| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2022-0169 | Cri | 0.73 | 9.8 | 0.75 | Mar 14, 2022 | The Photo Gallery by 10Web WordPress plugin before 1.6.0 does not validate and escape the bwg_tag_id_bwg_thumbnails_0 parameter before using it in a SQL statement via the bwg_frontend_data AJAX action (available to unauthenticated and authenticated users), leading to an… | ||
| CVE-2021-25007 | Cri | 0.64 | 9.8 | 0.02 | Mar 14, 2022 | The MOLIE WordPress plugin through 0.5 does not validate and escape a post parameter before using in a SQL statement, leading to an SQL Injection | ||
| CVE-2021-25003 | Cri | 0.68 | 9.8 | 0.56 | Mar 14, 2022 | The WPCargo Track & Trace WordPress plugin before 6.9.0 contains a file which could allow unauthenticated attackers to write a PHP file anywhere on the web server, leading to RCE | ||
| CVE-2022-24387 | Cri | 0.59 | 9.1 | 0.02 | Mar 14, 2022 | With administrator or admin privileges the application can be tricked into overwriting files in app_data/Config folder, e.g. the systemsettings.xml file. THis is possible in SmarterTrack v100.0.8019.14010 | ||
| CVE-2022-23943 | Cri | 0.68 | 9.8 | 0.50 | Mar 14, 2022 | Out-of-bounds Write vulnerability in mod_sed of Apache HTTP Server allows an attacker to overwrite heap memory with possibly attacker provided data. This issue affects Apache HTTP Server 2.4 version 2.4.52 and prior versions. | ||
| CVE-2022-22721 | Cri | 0.62 | 9.1 | 0.42 | Mar 14, 2022 | If LimitXMLRequestBody is set to allow request bodies larger than 350MB (defaults to 1M) on 32 bit systems an integer overflow happens which later causes out of bounds writes. This issue affects Apache HTTP Server 2.4.52 and earlier. | ||
| CVE-2022-22720 | Cri | 0.66 | 9.8 | 0.28 | Mar 14, 2022 | Apache HTTP Server 2.4.52 and earlier fails to close inbound connection when errors are encountered discarding the request body, exposing the server to HTTP Request Smuggling | ||
| CVE-2021-45887 | Cri | 0.64 | 9.8 | 0.03 | Mar 13, 2022 | An issue was discovered in PONTON X/P Messenger before 3.11.2. Due to path traversal in private/SchemaSetUpload.do for uploaded ZIP files, an executable script can be uploaded by web application administrators, giving the attacker remote code execution on the underlying server… | ||
| CVE-2022-24760 | Cri | 0.62 | 10.0 | 0.49 | Mar 12, 2022 | Parse Server is an open source http web server backend. In versions prior to 4.10.7 there is a Remote Code Execution (RCE) vulnerability in Parse Server. This vulnerability affects Parse Server in the default configuration with MongoDB. The main weakness that leads to RCE is the… | ||
| CVE-2022-25621 | Cri | 0.64 | 9.8 | 0.01 | Mar 11, 2022 | UUNIVERGE WA 1020 Ver8.2.11 and prior, UNIVERGE WA 1510 Ver8.2.11 and prior, UNIVERGE WA 1511 Ver8.2.11 and prior, UNIVERGE WA 1512 Ver8.2.11 and prior, UNIVERGE WA 2020 Ver8.2.11 and prior, UNIVERGE WA 2021 Ver8.2.11 and prior, UNIVERGE WA 2610-AP Ver8.2.11 and prior, UNIVERGE… | ||
| CVE-2022-23730 | — | Cri | 0.64 | 9.8 | 0.01 | Mar 11, 2022 | The public API error causes for the attacker to be able to bypass API access control. | |
| CVE-2021-44620 | Cri | 0.64 | 9.8 | 0.02 | Mar 11, 2022 | A Command Injection vulnerability exits in TOTOLINK A3100R <=V4.1.2cu.5050_B20200504 in adm/ntm.asp via the hosTime parameters. | ||
| CVE-2021-44618 | — | Cri | 0.57 | 9.8 | 0.01 | Mar 11, 2022 | A Server-side Template Injection (SSTI) vulnerability exists in Nystudio107 Seomatic 3.4.12 in src/helpers/UrlHelper.php via the host header. | |
| CVE-2022-0860 | Cri | 0.52 | 9.1 | 0.02 | Mar 11, 2022 | Improper Authorization in GitHub repository cobbler/cobbler prior to 3.3.2. | ||
