6.3

CVSS3.1

CVE-2024-57213 -

TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the newpasswd parameter in the action_passwd function.

๐Ÿ“… Published: Jan. 10, 2025, midnight ๐Ÿ”„ Last Modified: April 3, 2025, 3:48 p.m.

4.7

CVSS3.1

CVE-2024-33299 -

Cross Site Scripting vulnerability in Microweber v.2.0.9 allows a remote attacker to execute arbitrary code via the First Name and Last Name parameters in the endpoint /admin/module/view?type=users

๐Ÿ“… Published: Jan. 10, 2025, midnight ๐Ÿ”„ Last Modified: July 3, 2025, 12:39 a.m.

5.1

CVSS3.1

CVE-2024-57212 -

TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the opmode parameter in the action_reboot function.

๐Ÿ“… Published: Jan. 10, 2025, midnight ๐Ÿ”„ Last Modified: April 3, 2025, 3:48 p.m.

9.8

CVSS3.1

CVE-2024-57225 -

Linksys E7350 1.1.00.032 was discovered to contain a command injection vulnerability via the devname parameter in the reset_wifi function.

๐Ÿ“… Published: Jan. 10, 2025, midnight ๐Ÿ”„ Last Modified: April 16, 2025, 2:14 p.m.

8.8

CVSS3.1

CVE-2024-54996 -

MonicaHQ v4.1.2 was discovered to contain multiple authenticated Client-Side Injection vulnerabilities via the title and description parameters at /people/ID/reminders/create.

๐Ÿ“… Published: Jan. 10, 2025, midnight ๐Ÿ”„ Last Modified: May 7, 2025, 4:18 p.m.

4.7

CVSS3.1

CVE-2025-23111 -

An issue was discovered in REDCap 14.9.6. It allows HTML Injection via the Survey field name, exposing users to a redirection to a phishing website. An attacker can exploit this to trick the user that receives the survey into clicking on the field name, which redirects them to a phishing website. Tโ€ฆ

๐Ÿ“… Published: Jan. 10, 2025, midnight ๐Ÿ”„ Last Modified: Feb. 25, 2025, 4:16 p.m.

6.3

CVSS3.1

CVE-2024-57222 -

Linksys E7350 1.1.00.032 was discovered to contain a command injection vulnerability via the ifname parameter in the apcli_cancel_wps function.

๐Ÿ“… Published: Jan. 10, 2025, midnight ๐Ÿ”„ Last Modified: April 16, 2025, 1:59 p.m.

5.9

CVSS3.1

CVE-2024-54849 -

An issue in CP Plus CP-VNR-3104 B3223P22C02424 allows attackers to obtain the second RSA private key and access sensitive data or execute a man-in-the-middle attack.

๐Ÿ“… Published: Jan. 10, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 2, 2025, 4:54 p.m.

5.9

CVSS3.1

CVE-2024-54847 -

An issue in CP Plus CP-VNR-3104 B3223P22C02424 allows attackers to access the Diffie-Hellman (DH) parameters and access sensitive data or execute a man-in-the-middle attack.

๐Ÿ“… Published: Jan. 10, 2025, midnight ๐Ÿ”„ Last Modified: Oct. 2, 2025, 5:17 p.m.

8

CVSS3.1

CVE-2024-57227 -

Linksys E7350 1.1.00.032 was discovered to contain a command injection vulnerability via the ifname parameter in the apcli_do_enr_pbc_wps function.

๐Ÿ“… Published: Jan. 10, 2025, midnight ๐Ÿ”„ Last Modified: April 16, 2025, 2:16 p.m.
Total resulsts: 349182
Page 7194 of 34,919
ยซ previous page ยป next page
Filters