VYPR

Csaf

by Cisagov

Source repositories

CVEs (129)

  • CVE-2026-81824MedSep 8, 2026
    risk 0.31cvss 4.7epss 0.00

    The vulnerability, if exploited, could allow a miscreant to run arbitrary JavaScript code in a browser session of a PIMBoards user who was socially engineered to click on a malicious link.

  • CVE-2026-50099MedJun 12, 2026
    risk 0.30cvss 4.6epss 0.00

    During WiFi association, Naxclow device firmware prints the host network’s SSID, PSK, and negotiated WPA keys in cleartext to an exposed UART console on production hardware. The UART pads are labeled, run with default serial settings, and drop to an interactive RT-Thread shell…

  • CVE-2026-17264MedAug 7, 2026
    risk 0.28cvss 4.3epss 0.00

    Opening a crafted DICOM file containing malicious JPEG-compressed pixel data triggers an attacker-controlled heap out-of-bounds write, which may allow an attacker to remotely execute arbitrary code.

  • CVE-2026-90454MedSep 11, 2026
    risk 0.27cvss —epss 0.00

    A deployment mode intended to expose only read access to a bundled packet-analysis component's interface denies a list of write-capable routes by pattern, but the pattern omits routes that modify tags attached to stored session records, and the proxy configuration otherwise…

  • CVE-2026-90450MedSep 11, 2026
    risk 0.27cvss —epss 0.00

    The application's role-authorization lookup defaults to granting access when a request handler's name is not present in its table of role requirements, rather than defaulting to deny. Any request handler that is not explicitly registered in this table is reachable by any…

  • CVE-2026-90446MedSep 11, 2026
    risk 0.27cvss —epss 0.00

    An application programming interface endpoint accepts a user-supplied value and interpolates it directly into the path of a backend request to the underlying search and analytics data store, without restricting its contents. This allows an authenticated attacker to substitute an…

  • CVE-2026-90443MedSep 11, 2026
    risk 0.27cvss —epss 0.00

    A web interface reflects a portion of the request URL into a script context and a hyperlink attribute without adequate encoding, and does not require authentication to reach. This allows an unauthenticated network attacker to craft a link that, when visited by a user, executes…

  • CVE-2026-90453MedSep 11, 2026
    risk 0.26cvss —epss 0.00

    A file-upload handler redirects the authenticated client's browser to a URL taken directly from that same request's Referer header, without validating it against the application's own origin. This allows an authenticated attacker to craft a request that causes another user's…

  • CVE-2026-85478LowSep 18, 2026
    risk 0.23cvss 3.5epss 0.00

    A CM2507 IP camera running firmware version HMT.CM2507 v251211.1507 exposes an interactive bootloader through a physical debug interface without requiring authentication. An attacker with physical access could interrupt the normal boot process and access functionality that…

Page 7 of 7