Show filters
51 Total Results
Displaying 1-10 of 51
Sort by:
Attacker Value
Unknown

CVE-2023-33768

Disclosure Date: July 13, 2023 (last updated October 08, 2023)
Incorrect signature verification of the firmware during the Device Firmware Update process of Belkin Wemo Smart Plug WSP080 v1.2 allows attackers to cause a Denial of Service (DoS) via a crafted firmware file.
Attacker Value
Unknown

CVE-2023-27217

Disclosure Date: May 18, 2023 (last updated October 08, 2023)
A stack-based buffer overflow in the ChangeFriendlyName() function of Belkin Smart Outlet V2 F7c063 firmware_2.00.11420.OWRT.PVT_SNSV2 allows attackers to cause a Denial of Service (DoS) via a crafted UPNP request.
Attacker Value
Unknown

CVE-2022-30105

Disclosure Date: May 18, 2022 (last updated October 07, 2023)
In Belkin N300 Firmware 1.00.08, the script located at /setting_hidden.asp, which is accessible before and after configuring the device, exhibits multiple remote command injection vulnerabilities. The following parameters in the [form name] form; [list vulnerable parameters], are not properly sanitized after being submitted to the web interface in a POST request. With specially crafted parameters, it is possible to inject a an OS command which will be executed with root privileges, as the web interface, and all processes on the device, run as root.
Attacker Value
Unknown

CVE-2021-25310

Disclosure Date: February 02, 2021 (last updated February 22, 2025)
The administration web interface on Belkin Linksys WRT160NL 1.0.04.002_US_20130619 devices allows remote authenticated attackers to execute system commands with root privileges via shell metacharacters in the ui_language POST parameter to the apply.cgi form endpoint. This occurs in do_upgrade_post in mini_httpd. NOTE: This vulnerability only affects products that are no longer supported by the maintaine
Attacker Value
Unknown

CVE-2020-26561

Disclosure Date: October 23, 2020 (last updated February 22, 2025)
Belkin LINKSYS WRT160NL 1.0.04.002_US_20130619 devices have a stack-based buffer overflow vulnerability because of sprintf in create_dir in mini_httpd. Successful exploitation leads to arbitrary code execution. NOTE: This vulnerability only affects products that are no longer supported by the maintainer
Attacker Value
Unknown

CVE-2013-2679

Disclosure Date: February 18, 2020 (last updated February 21, 2025)
Multiple cross-site scripting (XSS) vulnerabilities in Cisco Linksys E4200 router with firmware 1.0.05 build 7 allow remote attackers to inject arbitrary web script or HTML via the (1) log_type, (2) ping_ip, (3) ping_size, (4) submit_type, or (5) traceroute_ip parameter to apply.cgi or (6) new_workgroup or (7) submit_button parameter to storage/apply.cgi.
Attacker Value
Unknown

CVE-2013-7173

Disclosure Date: February 13, 2020 (last updated February 21, 2025)
Belkin n750 routers have a buffer overflow.
Attacker Value
Unknown

CVE-2013-3091

Disclosure Date: February 07, 2020 (last updated February 21, 2025)
An Authentication Bypass vulnerability in Belkin N300 (F7D7301v1) router allows remote attackers to bypass authentication using "Javascript debugging."
Attacker Value
Unknown

CVE-2013-2748

Disclosure Date: January 28, 2020 (last updated February 21, 2025)
Belkin Wemo Switch before WeMo_US_2.00.2176.PVT could allow remote attackers to upload arbitrary files onto the system.
Attacker Value
Unknown

Stack-Based Overflow vulnerability in Belkin WeMo Insights Switch

Disclosure Date: January 27, 2020 (last updated February 21, 2025)
A Stack-based Buffer Overflow vulnerability in libbelkin_api.so component of Belkin WeMo Insight Switch firmware allows a local attacker to obtain code execution on the device. This issue affects: Belkin WeMo Insight Switch firmware version 2.00.11396 and prior versions.