7.2

CVSS3.1

CVE-2025-46123 -

An issue was discovered in CommScope Ruckus Unleashed prior to 200.15.6.212.14 and 200.17.7.0.139, and in Ruckus ZoneDirector prior to 10.5.1.0.279, where the authenticated configuration endpoint `/admin/_conf.jsp` writes the Wi-Fi guest password to memory with snprintf using the attacker-supplied …

πŸ“… Published: July 21, 2025, midnight πŸ”„ Last Modified: Aug. 5, 2025, 5:18 p.m.

8.7

CVSS4.0

CVE-2025-7913 - TOTOLINK T6 MQTT Service updateWifiInfo buffer overflow

A vulnerability, which was classified as critical, was found in TOTOLINK T6 4.1.5cu.748_B20211015. Affected is the function updateWifiInfo of the component MQTT Service. The manipulation of the argument serverIp leads to buffer overflow. It is possible to launch the attack remotely. The exploit has…

πŸ“… Published: July 20, 2025, 11:32 p.m. πŸ”„ Last Modified: July 23, 2025, 4:15 p.m.

8.7

CVSS4.0

CVE-2025-7912 - TOTOLINK T6 MQTT Service recvSlaveUpgstatus buffer overflow

A vulnerability, which was classified as critical, has been found in TOTOLINK T6 4.1.5cu.748_B20211015. This issue affects the function recvSlaveUpgstatus of the component MQTT Service. The manipulation of the argument s leads to buffer overflow. The attack may be initiated remotely. The exploit ha…

πŸ“… Published: July 20, 2025, 11:02 p.m. πŸ”„ Last Modified: July 23, 2025, 4:07 p.m.

8.7

CVSS4.0

CVE-2025-7911 - D-Link DI-8100 jhttpd upnp_ctrl.asp sprintf stack-based overflow

A vulnerability classified as critical was found in D-Link DI-8100 1.0. This vulnerability affects the function sprintf of the file /upnp_ctrl.asp of the component jhttpd. The manipulation of the argument remove_ext_proto/remove_ext_port leads to stack-based buffer overflow. The attack can be initi…

πŸ“… Published: July 20, 2025, 10:32 p.m. πŸ”„ Last Modified: Aug. 8, 2025, 4:20 p.m.

6.5

CVSS3.1

CVE-2025-53771 - Microsoft SharePoint Server Spoofing Vulnerability

Improper authentication in Microsoft Office SharePoint allows an unauthorized attacker to perform spoofing over a network.

πŸ“… Published: July 20, 2025, 10:16 p.m. πŸ”„ Last Modified: Feb. 13, 2026, 7:07 p.m.

8.7

CVSS4.0

CVE-2025-7910 - D-Link DIR-513 Boa Webserver formSetWanNonLogin sprintf stack-based overflow

A vulnerability classified as critical has been found in D-Link DIR-513 1.10. This affects the function sprintf of the file /goform/formSetWanNonLogin of the component Boa Webserver. The manipulation of the argument curTime leads to stack-based buffer overflow. It is possible to initiate the attack…

πŸ“… Published: July 20, 2025, 10:02 p.m. πŸ”„ Last Modified: July 25, 2025, 2:42 p.m.

8.7

CVSS4.0

CVE-2025-7909 - D-Link DIR-513 Boa Webserver formLanSetupRouterSettings sprintf stack-based overflow

A vulnerability was found in D-Link DIR-513 1.0. It has been rated as critical. Affected by this issue is the function sprintf of the file /goform/formLanSetupRouterSettings of the component Boa Webserver. The manipulation of the argument curTime leads to stack-based buffer overflow. The attack may…

πŸ“… Published: July 20, 2025, 9:32 p.m. πŸ”„ Last Modified: July 25, 2025, 2:46 p.m.

8.7

CVSS4.0

CVE-2025-7908 - D-Link DI-8100 jhttpd ddns.asp sprintf stack-based overflow

A vulnerability was found in D-Link DI-8100 1.0. It has been declared as critical. Affected by this vulnerability is the function sprintf of the file /ddns.asp?opt=add of the component jhttpd. The manipulation of the argument mx leads to stack-based buffer overflow. The attack can be launched remot…

πŸ“… Published: July 20, 2025, 9:02 p.m. πŸ”„ Last Modified: July 25, 2025, 2:51 p.m.

5.3

CVSS4.0

CVE-2025-7907 - yangzongzhuan RuoYi Druid application-druid.yml default credentials

A vulnerability was found in yangzongzhuan RuoYi up to 4.8.1. It has been classified as problematic. Affected is an unknown function of the file ruoyi-admin/src/main/resources/application-druid.yml of the component Druid. The manipulation leads to use of default credentials. It is possible to launc…

πŸ“… Published: July 20, 2025, 8:32 p.m. πŸ”„ Last Modified: Aug. 8, 2025, 4:22 p.m.

5.3

CVSS4.0

CVE-2025-7906 - yangzongzhuan RuoYi CommonController.java uploadFile unrestricted upload

A vulnerability was found in yangzongzhuan RuoYi up to 4.8.1 and classified as critical. This issue affects the function uploadFile of the file ruoyi-admin/src/main/java/com/ruoyi/web/controller/common/CommonController.java. The manipulation of the argument File leads to unrestricted upload. The at…

πŸ“… Published: July 20, 2025, 7:32 p.m. πŸ”„ Last Modified: Sept. 11, 2025, 3:32 p.m.
Total resulsts: 349182
Page 4581 of 34,919
Β« previous page Β» next page
Filters