Show filters
4,531 Total Results
Displaying 51-60 of 4,531
Sort by:
Attacker Value
Unknown
CVE-2025-25676
Disclosure Date: February 20, 2025 (last updated February 23, 2025)
Tenda i12 V1.0.0.10(3805) was discovered to contain a buffer overflow via the list parameter in the formwrlSSIDset function.
0
Attacker Value
Unknown
CVE-2025-25674
Disclosure Date: February 20, 2025 (last updated February 23, 2025)
Tenda AC10 V1.0 V15.03.06.23 is vulnerable to Buffer Overflow in form_fast_setting_wifi_set via the parameter ssid.
0
Attacker Value
Unknown
CVE-2025-25668
Disclosure Date: February 20, 2025 (last updated February 23, 2025)
Tenda AC8V4 V16.03.34.06 was discovered to contain a stack overflow via the shareSpeed parameter in the sub_47D878 function.
0
Attacker Value
Unknown
CVE-2025-25667
Disclosure Date: February 20, 2025 (last updated February 23, 2025)
Tenda AC8V4 V16.03.34.06 was discovered to contain a stack overflow via the urls parameter in the function get_parentControl_list_Info.
0
Attacker Value
Unknown
CVE-2025-25664
Disclosure Date: February 20, 2025 (last updated February 23, 2025)
Tenda AC8V4 V16.03.34.06 was discovered to contain a stack overflow via the shareSpeed parameter in the sub_49E098 function.
0
Attacker Value
Unknown
CVE-2025-25663
Disclosure Date: February 20, 2025 (last updated February 23, 2025)
A vulnerability was found in Tenda AC8V4 V16.03.34.06. Affected is the function SUB_0046AC38 of the file /goform/WifiExtraSet. The manipulation of the argument wpapsk_crypto leads to stack-based buffer overflow.
0
Attacker Value
Unknown
CVE-2025-25662
Disclosure Date: February 20, 2025 (last updated February 23, 2025)
Tenda O4 V3.0 V1.0.0.10(2936) is vulnerable to Buffer Overflow in the function SafeSetMacFilter of the file /goform/setMacFilterList via the argument remark/type/time.
0
Attacker Value
Unknown
CVE-2023-51336
Disclosure Date: February 20, 2025 (last updated February 23, 2025)
PHPJabbers Meeting Room Booking System v1.0 is vulnerable to CSV Injection vulnerability which allows an attacker to execute remote code. The vulnerability exists due to insufficient input validation on Languages section Labels any parameters field in System Options that is used to construct CSV file.
0
Attacker Value
Unknown
CVE-2023-51333
Disclosure Date: February 20, 2025 (last updated February 23, 2025)
PHPJabbers Cinema Booking System v1.0 is vulnerable to CSV Injection vulnerability which allows an attacker to execute remote code. The vulnerability exists due to insufficient input validation on Languages section Labels any parameters field in System Options that is used to construct CSV file.
0
Attacker Value
Unknown
CVE-2025-21692
Disclosure Date: February 10, 2025 (last updated February 23, 2025)
In the Linux kernel, the following vulnerability has been resolved:
net: sched: fix ets qdisc OOB Indexing
Haowei Yan <g1042620637@gmail.com> found that ets_class_from_arg() can
index an Out-Of-Bound class in ets_class_from_arg() when passed clid of
0. The overflow may cause local privilege escalation.
[ 18.852298] ------------[ cut here ]------------
[ 18.853271] UBSAN: array-index-out-of-bounds in net/sched/sch_ets.c:93:20
[ 18.853743] index 18446744073709551615 is out of range for type 'ets_class [16]'
[ 18.854254] CPU: 0 UID: 0 PID: 1275 Comm: poc Not tainted 6.12.6-dirty #17
[ 18.854821] Hardware name: QEMU Standard PC (i440FX + PIIX, 1996), BIOS 1.15.0-1 04/01/2014
[ 18.856532] Call Trace:
[ 18.857441] <TASK>
[ 18.858227] dump_stack_lvl+0xc2/0xf0
[ 18.859607] dump_stack+0x10/0x20
[ 18.860908] __ubsan_handle_out_of_bounds+0xa7/0xf0
[ 18.864022] ets_class_change+0x3d6/0x3f0
[ 18.864322] tc_ctl_tclass+0x251/0x910
[ 18.864587] ? lock_…
0