| CVE-2022-0871 | Cri | 0.52 | 9.1 | 0.01 | Mar 11, 2022 | Missing Authorization in GitHub repository gogs/gogs prior to 0.12.5. | ||
| CVE-2022-23402 | Cri | 0.64 | 9.8 | 0.01 | Mar 11, 2022 | The following Yokogawa Electric products hard-code the password for CAMS server applications: CENTUM VP versions from R5.01.00 to R5.04.20 and versions from R6.01.00 to R6.08.00, Exaopc versions from R3.72.00 to R3.79.00 | ||
| CVE-2022-21194 | Cri | 0.64 | 9.8 | 0.01 | Mar 11, 2022 | The following Yokogawa Electric products do not change the passwords of the internal Windows accounts from the initial configuration: CENTUM VP versions from R5.01.00 to R5.04.20 and versions from R6.01.00 to R6.08.0, Exaopc versions from R3.72.00 to R3.79.00. | ||
| CVE-2022-26520 | Cri | 0.64 | 9.8 | 0.03 | Mar 10, 2022 | In pgjdbc before 42.3.3, an attacker (who controls the jdbc URL or properties) can call java.util.logging.FileHandler to write to arbitrary files through the loggerFile and loggerLevel connection properties. An example situation is that an attacker could create an executable JSP… | ||
| CVE-2022-26143 | Cri | 0.83 | 9.8 | 0.88 | KEV | Mar 10, 2022 | The TP-240 (aka tp240dvr) component in Mitel MiCollab before 9.4 SP1 FP1 and MiVoice Business Express through 8.1 allows remote attackers to obtain sensitive information and cause a denial of service (performance degradation and excessive outbound traffic). This was exploited in… | |
| CVE-2022-26131 | Cri | 0.61 | 9.3 | 0.01 | Mar 10, 2022 | Power Line Communications PLC4TRUCKS J2497 trailer receivers are susceptible to remote RF induced signals. | ||
| CVE-2022-26100 | Cri | 0.64 | 9.8 | 0.01 | Mar 10, 2022 | SAPCAR - version 7.22, does not contain sufficient input validation on the SAPCAR archive. As a result, the SAPCAR process may crash, and the attacker may obtain privileged access to the system. | ||
| CVE-2022-24995 | Cri | 0.65 | 9.8 | 0.14 | Mar 10, 2022 | Tenda AX3 v16.03.12.10_CN was discovered to contain a stack overflow in the function fromSetSysTime. This vulnerability allows attackers to cause a Denial of Service (DoS) via the time parameter. | ||
| CVE-2022-24652 | Cri | 0.64 | 9.8 | 0.02 | Mar 10, 2022 | sentcms 4.0.x allows remote attackers to cause arbitrary file uploads through an unauthorized file upload interface, resulting in php code execution in /admin/upload/upload. | ||
| CVE-2022-24651 | Cri | 0.64 | 9.8 | 0.02 | Mar 10, 2022 | sentcms 4.0.x allows remote attackers to cause arbitrary file uploads through an unauthorized file upload interface, resulting in PHP code execution through /user/upload/upload. | ||
| CVE-2022-24609 | Cri | 0.64 | 9.8 | 0.02 | Mar 10, 2022 | Luocms v2.0 is affected by an incorrect access control vulnerability. Through /admin/templates/template_manage.php, an attacker can write an arbitrary shell file. | ||
| CVE-2022-24607 | Cri | 0.64 | 9.8 | 0.01 | Mar 10, 2022 | Luocms v2.0 is affected by SQL Injection in /admin/news/news_ok.php. | ||
| CVE-2022-24606 | Cri | 0.64 | 9.8 | 0.01 | Mar 10, 2022 | Luocms v2.0 is affected by SQL Injection in /admin/news/sort_ok.php. | ||
| CVE-2022-24605 | Cri | 0.64 | 9.8 | 0.01 | Mar 10, 2022 | Luocms v2.0 is affected by SQL Injection in /admin/link/link_ok.php. | ||
| CVE-2022-24604 | Cri | 0.64 | 9.8 | 0.01 | Mar 10, 2022 | Luocms v2.0 is affected by SQL Injection in /admin/link/link_mod.php. | ||
| CVE-2022-24603 | Cri | 0.64 | 9.8 | 0.01 | Mar 10, 2022 | Luocms v2.0 is affected by SQL Injection in /admin/news/sort_mod.php. | ||
| CVE-2022-24602 | Cri | 0.64 | 9.8 | 0.01 | Mar 10, 2022 | Luocms v2.0 is affected by SQL Injection in /admin/news/news_mod.php. | ||
| CVE-2022-24600 | Cri | 0.64 | 9.8 | 0.01 | Mar 10, 2022 | Luocms v2.0 is affected by SQL Injection through /admin/login.php. An attacker can log in to the background through SQL injection statements. | ||
