5.1

CVSS4.0

CVE-2024-9918 - HuangDou UTCMS sql.php RunSql sql injection

A vulnerability has been found in HuangDou UTCMS V9 and classified as critical. This vulnerability affects the function RunSql of the file app/modules/ut-data/admin/sql.php. The manipulation of the argument sql leads to sql injection. The attack can be initiated remotely. The exploit has been disclโ€ฆ

๐Ÿ“… Published: Oct. 13, 2024, 8 p.m. ๐Ÿ”„ Last Modified: Oct. 19, 2024, 12:47 a.m.

8.5

CVSS3.1

CVE-2024-8070 -

CWE-312: Cleartext Storage of Sensitive Information vulnerability exists that exposes test credentials in the firmware binary

๐Ÿ“… Published: Oct. 13, 2024, 7:50 p.m. ๐Ÿ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.3

CVSS4.0

CVE-2024-9917 - HuangDou UTCMS template_creat.php deserialization

A vulnerability, which was classified as critical, was found in HuangDou UTCMS V9. This affects an unknown part of the file app/modules/ut-template/admin/template_creat.php. The manipulation of the argument content leads to deserialization. It is possible to initiate the attack remotely. The exploiโ€ฆ

๐Ÿ“… Published: Oct. 13, 2024, 7:31 p.m. ๐Ÿ”„ Last Modified: Oct. 19, 2024, 12:49 a.m.

6.9

CVSS4.0

CVE-2024-9916 - HuangDou UTCMS cli.php os command injection

A vulnerability, which was classified as critical, has been found in HuangDou UTCMS V9. Affected by this issue is some unknown functionality of the file app/modules/ut-cac/admin/cli.php. The manipulation of the argument o leads to os command injection. The attack may be launched remotely. The exploโ€ฆ

๐Ÿ“… Published: Oct. 13, 2024, 7 p.m. ๐Ÿ”„ Last Modified: Oct. 16, 2024, 10:11 p.m.

8.7

CVSS4.0

CVE-2024-9915 - D-Link DIR-619L B1 formVirtualServ buffer overflow

A vulnerability classified as critical was found in D-Link DIR-619L B1 2.06. Affected by this vulnerability is the function formVirtualServ of the file /goform/formVirtualServ. The manipulation of the argument curTime leads to buffer overflow. The attack can be launched remotely. The exploit has beโ€ฆ

๐Ÿ“… Published: Oct. 13, 2024, 6:31 p.m. ๐Ÿ”„ Last Modified: Oct. 16, 2024, 3:26 p.m.

8.7

CVSS4.0

CVE-2024-9914 - D-Link DIR-619L B1 formSetWizardSelectMode buffer overflow

A vulnerability classified as critical has been found in D-Link DIR-619L B1 2.06. Affected is the function formSetWizardSelectMode of the file /goform/formSetWizardSelectMode. The manipulation of the argument curTime leads to buffer overflow. It is possible to launch the attack remotely. The exploiโ€ฆ

๐Ÿ“… Published: Oct. 13, 2024, 6 p.m. ๐Ÿ”„ Last Modified: Oct. 16, 2024, 3:27 p.m.

8.7

CVSS4.0

CVE-2024-9913 - D-Link DIR-619L B1 formSetRoute buffer overflow

A vulnerability was found in D-Link DIR-619L B1 2.06. It has been rated as critical. This issue affects the function formSetRoute of the file /goform/formSetRoute. The manipulation of the argument curTime leads to buffer overflow. The attack may be initiated remotely. The exploit has been disclosedโ€ฆ

๐Ÿ“… Published: Oct. 13, 2024, 5:31 p.m. ๐Ÿ”„ Last Modified: Oct. 16, 2024, 3:31 p.m.

8.7

CVSS4.0

CVE-2024-9912 - D-Link DIR-619L B1 formSetQoS buffer overflow

A vulnerability was found in D-Link DIR-619L B1 2.06. It has been declared as critical. This vulnerability affects the function formSetQoS of the file /goform/formSetQoS. The manipulation of the argument curTime leads to buffer overflow. The attack can be initiated remotely. The exploit has been diโ€ฆ

๐Ÿ“… Published: Oct. 13, 2024, 4:31 p.m. ๐Ÿ”„ Last Modified: Oct. 16, 2024, 3:31 p.m.

8.7

CVSS4.0

CVE-2024-9911 - D-Link DIR-619L B1 formSetPortTr buffer overflow

A vulnerability was found in D-Link DIR-619L B1 2.06. It has been classified as critical. This affects the function formSetPortTr of the file /goform/formSetPortTr. The manipulation of the argument curTime leads to buffer overflow. It is possible to initiate the attack remotely. The exploit has beeโ€ฆ

๐Ÿ“… Published: Oct. 13, 2024, 4 p.m. ๐Ÿ”„ Last Modified: Oct. 16, 2024, 3:32 p.m.

8.7

CVSS4.0

CVE-2024-9910 - D-Link DIR-619L B1 formSetPassword buffer overflow

A vulnerability was found in D-Link DIR-619L B1 2.06 and classified as critical. Affected by this issue is the function formSetPassword of the file /goform/formSetPassword. The manipulation of the argument curTime leads to buffer overflow. The attack may be launched remotely. The exploit has been dโ€ฆ

๐Ÿ“… Published: Oct. 13, 2024, 2:31 p.m. ๐Ÿ”„ Last Modified: Oct. 16, 2024, 3:32 p.m.
Total resulsts: 349182
Page 8305 of 34,919
ยซ previous page ยป next page
Filters