8.7

CVSS4.0

CVE-2026-32955 - Stack-based Buffer Overflow in Redirect URL Processing Allowing Arbitrary Code Execution

SD-330AC and AMC Manager provided by silex technology, Inc. contain a stack-based buffer overflow vulnerability in processing the redirect URLs. Arbitrary code may be executed on the device.

๐Ÿ“… Published: April 20, 2026, 3:19 a.m. ๐Ÿ”„ Last Modified: April 22, 2026, 4:56 p.m.

6.9

CVSS4.0

CVE-2026-32957 - Unauthenticated File Upload in Silex AMC Manager and SD-330AC Firmware

SD-330AC and AMC Manager provided by silex technology, Inc. contain a missing authentication for critical function issue on firmware maintenance. Arbitrary file may be uploaded on the device without authentication.

๐Ÿ“… Published: April 20, 2026, 3:19 a.m. ๐Ÿ”„ Last Modified: April 22, 2026, 4:58 p.m.

6.9

CVSS4.0

CVE-2026-32958 - Hardโ€‘Coded Cryptographic Key Enables Fake Firmware Updates

SD-330AC and AMC Manager provided by silex technology, Inc. use a hard-coded cryptographic key. An administrative user may be directed to apply a fake firmware update.

๐Ÿ“… Published: April 20, 2026, 3:19 a.m. ๐Ÿ”„ Last Modified: April 22, 2026, 5 p.m.

8.2

CVSS4.0

CVE-2026-32959 - Weak Cryptographic Algorithm Enables Manโ€‘inโ€‘theโ€‘Middle Data Retrieval

SD-330AC and AMC Manager provided by silex technology, Inc. contain an issue with a use of a broken or risky cryptographic algorithm. Information in the traffic may be retrieved via man-in-the-middle attack.

๐Ÿ“… Published: April 20, 2026, 3:18 a.m. ๐Ÿ”„ Last Modified: April 22, 2026, 5 p.m.

7.1

CVSS4.0

CVE-2026-32960 - Authentication Bypass via Sensitive Resource Reuse in Silex AMC Manager and SD-330AC

SD-330AC and AMC Manager provided by silex technology, Inc. contain an issue with a sensitive information in resource not removed before reuse. An attacker may login to the device without knowing the password by sending a crafted packet.

๐Ÿ“… Published: April 20, 2026, 3:18 a.m. ๐Ÿ”„ Last Modified: April 22, 2026, 5:01 p.m.

6.9

CVSS4.0

CVE-2026-32961 - Heapโ€‘Based Buffer Overflow in Silex AMC Manager and SDโ€‘330AC Causing Temporary Denial of Service

SD-330AC and AMC Manager provided by silex technology, Inc. contain a heap-based buffer overflow vulnerability in packet data processing of sx_smpd. Processing a crafted packet may cause a temporary denial-of-service (DoS) condition.

๐Ÿ“… Published: April 20, 2026, 3:18 a.m. ๐Ÿ”„ Last Modified: April 22, 2026, 5:02 p.m.

6.9

CVSS4.0

CVE-2026-32962 - Missing Authentication Allows Device Configuration Changes

SD-330AC and AMC Manager provided by silex technology, Inc. contain a missing authentication for critical function issue. The device configuration may be altered without authentication.

๐Ÿ“… Published: April 20, 2026, 3:18 a.m. ๐Ÿ”„ Last Modified: April 22, 2026, 5:30 p.m.

5.1

CVSS4.0

CVE-2026-32963 - Reflected Crossโ€‘Site Scripting via Crafted Web Pages

SD-330AC and AMC Manager provided by silex technology, Inc. contain a reflected cross-site scripting vulnerability. When a user logs in to the affected device and access some crafted web page, arbitrary script may be executed on the user's browser.

๐Ÿ“… Published: April 20, 2026, 3:18 a.m. ๐Ÿ”„ Last Modified: April 22, 2026, 5:09 p.m.

6.9

CVSS4.0

CVE-2026-32964 - Improper CRLF Neutralization Leading to Configuration Injection in Silex AMC Manager and SDโ€‘330AC

SD-330AC and AMC Manager provided by silex technology, Inc. contain an improper neutralization of CRLF sequences ('CRLF Injection') vulnerability. Processing some crafted configuration data may lead to arbitrary entries injected to the system configuration.

๐Ÿ“… Published: April 20, 2026, 3:17 a.m. ๐Ÿ”„ Last Modified: April 22, 2026, 5:29 p.m.

8.7

CVSS4.0

CVE-2026-32965 - Insecure Default Password Allows Unauthenticated Access on Silex SDโ€‘330AC and AMC Manager

Initialization of a resource with an insecure default vulnerability exists in SD-330AC and AMC Manager provided by silex technology, Inc. When the affected device is connected to the network with the initial (factory-default) configuration, the device can be configured with the null string password.

๐Ÿ“… Published: April 20, 2026, 3:17 a.m. ๐Ÿ”„ Last Modified: April 22, 2026, 5:29 p.m.
Total resulsts: 346283
Page 106 of 34,629
ยซ previous page ยป next page
Filters