| CVE-2022-24193 | Cri | 0.57 | 9.8 | 0.06 | Mar 10, 2022 | CasaOS before v0.2.7 was discovered to contain a command injection vulnerability. | ||
| CVE-2022-23383 | Cri | 0.59 | 9.1 | 0.01 | Mar 10, 2022 | YzmCMS v6.3 is affected by broken access control. Without login, unauthorized access to the user's personal home page can be realized. It is necessary to judge the user's login status before accessing the personal home page, but the vulnerability can access other users' home… | ||
| CVE-2022-22814 | Cri | 0.64 | 9.8 | 0.02 | Mar 10, 2022 | The System Diagnosis service of MyASUS before 3.1.2.0 allows privilege escalation. | ||
| CVE-2021-4045 | Cri | 0.73 | 9.8 | 0.72 | Mar 10, 2022 | TP-Link Tapo C200 IP camera, on its 1.1.15 firmware version and below, is affected by an unauthenticated RCE vulnerability, present in the uhttpd binary running by default as root. The exploitation of this vulnerability allows an attacker to take full control of the camera. | ||
| CVE-2021-44632 | Cri | 0.64 | 9.8 | 0.02 | Mar 10, 2022 | A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/upgrade_info feature, which allows malicious users to execute arbitrary code on the system via a crafted post request. | ||
| CVE-2021-44631 | Cri | 0.64 | 9.8 | 0.02 | Mar 10, 2022 | A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/reset_cloud_pwd feature, which allows malicous users to execute arbitrary code on the system via a crafted post request. | ||
| CVE-2021-44630 | Cri | 0.64 | 9.8 | 0.02 | Mar 10, 2022 | A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/modify_account_pwd feature, which allows malicious users to execute arbitrary code on the system via a crafted post request. | ||
| CVE-2021-44629 | Cri | 0.64 | 9.8 | 0.02 | Mar 10, 2022 | A Buffer Overflow vulnerabilitiy exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/register feature, which allows malicious users to execute arbitrary code on the system via a crafted post request. | ||
| CVE-2021-44628 | Cri | 0.64 | 9.8 | 0.02 | Mar 10, 2022 | A Buffer Overflow vulnerabiltiy exists in TP-LINK WR-886N 20190826 2.3.8 in thee /cloud_config/router_post/login feature, which allows malicious users to execute arbitrary code on the system via a crafted post request. | ||
| CVE-2021-44627 | Cri | 0.64 | 9.8 | 0.02 | Mar 10, 2022 | A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/get_reset_pwd_veirfy_code feature, which allows malicious users to execute arbitrary code on the system via a crafted post request. | ||
| CVE-2021-44626 | Cri | 0.64 | 9.8 | 0.02 | Mar 10, 2022 | A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/get_reg_verify_code feature, which allows malicious users to execute arbitrary code on the system via a crafted post request. | ||
| CVE-2021-44625 | Cri | 0.64 | 9.8 | 0.02 | Mar 10, 2022 | A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in /cloud_config/cloud_device/info interface, which allows a malicious user to executee arbitrary code on the system via a crafted post request. | ||
| CVE-2021-44623 | Cri | 0.64 | 9.8 | 0.02 | Mar 10, 2022 | A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 via the /cloud_config/router_post/check_reset_pwd_verify_code interface. | ||
| CVE-2021-44622 | Cri | 0.64 | 9.8 | 0.02 | Mar 10, 2022 | A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/check_reg_verify_code function which could let a remove malicious user execute arbitrary code via a crafted post request. | ||
| CVE-2021-42854 | Cri | 0.64 | 9.8 | 0.02 | Mar 10, 2022 | It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA) PluginServlet has directory traversal vulnerabilities at the "/api/appInternals/1.0/plugin/pmx" API. The affected endpoint does not have any input validation of the user's input that allows a… | ||
