8.7

CVSS4.0

CVE-2025-8822 - Linksys RE6250/RE6300/RE6350/RE6500/RE7000/RE9000 setOpMode algDisable stack-based overflow

A vulnerability has been found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. Affected is the function algDisable of the file /goform/setOpMode. The manipulation of the argument opMode leads to stack-based buffer overflow. It is possible to launch the attack remotely. …

πŸ“… Published: Aug. 11, 2025, 12:32 a.m. πŸ”„ Last Modified: Sept. 4, 2025, 6:39 p.m.

5.3

CVSS4.0

CVE-2025-8821 - Linksys RE6250/RE6300/RE6350/RE6500/RE7000/RE9000 RP_setBasic os command injection

A vulnerability was identified in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. This issue affects the function RP_setBasic of the file /goform/RP_setBasic. The manipulation of the argument bssid leads to os command injection. The attack may be initiated remotely. The ex…

πŸ“… Published: Aug. 11, 2025, 12:02 a.m. πŸ”„ Last Modified: Sept. 4, 2025, 6:39 p.m.

5.5

CVSS3.1

CVE-2025-38499 - clone_private_mnt(): make sure that caller has CAP_SYS_ADMIN in the right userns

In the Linux kernel, the following vulnerability has been resolved: clone_private_mnt(): make sure that caller has CAP_SYS_ADMIN in the right userns What we want is to verify there is that clone won't expose something hidden by a mount we wouldn't be able to undo. "Wouldn't be able to undo" may …

πŸ“… Published: Aug. 11, 2025, midnight πŸ”„ Last Modified: Jan. 7, 2026, 4:26 p.m.

3.3

CVSS3.1

CVE-2025-8860 - Qemu-kvm: uefi-vars: information disclosure vulnerability in uefi_vars_write callback

A flaw was found in QEMU in the uefi-vars virtual device. When the guest writes to register UEFI_VARS_REG_BUFFER_SIZE, the .write callback `uefi_vars_write` is invoked. The function allocates a heap buffer without zeroing the memory, leaving the buffer filled with residual data from prior allocatio…

πŸ“… Published: Aug. 11, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.5

CVSS3.1

CVE-2025-51824 -

libcsp 2.0 is vulnerable to Buffer Overflow in the csp_usart_open() function at drivers/usart/zephyr.c.

πŸ“… Published: Aug. 11, 2025, midnight πŸ”„ Last Modified: Aug. 14, 2025, 4:22 p.m.

9.8

CVSS3.1

CVE-2025-45146 -

ModelCache for LLM through v0.2.0 was discovered to contain an deserialization vulnerability via the component /manager/data_manager.py. This vulnerability allows attackers to execute arbitrary code via supplying crafted data.

πŸ“… Published: Aug. 11, 2025, midnight πŸ”„ Last Modified: Oct. 17, 2025, 6:06 p.m.

6.5

CVSS3.1

CVE-2025-51823 -

libcsp 2.0 is vulnerable to Buffer Overflow in the csp_eth_init() function due to improper handling of the ifname parameter. The function uses strcpy to copy the interface name into a structure member (ctx->name) without validating the input length.

πŸ“… Published: Aug. 11, 2025, midnight πŸ”„ Last Modified: Aug. 14, 2025, 4:24 p.m.

8.7

CVSS4.0

CVE-2025-8820 - Linksys RE6250/RE6300/RE6350/RE6500/RE7000/RE9000 wirelessBasic stack-based overflow

A vulnerability was determined in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. This vulnerability affects the function wirelessBasic of the file /goform/wirelessBasic. The manipulation of the argument submit_SSID1 leads to stack-based buffer overflow. The attack can be …

πŸ“… Published: Aug. 10, 2025, 11:32 p.m. πŸ”„ Last Modified: Sept. 4, 2025, 6:40 p.m.

8.7

CVSS4.0

CVE-2025-8819 - Linksys RE6250/RE6300/RE6350/RE6500/RE7000/RE9000 setWan stack-based overflow

A vulnerability was found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. This affects the function setWan of the file /goform/setWan. The manipulation of the argument staticIp leads to stack-based buffer overflow. It is possible to initiate the attack remotely. The exp…

πŸ“… Published: Aug. 10, 2025, 11:02 p.m. πŸ”„ Last Modified: Sept. 4, 2025, 6:40 p.m.

5.3

CVSS4.0

CVE-2025-8818 - Linksys RE6250/RE6300/RE6350/RE6500/RE7000/RE9000 setLan setDFSSetting os command injection

A vulnerability has been found in Linksys RE6250, RE6300, RE6350, RE6500, RE7000 and RE9000 up to 20250801. Affected by this issue is the function setDFSSetting of the file /goform/setLan. The manipulation of the argument lanNetmask/lanIp leads to os command injection. The attack may be launched re…

πŸ“… Published: Aug. 10, 2025, 10:32 p.m. πŸ”„ Last Modified: Sept. 4, 2025, 6:41 p.m.
Total resulsts: 349182
Page 4356 of 34,919
Β« previous page Β» next page
Filters