5.4

CVSS3.1

CVE-2025-60675 -

A command injection vulnerability exists in the D-Link DIR-823G router firmware DIR823G_V1.0.2B05_20181207.bin in the timelycheck and sysconf binaries, which process the /tmp/new_qos.rule configuration file. The vulnerability occurs because parsed fields from the configuration file are concatenatedโ€ฆ

๐Ÿ“… Published: Nov. 13, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 17, 2025, 7:04 p.m.

6.5

CVSS3.1

CVE-2025-60673 -

An unauthenticated command injection vulnerability exists in the D-Link DIR-878A1 router firmware FW101B04.bin. The vulnerability occurs in the 'SetDMZSettings' functionality, where the 'IPAddress' parameter in prog.cgi is stored in NVRAM and later used by librcm.so to construct iptables commands eโ€ฆ

๐Ÿ“… Published: Nov. 13, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 17, 2025, 7:03 p.m.

6.8

CVSS3.1

CVE-2025-55810 -

A vulnerability was found in Alaga Home Security WiFi Camera 3K (model S-CW2503C-H) with hardware version V03 and firmware version 1.4.2, which allows physical attackers to execute commands as root via script file with a specific name on a SD card.

๐Ÿ“… Published: Nov. 13, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 9, 2026, 3:37 p.m.

6.5

CVSS3.1

CVE-2025-60701 -

A command injection vulnerability exists in the D-Link DIR-882 Router firmware DIR882A1_FW102B02 within the `prog.cgi` and `rc` binaries. The `sub_433188` function in `prog.cgi` stores user-supplied email configuration parameters (`EmailFrom`, `EmailTo`, `SMTPServerAddress`, `SMTPServerPort`, `Accoโ€ฆ

๐Ÿ“… Published: Nov. 13, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 17, 2025, 12:28 p.m.

6.5

CVSS3.1

CVE-2025-60683 -

A command injection vulnerability exists in the ToToLink A720R Router firmware V4.1.5cu.614_B20230630 within the sysconf binary, specifically in the sub_40BFA4 function that handles network interface reinitialization from '/var/system/linux_vlan_reinit'. Input is only partially validated by checkinโ€ฆ

๐Ÿ“… Published: Nov. 13, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 17, 2025, 7:16 p.m.

5.4

CVSS3.1

CVE-2025-60689 -

An unauthenticated command injection vulnerability exists in the Start_EPI function of the httpd binary on Linksys E1200 v2 routers (Firmware E1200_v2.0.11.001_us.tar.gz). The vulnerability occurs because user-supplied CGI parameters (wl_ant, wl_ssid, wl_rate, ttcp_num, ttcp_ip, ttcp_size) are concโ€ฆ

๐Ÿ“… Published: Nov. 13, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 19, 2025, 5:30 p.m.

5.1

CVSS3.1

CVE-2025-60685 -

A stack buffer overflow exists in the ToToLink A720R Router firmware V4.1.5cu.614_B20230630 within the sysconf binary (sub_401EE0 function). The binary reads the /proc/stat file using fgets() into a local buffer and subsequently parses the line using sscanf() into a single-byte variable with the %sโ€ฆ

๐Ÿ“… Published: Nov. 13, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 17, 2025, 9:50 p.m.

8.4

CVSS3.1

CVE-2025-60696 -

A stack-based buffer overflow vulnerability exists in the makeRequest.cgi binary of Linksys RE7000 routers (Firmware FW_v2.0.15_211230_1012). The arplookup function parses lines from /proc/net/arp using sscanf("%16s ... %18s ..."), storing results into buffers v6 (12 bytes) and v7 (20 bytes). Sinceโ€ฆ

๐Ÿ“… Published: Nov. 13, 2025, midnight ๐Ÿ”„ Last Modified: Dec. 8, 2025, 2:50 p.m.

6.5

CVSS3.1

CVE-2025-60672 -

An unauthenticated command injection vulnerability exists in the D-Link DIR-878A1 router firmware FW101B04.bin. The vulnerability occurs in the 'SetDynamicDNSSettings' functionality, where the 'ServerAddress' and 'Hostname' parameters in prog.cgi are stored in NVRAM and later used by rc to construcโ€ฆ

๐Ÿ“… Published: Nov. 13, 2025, midnight ๐Ÿ”„ Last Modified: Nov. 17, 2025, 7:04 p.m.

8.8

CVSS3.1

CVE-2025-63406 -

An issue in Intermesh BV GroupOffice vulnerable before v.25.0.47 and 6.8.136 allows a remote attacker to execute arbitrary code via the dbToApi() and eval() in the FunctionField.php

๐Ÿ“… Published: Nov. 13, 2025, midnight ๐Ÿ”„ Last Modified: Jan. 9, 2026, 3:45 p.m.
Total resulsts: 349182
Page 3030 of 34,919
ยซ previous page ยป next page
Filters