| CVE-2021-42853 | Cri | 0.59 | 9.1 | 0.02 | Mar 10, 2022 | It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA) AgentDiagnosticServlet has directory traversal vulnerability at the "/api/appInternals/1.0/agent/diagnostic/logs" API. The affected endpoint does not have any input validation of the user's input… | ||
| CVE-2021-42787 | Cri | 0.61 | 9.4 | 0.01 | Mar 10, 2022 | It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA) AgentConfigurationServlet has directory traversal vulnerabilities at the "/api/appInternals/1.0/agent/configuration" API. The affected endpoint does not have any input validation of the user's… | ||
| CVE-2021-42786 | Cri | 0.64 | 9.8 | 0.02 | Mar 10, 2022 | It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent (DSA) has Remote Code Execution vulnerabilities in multiple instances of the API requests. The affected endpoints do not have any input validation of the user's input that allowed a malicious payload to… |
- risk 0.73cvss 9.8epss 0.75
The Photo Gallery by 10Web WordPress plugin before 1.6.0 does not validate and escape the bwg_tag_id_bwg_thumbnails_0 parameter before using it in a SQL statement via the bwg_frontend_data AJAX action (available to unauthenticated and authenticated users), leading to an…
- risk 0.64cvss 9.8epss 0.02
The MOLIE WordPress plugin through 0.5 does not validate and escape a post parameter before using in a SQL statement, leading to an SQL Injection
- risk 0.68cvss 9.8epss 0.56
The WPCargo Track & Trace WordPress plugin before 6.9.0 contains a file which could allow unauthenticated attackers to write a PHP file anywhere on the web server, leading to RCE
- risk 0.59cvss 9.1epss 0.02
With administrator or admin privileges the application can be tricked into overwriting files in app_data/Config folder, e.g. the systemsettings.xml file. THis is possible in SmarterTrack v100.0.8019.14010
- risk 0.68cvss 9.8epss 0.50
Out-of-bounds Write vulnerability in mod_sed of Apache HTTP Server allows an attacker to overwrite heap memory with possibly attacker provided data. This issue affects Apache HTTP Server 2.4 version 2.4.52 and prior versions.
- risk 0.62cvss 9.1epss 0.42
If LimitXMLRequestBody is set to allow request bodies larger than 350MB (defaults to 1M) on 32 bit systems an integer overflow happens which later causes out of bounds writes. This issue affects Apache HTTP Server 2.4.52 and earlier.
- risk 0.66cvss 9.8epss 0.28
Apache HTTP Server 2.4.52 and earlier fails to close inbound connection when errors are encountered discarding the request body, exposing the server to HTTP Request Smuggling
- risk 0.64cvss 9.8epss 0.03
An issue was discovered in PONTON X/P Messenger before 3.11.2. Due to path traversal in private/SchemaSetUpload.do for uploaded ZIP files, an executable script can be uploaded by web application administrators, giving the attacker remote code execution on the underlying server…
- risk 0.62cvss 10.0epss 0.49
Parse Server is an open source http web server backend. In versions prior to 4.10.7 there is a Remote Code Execution (RCE) vulnerability in Parse Server. This vulnerability affects Parse Server in the default configuration with MongoDB. The main weakness that leads to RCE is the…
- risk 0.64cvss 9.8epss 0.01
UUNIVERGE WA 1020 Ver8.2.11 and prior, UNIVERGE WA 1510 Ver8.2.11 and prior, UNIVERGE WA 1511 Ver8.2.11 and prior, UNIVERGE WA 1512 Ver8.2.11 and prior, UNIVERGE WA 2020 Ver8.2.11 and prior, UNIVERGE WA 2021 Ver8.2.11 and prior, UNIVERGE WA 2610-AP Ver8.2.11 and prior, UNIVERGE…
- risk 0.64cvss 9.8epss 0.01
The public API error causes for the attacker to be able to bypass API access control.
