9.8

CVSS3.1

CVE-2024-57045 -

A vulnerability in the D-Link DIR-859 router with firmware version A3 1.05 and earlier permits unauthorized individuals to bypass the authentication. An attacker can obtain a user name and password by forging a post request to the / getcfg.php page.

πŸ“… Published: Feb. 18, 2025, midnight πŸ”„ Last Modified: May 21, 2025, 1:08 p.m.

5.7

CVSS3.1

CVE-2025-25896 -

A buffer overflow vulnerability was discovered in D-Link DSL-3782 v1.01 via the destination, netmask, and gateway parameters. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet.

πŸ“… Published: Feb. 18, 2025, midnight πŸ”„ Last Modified: May 2, 2025, 3:46 p.m.

6.8

CVSS3.1

CVE-2024-39328 -

Insecure Permissions in Atos Eviden IDRA and IDCA before 2.7.0. A highly trusted role (Config Admin) could exceed their configuration privileges in a multi-partition environment and access some confidential data. Data integrity and availability is not at risk.

πŸ“… Published: Feb. 18, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.7

CVSS3.1

CVE-2025-25892 -

A buffer overflow vulnerability was discovered in D-Link DSL-3782 v1.01 via the sstartip, sendip, dstartip, and dendip parameters. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted packet.

πŸ“… Published: Feb. 18, 2025, midnight πŸ”„ Last Modified: May 2, 2025, 3:46 p.m.

9.8

CVSS3.1

CVE-2024-57049 -

A vulnerability in the TP-Link Archer c20 router with firmware version V6.6_230412 and earlier permits unauthorized individuals to bypass the authentication of some interfaces under the /cgi directory. When adding Referer: http://tplinkwifi.net to the the request, it will be recognized as passing t…

πŸ“… Published: Feb. 18, 2025, midnight πŸ”„ Last Modified: Feb. 12, 2026, 6:16 a.m.

7.1

CVSS3.1

CVE-2024-57254 -

An integer overflow in sqfs_inode_size in Das U-Boot before 2025.01-rc1 occurs in the symlink size calculation via a crafted squashfs filesystem.

πŸ“… Published: Feb. 18, 2025, midnight πŸ”„ Last Modified: Nov. 3, 2025, 8:16 p.m.

5.4

CVSS3.1

CVE-2024-56882 -

Sage DPW before 2024_12_000 is vulnerable to Cross Site Scripting (XSS). Low-privileged Sage users with employee role privileges can permanently store JavaScript code in the Kurstitel and Kurzinfo input fields. The injected payload is executed for each authenticated user who views and interacts wit…

πŸ“… Published: Feb. 18, 2025, midnight πŸ”„ Last Modified: Oct. 1, 2025, 5:42 p.m.

5

CVSS3.1

CVE-2024-57055 -

Server-Side Access Control Bypass vulnerability in WombatDialer before 25.02 could allow unauthorized users to potentially call certain services without the necessary access level. This issue is limited to services used by the client (not the general-use JSON services) and requires reverse engineer…

πŸ“… Published: Feb. 18, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

0.0

CVE-2024-57050 -

DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2018-11714. Reason: This candidate is a reservation duplicate of CVE-2018-11714. Notes: All CVE users should reference CVE-2018-11714 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidenta…

πŸ“… Published: Feb. 18, 2025, midnight πŸ”„ Last Modified: June 16, 2025, 10:15 p.m.

9.8

CVSS3.1

CVE-2025-25467 -

Insufficient tracking and releasing of allocated used memory in libx264 git master allows attackers to execute arbitrary code via creating a crafted AAC file.

πŸ“… Published: Feb. 18, 2025, midnight πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.
Total resulsts: 349182
Page 6708 of 34,919
Β« previous page Β» next page
Filters