss 9.8epss 0.01
A Buffer Overflow vulnerabilityexists in Pev 0.81 via the pe_exports function from exports.c.. The array offsets_to_Names is dynamically allocated on the stack using exp->NumberOfFunctions as its size. However, the loop uses exp->NumberOfNames to iterate over it and set its…
- risk 0.64cvss 9.8epss 0.04
The 10Web Map Builder for Google Maps WordPress plugin before 1.0.73 does not properly sanitise and escape some parameters before using them in an SQL statement via an AJAX action available to unauthenticated users, leading to a SQL injection
- risk 0.64cvss 9.8epss 0.01
Tenda V15V1.0 V15.11.0.14(1521_3190_1058) was discovered to contain a buffer overflow vulnerability via the DNSDomainName parameter in the formModifyDnsForward function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.
- risk 0.64cvss 9.8epss 0.01
Tenda V15V1.0 V15.11.0.14(1521_3190_1058) was discovered to contain a buffer overflow vulnerability via the wifiFilterListRemark parameter in the modifyWifiFilterRules function. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted request.
- risk 0.64cvss 9.8epss 0.03
OS Command injection vulnerability in D-Link DIR-867 DIR_867_FW1.30B07 allows attackers to execute arbitrary commands via a crafted LocalIPAddress parameter for the SetVirtualServerSettings to HNAP1.