- risk 0.64cvss 9.8epss 0.02
A Command Injection vulnerability exits in TOTOLINK A3100R <=V4.1.2cu.5050_B20200504 in adm/ntm.asp via the hosTime parameters.
- risk 0.57cvss 9.8epss 0.01
A Server-side Template Injection (SSTI) vulnerability exists in Nystudio107 Seomatic 3.4.12 in src/helpers/UrlHelper.php via the host header.
- risk 0.52cvss 9.1epss 0.02
Improper Authorization in GitHub repository cobbler/cobbler prior to 3.3.2.
- risk 0.52cvss 9.1epss 0.01
Missing Authorization in GitHub repository gogs/gogs prior to 0.12.5.
- risk 0.64cvss 9.8epss 0.01
The following Yokogawa Electric products hard-code the password for CAMS server applications: CENTUM VP versions from R5.01.00 to R5.04.20 and versions from R6.01.00 to R6.08.00, Exaopc versions from R3.72.00 to R3.79.00
- risk 0.64cvss 9.8epss 0.01
The following Yokogawa Electric products do not change the passwords of the internal Windows accounts from the initial configuration: CENTUM VP versions from R5.01.00 to R5.04.20 and versions from R6.01.00 to R6.08.0, Exaopc versions from R3.72.00 to R3.79.00.
- risk 0.64cvss 9.8epss 0.03
In pgjdbc before 42.3.3, an attacker (who controls the jdbc URL or properties) can call java.util.logging.FileHandler to write to arbitrary files through the loggerFile and loggerLevel connection properties. An example situation is that an attacker could create an executable JSP…
- risk 0.83cvss 9.8epss 0.88
The TP-240 (aka tp240dvr) component in Mitel MiCollab before 9.4 SP1 FP1 and MiVoice Business Express through 8.1 allows remote attackers to obtain sensitive information and cause a denial of service (performance degradation and excessive outbound traffic). This was exploited in…
- risk 0.61cvss 9.3epss 0.01
Power Line Communications PLC4TRUCKS J2497 trailer receivers are susceptible to remote RF induced signals.
- risk 0.64cvss 9.8epss 0.01
SAPCAR - version 7.22, does not contain sufficient input validation on the SAPCAR archive. As a result, the SAPCAR process may crash, and the attacker may obtain privileged access to the system.
- risk 0.65cvss 9.8epss 0.14
Tenda AX3 v16.03.12.10_CN was discovered to contain a stack overflow in the function fromSetSysTime. This vulnerability allows attackers to cause a Denial of Service (DoS) via the time parameter.
- risk 0.64cvss 9.8epss 0.02
sentcms 4.0.x allows remote attackers to cause arbitrary file uploads through an unauthorized file upload interface, resulting in php code execution in /admin/upload/upload.
- risk 0.64cvss 9.8epss 0.02
sentcms 4.0.x allows remote attackers to cause arbitrary file uploads through an unauthorized file upload interface, resulting in PHP code execution through /user/upload/upload.
- risk 0.64cvss 9.8epss 0.02
Luocms v2.0 is affected by an incorrect access control vulnerability. Through /admin/templates/template_manage.php, an attacker can write an arbitrary shell file.
- risk 0.64cvss 9.8epss 0.01
Luocms v2.0 is affected by SQL Injection in /admin/news/news_ok.php.
- risk 0.64cvss 9.8epss 0.01
Luocms v2.0 is affected by SQL Injection in /admin/news/sort_ok.php.
- risk 0.64cvss 9.8epss 0.01
Luocms v2.0 is affected by SQL Injection in /admin/link/link_ok.php.
- risk 0.64cvss 9.8epss 0.01
Luocms v2.0 is affected by SQL Injection in /admin/link/link_mod.php.
