6.5

CVSS3.1

CVE-2026-31163 -

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the dhcpMtu parameter to /cgi-bin/cstecgi.cgi.

๐Ÿ“… Published: April 23, 2026, midnight ๐Ÿ”„ Last Modified: April 27, 2026, 2:57 p.m.

9.8

CVSS3.1

CVE-2026-39087 - Remote Code Execution via Action Parsing in Ntfy ntfy.sh

ntfy before 2.22.0 allows SSRF because of an unanchored regular expression.

๐Ÿ“… Published: April 23, 2026, midnight ๐Ÿ”„ Last Modified: May 4, 2026, 5:20 a.m.

9.8

CVSS3.1

CVE-2026-31181 -

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the stunServerAddr parameter to /cgi-bin/cstecgi.cgi.

๐Ÿ“… Published: April 23, 2026, midnight ๐Ÿ”„ Last Modified: April 27, 2026, 2:58 p.m.

9.8

CVSS3.1

CVE-2026-31178 -

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the stunMaxAlive parameter to /cgi-bin/cstecgi.cgi.

๐Ÿ“… Published: April 23, 2026, midnight ๐Ÿ”„ Last Modified: April 27, 2026, 2:58 p.m.

6.5

CVSS3.1

CVE-2026-31176 -

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the stun_user parameter to /cgi-bin/cstecgi.cgi.

๐Ÿ“… Published: April 23, 2026, midnight ๐Ÿ”„ Last Modified: April 24, 2026, 3:12 p.m.

6.5

CVSS3.1

CVE-2026-31167 -

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the mode parameter to /cgi-bin/cstecgi.cgi.

๐Ÿ“… Published: April 23, 2026, midnight ๐Ÿ”„ Last Modified: April 27, 2026, 2:56 p.m.

6.5

CVSS3.1

CVE-2026-31164 -

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the pppoeMtu parameter to /cgi-bin/cstecgi.cgi.

๐Ÿ“… Published: April 23, 2026, midnight ๐Ÿ”„ Last Modified: April 24, 2026, 3:13 p.m.

6.5

CVSS3.1

CVE-2026-31162 -

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the ttlWay parameter to /cgi-bin/cstecgi.cgi.

๐Ÿ“… Published: April 23, 2026, midnight ๐Ÿ”„ Last Modified: April 27, 2026, 2:57 p.m.

7.0

CVSS3.1

CVE-2026-31533 - net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption

In the Linux kernel, the following vulnerability has been resolved: net/tls: fix use-after-free in -EBUSY error path of tls_do_encryption The -EBUSY handling in tls_do_encryption(), introduced by commit 859054147318 ("net: tls: handle backlogging of crypto requests"), has a use-after-free due to โ€ฆ

๐Ÿ“… Published: April 23, 2026, midnight ๐Ÿ”„ Last Modified: April 24, 2026, 2:38 p.m.

6.5

CVSS3.1

CVE-2026-31174 -

An issue was discovered in ToToLink A3300R firmware v17.0.0cu.557_B20221024 allowing attackers to execute arbitrary commands via the informEnable parameter to /cgi-bin/cstecgi.cgi.

๐Ÿ“… Published: April 23, 2026, midnight ๐Ÿ”„ Last Modified: April 24, 2026, 3:12 p.m.
Total resulsts: 348434
Page 235 of 34,844
ยซ previous page ยป next page
Filters