8.7

CVSS4.0

CVE-2025-7086 - Belkin F9K1122 webs formPPTPSetup stack-based overflow

A vulnerability classified as critical has been found in Belkin F9K1122 1.00.33. Affected is the function formPPTPSetup of the file /goform/formPPTPSetup of the component webs. The manipulation of the argument pptpUserName leads to stack-based buffer overflow. It is possible to launch the attack re…

πŸ“… Published: July 6, 2025, 5:02 p.m. πŸ”„ Last Modified: July 9, 2025, 5:38 p.m.

8.7

CVSS4.0

CVE-2025-7085 - Belkin F9K1122 webs formiNICWpsStart stack-based overflow

A vulnerability was found in Belkin F9K1122 1.00.33. It has been rated as critical. This issue affects the function formiNICWpsStart of the file /goform/formiNICWpsStart of the component webs. The manipulation of the argument pinCode leads to stack-based buffer overflow. The attack may be initiated…

πŸ“… Published: July 6, 2025, 4:32 p.m. πŸ”„ Last Modified: July 9, 2025, 5:35 p.m.

8.7

CVSS4.0

CVE-2025-7084 - Belkin F9K1122 webs formWpsStart stack-based overflow

A vulnerability was found in Belkin F9K1122 1.00.33. It has been declared as critical. This vulnerability affects the function formWpsStart of the file /goform/formWpsStart of the component webs. The manipulation of the argument pinCode leads to stack-based buffer overflow. The attack can be initia…

πŸ“… Published: July 6, 2025, 4:02 p.m. πŸ”„ Last Modified: July 9, 2025, 5:35 p.m.

5.3

CVSS4.0

CVE-2025-7083 - Belkin F9K1122 webs mp os command injection

A vulnerability was found in Belkin F9K1122 1.00.33. It has been classified as critical. This affects the function mp of the file /goform/mp of the component webs. The manipulation of the argument command leads to os command injection. It is possible to initiate the attack remotely. The exploit has…

πŸ“… Published: July 6, 2025, 3:32 p.m. πŸ”„ Last Modified: July 9, 2025, 5:35 p.m.

5.3

CVSS4.0

CVE-2025-7082 - Belkin F9K1122 webs formBSSetSitesurvey os command injection

A vulnerability was found in Belkin F9K1122 1.00.33 and classified as critical. Affected by this issue is the function formBSSetSitesurvey of the file /goform/formBSSetSitesurvey of the component webs. The manipulation of the argument wan_ipaddr/wan_netmask/wan_gateway/wl_ssid is directly passed by…

πŸ“… Published: July 6, 2025, 2:02 p.m. πŸ”„ Last Modified: July 9, 2025, 5:35 p.m.

9.5

CVSS4.0

CVE-2025-5333 - Unauthenticated Remote Code Execution in IT Management Suite

Remote attackers can execute arbitrary code in the context of the vulnerable service process.

πŸ“… Published: July 6, 2025, 1:50 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.3

CVSS4.0

CVE-2025-7081 - Belkin F9K1122 webs formSetWanStatic os command injection

A vulnerability has been found in Belkin F9K1122 1.00.33 and classified as critical. Affected by this vulnerability is the function formSetWanStatic of the file /goform/formSetWanStatic of the component webs. The manipulation of the argument m_wan_ipaddr/m_wan_netmask/m_wan_gateway/m_wan_staticdns1…

πŸ“… Published: July 6, 2025, 1:32 p.m. πŸ”„ Last Modified: July 9, 2025, 5:35 p.m.

6.3

CVSS4.0

CVE-2025-7080 - Done-0 Jank JWT Token jwt_utils.go hard-coded password

A vulnerability, which was classified as problematic, was found in Done-0 Jank up to 322caebbad10568460364b9667aa62c3080bfc17. Affected is an unknown function of the file internal/utils/jwt_utils.go of the component JWT Token Handler. The manipulation of the argument accessSecret/refreshSecret with…

πŸ“… Published: July 6, 2025, 1:02 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

6.3

CVSS4.0

CVE-2025-7079 - mao888 bluebell-plus JWT Token jwt.go hard-coded password

A vulnerability, which was classified as problematic, has been found in mao888 bluebell-plus up to 2.3.0. This issue affects some unknown processing of the file bluebell_backend/pkg/jwt/jwt.go of the component JWT Token Handler. The manipulation of the argument mySecret with the input bluebell-plus…

πŸ“… Published: July 6, 2025, 12:32 p.m. πŸ”„ Last Modified: Oct. 1, 2025, 6:51 p.m.

5.3

CVSS4.0

CVE-2025-7078 - 07FLYCMS/07FLY-CMS/07FlyCRM cross-site request forgery

A vulnerability classified as problematic was found in 07FLYCMS, 07FLY-CMS and 07FlyCRM up to 1.3.9. This vulnerability affects unknown code. The manipulation leads to cross-site request forgery. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. Thi…

πŸ“… Published: July 6, 2025, 8:32 a.m. πŸ”„ Last Modified: Nov. 6, 2025, 10:23 p.m.
Total resulsts: 345149
Page 4375 of 34,515
Β« previous page Β» next page
Filters