- risk 0.64cvss 9.8epss 0.01
Luocms v2.0 is affected by SQL Injection in /admin/news/sort_mod.php.
- risk 0.64cvss 9.8epss 0.01
Luocms v2.0 is affected by SQL Injection in /admin/news/news_mod.php.
- risk 0.64cvss 9.8epss 0.01
Luocms v2.0 is affected by SQL Injection through /admin/login.php. An attacker can log in to the background through SQL injection statements.
- risk 0.57cvss 9.8epss 0.06
CasaOS before v0.2.7 was discovered to contain a command injection vulnerability.
- risk 0.59cvss 9.1epss 0.01
YzmCMS v6.3 is affected by broken access control. Without login, unauthorized access to the user's personal home page can be realized. It is necessary to judge the user's login status before accessing the personal home page, but the vulnerability can access other users' home…
- risk 0.64cvss 9.8epss 0.02
The System Diagnosis service of MyASUS before 3.1.2.0 allows privilege escalation.
- risk 0.73cvss 9.8epss 0.72
TP-Link Tapo C200 IP camera, on its 1.1.15 firmware version and below, is affected by an unauthenticated RCE vulnerability, present in the uhttpd binary running by default as root. The exploitation of this vulnerability allows an attacker to take full control of the camera.
- risk 0.64cvss 9.8epss 0.02
A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/upgrade_info feature, which allows malicious users to execute arbitrary code on the system via a crafted post request.
- risk 0.64cvss 9.8epss 0.02
A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/reset_cloud_pwd feature, which allows malicous users to execute arbitrary code on the system via a crafted post request.
- risk 0.64cvss 9.8epss 0.02
A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/modify_account_pwd feature, which allows malicious users to execute arbitrary code on the system via a crafted post request.
- risk 0.64cvss 9.8epss 0.02
A Buffer Overflow vulnerabilitiy exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/register feature, which allows malicious users to execute arbitrary code on the system via a crafted post request.
- risk 0.64cvss 9.8epss 0.02
A Buffer Overflow vulnerabiltiy exists in TP-LINK WR-886N 20190826 2.3.8 in thee /cloud_config/router_post/login feature, which allows malicious users to execute arbitrary code on the system via a crafted post request.
- risk 0.64cvss 9.8epss 0.02
A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/get_reset_pwd_veirfy_code feature, which allows malicious users to execute arbitrary code on the system via a crafted post request.
- risk 0.64cvss 9.8epss 0.02
A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/get_reg_verify_code feature, which allows malicious users to execute arbitrary code on the system via a crafted post request.
- risk 0.64cvss 9.8epss 0.02
A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in /cloud_config/cloud_device/info interface, which allows a malicious user to executee arbitrary code on the system via a crafted post request.
- risk 0.64cvss 9.8epss 0.02
A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 via the /cloud_config/router_post/check_reset_pwd_verify_code interface.
- risk 0.64cvss 9.8epss 0.02
A Buffer Overflow vulnerability exists in TP-LINK WR-886N 20190826 2.3.8 in the /cloud_config/router_post/check_reg_verify_code function which could let a remove malicious user execute arbitrary code via a crafted post request.
- risk 0.64cvss 9.8epss 0.02
It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA) PluginServlet has directory traversal vulnerabilities at the "/api/appInternals/1.0/plugin/pmx" API. The affected endpoint does not have any input validation of the user's input that allows a…
- risk 0.59cvss 9.1epss 0.02
It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA) AgentDiagnosticServlet has directory traversal vulnerability at the "/api/appInternals/1.0/agent/diagnostic/logs" API. The affected endpoint does not have any input validation of the user's input…
- risk 0.61cvss 9.4epss 0.01
It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent's (DSA) AgentConfigurationServlet has directory traversal vulnerabilities at the "/api/appInternals/1.0/agent/configuration" API. The affected endpoint does not have any input validation of the user's…
- risk 0.64cvss 9.8epss 0.02
It was discovered that the SteelCentral AppInternals Dynamic Sampling Agent (DSA) has Remote Code Execution vulnerabilities in multiple instances of the API requests. The affected endpoints do not have any input validation of the user's input that allowed a malicious payload to…