6.3

CVSS3.1

CVE-2025-44864 -

Tenda W20E V15.11.0.6 was found to contain a command injection vulnerability in the formSetDebugCfg function via the module parameter. This vulnerability allows attackers to execute arbitrary commands via a crafted request.

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: May 27, 2025, 4:44 p.m.

5.5

CVSS3.1

CVE-2025-37742 - jfs: Fix uninit-value access of imap allocated in the diMount() function

In the Linux kernel, the following vulnerability has been resolved: jfs: Fix uninit-value access of imap allocated in the diMount() function syzbot reports that hex_dump_to_buffer is using uninit-value: ===================================================== BUG: KMSAN: uninit-value in hex_dump_to…

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: Jan. 2, 2026, 3:28 p.m.

5.3

CVSS3.1

CVE-2025-32882 -

An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. The app uses a custom implementation of encryption without any additional integrity checking mechanisms. This leaves messages malleable to an attacker that can access the message.

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: June 20, 2025, 4:52 p.m.

5.5

CVSS3.1

CVE-2025-23150 - ext4: fix off-by-one error in do_split

In the Linux kernel, the following vulnerability has been resolved: ext4: fix off-by-one error in do_split Syzkaller detected a use-after-free issue in ext4_insert_dentry that was caused by out-of-bounds access due to incorrect splitting in do_split. BUG: KASAN: use-after-free in ext4_insert_den…

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: Nov. 5, 2025, 6:03 p.m.

6.5

CVSS3.1

CVE-2025-44845 -

TOTOLINK CA600-PoE V5.3c.6665_B20180820 was found to contain a command injection vulnerability in the NTPSyncWithHost function via the hostTime parameter. This vulnerability allows attackers to execute arbitrary commands via a crafted request.

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: May 22, 2025, 3:31 p.m.

4

CVSS3.1

CVE-2025-32886 -

An issue was discovered on goTenna v1 devices with app 5.5.3 and firmware 0.25.5. All packets sent over RF are also sent over UART with USB Shell, allowing someone with local access to gain information about the protocol and intercept sensitive data.

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: June 20, 2025, 4:45 p.m.

7.3

CVSS3.1

CVE-2025-32888 -

An issue was discovered on goTenna Mesh devices with app 5.5.3 and firmware 1.1.12. The verification token used for sending SMS through a goTenna server is hardcoded in the app.

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: June 20, 2025, 4:38 p.m.

7.1

CVSS3.1

CVE-2025-46635 -

An issue was discovered on Tenda RX2 Pro 16.03.30.14 devices. Improper network isolation between the guest Wi-Fi network and other network interfaces on the router allows an attacker (who is authenticated to the guest Wi-Fi) to access resources on the router and/or resources and devices on other ne…

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: May 27, 2025, 2:18 p.m.

7.8

CVSS3.1

CVE-2022-49882 - KVM: Reject attempts to consume or refresh inactive gfn_to_pfn_cache

In the Linux kernel, the following vulnerability has been resolved: KVM: Reject attempts to consume or refresh inactive gfn_to_pfn_cache Reject kvm_gpc_check() and kvm_gpc_refresh() if the cache is inactive. Not checking the active flag during refresh is particularly egregious, as KVM can end up …

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: Nov. 10, 2025, 9:19 p.m.

7.8

CVSS3.1

CVE-2025-37778 - ksmbd: Fix dangling pointer in krb_authenticate

In the Linux kernel, the following vulnerability has been resolved: ksmbd: Fix dangling pointer in krb_authenticate krb_authenticate frees sess->user and does not set the pointer to NULL. It calls ksmbd_krb5_authenticate to reinitialise sess->user but that function may return without doing so. If…

πŸ“… Published: May 1, 2025, midnight πŸ”„ Last Modified: April 18, 2026, 8:56 a.m.
Total resulsts: 349182
Page 5619 of 34,919
Β« previous page Β» next page
Filters