5.1

CVSS4.0

CVE-2024-11657 - EnGenius ENH1350EXT/ENS500-AC/ENS620EXT diag_nslookup command injection

A vulnerability, which was classified as critical, was found in EnGenius ENH1350EXT, ENS500-AC and ENS620EXT up to 20241118. Affected is an unknown function of the file /admin/network/diag_nslookup. The manipulation of the argument diag_nslookup leads to command injection. It is possible to launch …

πŸ“… Published: Nov. 25, 2024, 5:31 a.m. πŸ”„ Last Modified: Feb. 12, 2025, 3:33 p.m.

5.1

CVSS4.0

CVE-2024-11656 - EnGenius ENH1350EXT/ENS500-AC/ENS620EXT diag_ping6 command injection

A vulnerability, which was classified as critical, has been found in EnGenius ENH1350EXT, ENS500-AC and ENS620EXT up to 20241118. This issue affects some unknown processing of the file /admin/network/diag_ping6. The manipulation of the argument diag_ping6 leads to command injection. The attack may …

πŸ“… Published: Nov. 25, 2024, 5 a.m. πŸ”„ Last Modified: Feb. 12, 2025, 3:32 p.m.

0.0

CVE-2020-11311 -

This CVE ID has been rejected or withdrawn by its CVE Numbering AuthorityΒ as duplicate. All references should point to CVE-2021-1904.

πŸ“… Published: Nov. 25, 2024, 4:50 a.m. πŸ”„ Last Modified: Nov. 26, 2024, 5:15 a.m.

5.1

CVSS4.0

CVE-2024-11655 - EnGenius ENH1350EXT/ENS500-AC/ENS620EXT diag_pinginterface command injection

A vulnerability classified as critical was found in EnGenius ENH1350EXT, ENS500-AC and ENS620EXT up to 20241118. This vulnerability affects unknown code of the file /admin/network/diag_pinginterface. The manipulation of the argument diag_ping leads to command injection. The attack can be initiated …

πŸ“… Published: Nov. 25, 2024, 4:31 a.m. πŸ”„ Last Modified: Feb. 12, 2025, 3:33 p.m.

5.1

CVSS4.0

CVE-2024-11654 - EnGenius ENH1350EXT/ENS500-AC/ENS620EXT diag_traceroute6 command injection

A vulnerability classified as critical has been found in EnGenius ENH1350EXT, ENS500-AC and ENS620EXT up to 20241118. This affects an unknown part of the file /admin/network/diag_traceroute6. The manipulation of the argument diag_traceroute6 leads to command injection. It is possible to initiate th…

πŸ“… Published: Nov. 25, 2024, 4 a.m. πŸ”„ Last Modified: Feb. 12, 2025, 3:32 p.m.

5.1

CVSS4.0

CVE-2024-11653 - EnGenius ENH1350EXT/ENS500-AC/ENS620EXT diag_traceroute command injection

A vulnerability was found in EnGenius ENH1350EXT, ENS500-AC and ENS620EXT up to 20241118. It has been rated as critical. Affected by this issue is some unknown functionality of the file /admin/network/diag_traceroute. The manipulation of the argument diag_traceroute leads to command injection. The …

πŸ“… Published: Nov. 25, 2024, 3:31 a.m. πŸ”„ Last Modified: Feb. 12, 2025, 3:33 p.m.

5.1

CVSS4.0

CVE-2024-11652 - EnGenius ENH1350EXT/ENS500-AC/ENS620EXT sn_https command injection

A vulnerability was found in EnGenius ENH1350EXT, ENS500-AC and ENS620EXT up to 20241118. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file /admin/sn_package/sn_https. The manipulation of the argument https_enable leads to command injection. Th…

πŸ“… Published: Nov. 25, 2024, 3 a.m. πŸ”„ Last Modified: Feb. 12, 2025, 3:32 p.m.

5.1

CVSS4.0

CVE-2024-11651 - EnGenius ENH1350EXT/ENS500-AC/ENS620EXT wifi_schedule command injection

A vulnerability was found in EnGenius ENH1350EXT, ENS500-AC and ENS620EXT up to 20241118. It has been classified as critical. Affected is an unknown function of the file /admin/network/wifi_schedule. The manipulation of the argument wifi_schedule_day_em_5 leads to command injection. It is possible …

πŸ“… Published: Nov. 25, 2024, 2:31 a.m. πŸ”„ Last Modified: Feb. 12, 2025, 3:33 p.m.

7.1

CVSS4.0

CVE-2024-11650 - Tenda i9 GetIPTV websReadEvent null pointer dereference

A vulnerability was found in Tenda i9 1.0.0.8(3828) and classified as critical. This issue affects the function websReadEvent of the file /goform/GetIPTV. The manipulation leads to null pointer dereference. The attack may be initiated remotely. The exploit has been disclosed to the public and may b…

πŸ“… Published: Nov. 25, 2024, 2 a.m. πŸ”„ Last Modified: Nov. 25, 2024, 7:18 p.m.

6.9

CVSS4.0

CVE-2024-11649 - 1000 Projects Beauty Parlour Management System search-appointment.php sql injection

A vulnerability has been found in 1000 Projects Beauty Parlour Management System 1.0 and classified as critical. This vulnerability affects unknown code of the file /admin/search-appointment.php. The manipulation of the argument searchdata leads to sql injection. The attack can be initiated remotel…

πŸ“… Published: Nov. 25, 2024, 1:31 a.m. πŸ”„ Last Modified: Nov. 26, 2024, 9:30 p.m.
Total resulsts: 345215
Page 7315 of 34,522
Β« previous page Β» next page
Filters