6.5

CVSS3.1

CVE-2026-31167 -

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the mode parameter to /cgi-bin/cstecgi.cgi.

๐Ÿ“… Published: April 23, 2026, midnight ๐Ÿ”„ Last Modified: April 27, 2026, 2:56 p.m.

6.5

CVSS3.1

CVE-2026-31164 -

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the pppoeMtu parameter to /cgi-bin/cstecgi.cgi.

๐Ÿ“… Published: April 23, 2026, midnight ๐Ÿ”„ Last Modified: April 24, 2026, 3:13 p.m.

6.5

CVSS3.1

CVE-2026-31162 -

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the ttlWay parameter to /cgi-bin/cstecgi.cgi.

๐Ÿ“… Published: April 23, 2026, midnight ๐Ÿ”„ Last Modified: April 27, 2026, 2:57 p.m.

7.0

CVSS3.1

CVE-2026-31533 - net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption

In the Linux kernel, the following vulnerability has been resolved: net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption The -EBUSY handling in tls_do_encryption(), introduced by commit 859054147318 ("net: tls: handle backlogging of crypto requests"), has a use-after-free due to โ€ฆ

๐Ÿ“… Published: April 23, 2026, midnight ๐Ÿ”„ Last Modified: April 24, 2026, 2:38 p.m.

6.5

CVSS3.1

CVE-2026-31174 -

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the informEnable parameter to /cgi-bin/cstecgi.cgi.

๐Ÿ“… Published: April 23, 2026, midnight ๐Ÿ”„ Last Modified: April 24, 2026, 3:12 p.m.

6.5

CVSS3.1

CVE-2026-31172 -

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the user parameter to /cgi-bin/cstecgi.cgi.

๐Ÿ“… Published: April 23, 2026, midnight ๐Ÿ”„ Last Modified: April 24, 2026, 3:12 p.m.

6.5

CVSS3.1

CVE-2026-31165 -

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the pppoeServiceName parameter to /cgi-bin/cstecgi.cgi.

๐Ÿ“… Published: April 23, 2026, midnight ๐Ÿ”„ Last Modified: April 24, 2026, 3:12 p.m.

5.5

CVSS3.1

CVE-2026-31531 - ipv4: nexthop: allocate skb dynamically in rtm_get_nexthop()

In the Linux kernel, the following vulnerability has been resolved: ipv4: nexthop: allocate skb dynamically in rtm_get_nexthop() When querying a nexthop object via RTM_GETNEXTHOP, the kernel currently allocates a fixed-size skb using NLMSG_GOODSIZE. While sufficient for single nexthops and small โ€ฆ

๐Ÿ“… Published: April 23, 2026, midnight ๐Ÿ”„ Last Modified: April 23, 2026, 4:17 p.m.

6.5

CVSS3.1

CVE-2026-31168 -

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the recHour parameter to /cgi-bin/cstecgi.cgi.

๐Ÿ“… Published: April 23, 2026, midnight ๐Ÿ”„ Last Modified: April 27, 2026, 2:55 p.m.

6.5

CVSS3.1

CVE-2026-31160 -

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the provider parameter to /cgi-bin/cstecgi.cgi.

๐Ÿ“… Published: April 23, 2026, midnight ๐Ÿ”„ Last Modified: April 24, 2026, 3:13 p.m.
Total resulsts: 348419
Page 234 of 34,842
ยซ previous page ยป next page
Filters