Aggregator
Ransomware: Trends, precursors, and actionable defenses | Red Canary
9 months ago
Red Canary, a Zscaler company
CVE-2025-20282
9 months ago
Currently trending CVE - Hype Score: 1 - A vulnerability in an internal API of Cisco ISE and Cisco ISE-PIC could allow an unauthenticated, remote attacker to upload arbitrary files to an affected device and then execute those files on the underlying operating system as root.
This vulnerability is due a lack of file ...
CVE-2025-7915 | Chanjet CRM 1.0 Login Page /mail/mailinactive.php sql injection (EUVD-2025-22047)
9 months ago
A vulnerability was found in Chanjet CRM 1.0 and classified as critical. Affected by this issue is some unknown functionality of the file /mail/mailinactive.php of the component Login Page. The manipulation leads to sql injection.
This vulnerability is handled as CVE-2025-7915. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-7914 | Tenda AC6 15.03.06.50 httpd setparentcontrolinfo buffer overflow (EUVD-2025-22045)
9 months ago
A vulnerability has been found in Tenda AC6 15.03.06.50 and classified as critical. Affected by this vulnerability is the function setparentcontrolinfo of the component httpd. The manipulation leads to buffer overflow.
This vulnerability is known as CVE-2025-7914. The attack can be launched remotely. There is no exploit available.
vuldb.com
Submit #618873: Changjietong Information Technology Co., Ltd crm 1.0 crm [Accepted]
9 months ago
Submit #618873 / VDB-317030
qiantx
Submit #618859: Tenda AC6 V2.0 V15.03.06.50 Buffer Overflow [Accepted]
9 months ago
Submit #618859 / VDB-317029
gaochen
Submit #618858: Tenda AC6 V2.0 V15.03.06.50 Buffer Overflow [Duplicate]
9 months ago
Submit #618858 / VDB-310840
gaochen
Submit #618857: Tenda AC6 V2.0 V15.03.06.50 Buffer Overflow [Duplicate]
9 months ago
Submit #618857 / VDB-195516
gaochen
CVE-2025-7913 | TOTOLINK T6 4.1.5cu.748_B20211015 MQTT Service updateWifiInfo serverIp buffer overflow (EUVD-2025-22046)
9 months ago
A vulnerability, which was classified as critical, was found in TOTOLINK T6 4.1.5cu.748_B20211015. Affected is the function updateWifiInfo of the component MQTT Service. The manipulation of the argument serverIp leads to buffer overflow.
This vulnerability is traded as CVE-2025-7913. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-7912 | TOTOLINK T6 4.1.5cu.748_B20211015 MQTT Service recvSlaveUpgstatus buffer overflow (EUVD-2025-22043)
9 months ago
A vulnerability, which was classified as critical, has been found in TOTOLINK T6 4.1.5cu.748_B20211015. This issue affects the function recvSlaveUpgstatus of the component MQTT Service. The manipulation of the argument s leads to buffer overflow.
The identification of this vulnerability is CVE-2025-7912. The attack may be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-7911 | D-Link DI-8100 1.0 jhttpd /upnp_ctrl.asp sprintf remove_ext_proto/remove_ext_port stack-based overflow (EUVD-2025-22044)
9 months ago
A vulnerability classified as critical was found in D-Link DI-8100 1.0. This vulnerability affects the function sprintf of the file /upnp_ctrl.asp of the component jhttpd. The manipulation of the argument remove_ext_proto/remove_ext_port leads to stack-based buffer overflow.
This vulnerability was named CVE-2025-7911. The attack can be initiated remotely. Furthermore, there is an exploit available.
vuldb.com
Submit #618656: TOTOLINK T6 V4.1.5cu.748_B20211015 Buffer Overflow [Accepted]
9 months ago
Submit #618656 / VDB-317028
reisen_1943
Submit #618655: TOTOLINK T6 V4.1.5cu.748_B20211015 Buffer Overflow [Accepted]
9 months ago
Submit #618655 / VDB-317027
reisen_1943
CVE-2025-7910 | D-Link DIR-513 1.10 Boa Webserver formSetWanNonLogin sprintf curTime stack-based overflow (EUVD-2025-22041)
9 months ago
A vulnerability classified as critical has been found in D-Link DIR-513 1.10. This affects the function sprintf of the file /goform/formSetWanNonLogin of the component Boa Webserver. The manipulation of the argument curTime leads to stack-based buffer overflow. This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability is uniquely identified as CVE-2025-7910. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
vuldb.com
Submit #618641: D-Link DI-8100 V1.0 Buffer Overflow [Duplicate]
9 months ago
Submit #618641 / VDB-317026
bazhuayu
Submit #618640: D-Link DI-8100 V1.0 buf [Accepted]
9 months ago
Submit #618640 / VDB-317026
bazhuayu
CVE-2025-7909 | D-Link DIR-513 1.0 Boa Webserver formLanSetupRouterSettings sprintf curTime stack-based overflow (EUVD-2025-22042)
9 months ago
A vulnerability was found in D-Link DIR-513 1.0. It has been rated as critical. Affected by this issue is the function sprintf of the file /goform/formLanSetupRouterSettings of the component Boa Webserver. The manipulation of the argument curTime leads to stack-based buffer overflow. This vulnerability only affects products that are no longer supported by the maintainer.
This vulnerability is handled as CVE-2025-7909. The attack may be launched remotely. Furthermore, there is an exploit available.
vuldb.com
CVE-2025-7908 | D-Link DI-8100 1.0 jhttpd /ddns.asp?opt=add sprintf mx stack-based overflow (EUVD-2025-22037)
9 months ago
A vulnerability was found in D-Link DI-8100 1.0. It has been declared as critical. Affected by this vulnerability is the function sprintf of the file /ddns.asp?opt=add of the component jhttpd. The manipulation of the argument mx leads to stack-based buffer overflow.
This vulnerability is known as CVE-2025-7908. The attack can be launched remotely. Furthermore, there is an exploit available.
vuldb.com
Submit #618594: D-Link DIR-513 V1.10 Buffer Overflow [Accepted]
9 months ago
Submit #618594 / VDB-317025
bazhuayu