8.1

CVSS3.1

CVE-2026-26417 -

A broken access control vulnerability in the password reset functionality of Tata Consultancy Services Cognix Recon Client v3.0 allows authenticated users to reset passwords of arbitrary user accounts via crafted requests.

๐Ÿ“… Published: March 5, 2026, midnight ๐Ÿ”„ Last Modified: April 17, 2026, 1 p.m.

7.5

CVSS3.1

CVE-2026-26418 - Unauthenticated Access in Cognix Recon Client Web API Allows Remote Functionality Exfiltration

Missing authentication and authorization in the web API of Tata Consultancy Services Cognix Recon Client v3.0 allows remote attackers to access application functionality without restriction via the network.

๐Ÿ“… Published: March 5, 2026, midnight ๐Ÿ”„ Last Modified: April 16, 2026, 1:15 p.m.

7.5

CVSS3.1

CVE-2025-70949 -

An observable timing discrepancy in @perfood/couch-auth v0.26.0 allows attackers to access sensitive information via a timing side-channel.

๐Ÿ“… Published: March 5, 2026, midnight ๐Ÿ”„ Last Modified: March 9, 2026, 1:36 p.m.

8.8

CVSS3.1

CVE-2026-26416 - Authorization bypass in TCS Cognix Recon Client enabling privilege escalation

An authorization bypass vulnerability in Tata Consultancy Services Cognix Recon Client v3.0 allows authenticated users to escalate privileges across role boundaries via crafted requests.

๐Ÿ“… Published: March 5, 2026, midnight ๐Ÿ”„ Last Modified: April 17, 2026, 1 p.m.

9.8

CVSS3.1

CVE-2025-70229 -

Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSchedule.

๐Ÿ“… Published: March 5, 2026, midnight ๐Ÿ”„ Last Modified: March 6, 2026, 5:38 p.m.

9.8

CVSS3.1

CVE-2025-70232 -

Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetMACFilter.

๐Ÿ“… Published: March 5, 2026, midnight ๐Ÿ”„ Last Modified: March 6, 2026, 5:36 p.m.

9.8

CVSS3.1

CVE-2025-70230 -

Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetDDNS.

๐Ÿ“… Published: March 5, 2026, midnight ๐Ÿ”„ Last Modified: March 6, 2026, 5:37 p.m.

9.8

CVSS3.1

CVE-2025-70233 -

Stack buffer overflow vulnerability in D-Link DIR-513 v1.10 via the curTime parameter to goform/formSetEnableWizard.

๐Ÿ“… Published: March 5, 2026, midnight ๐Ÿ”„ Last Modified: March 6, 2026, 5:36 p.m.

8.1

CVSS3.1

CVE-2025-70614 -

OpenCode Systems OC Messaging / USSD Gateway OC Release 6.32.2 contains a broken access control vulnerability in the web-based control panel allowing authenticated low-privileged attackers to gain to access to arbitrary SMS messages via a crafted company or tenant identifier parameter.

๐Ÿ“… Published: March 5, 2026, midnight ๐Ÿ”„ Last Modified: May 6, 2026, 5:51 p.m.

9.8

CVSS3.1

CVE-2025-29165 - Privilege Escalation via /etc/shadow.sample on D-Link DIR-1253

An issue in D-Link DIR-1253 MESH V1.6.1684 allows an attacker to escalate privileges via the etc/shadow.sample component

๐Ÿ“… Published: March 5, 2026, midnight ๐Ÿ”„ Last Modified: May 6, 2026, 5:58 p.m.
Total resulsts: 348588
Page 1276 of 34,859
ยซ previous page ยป next page
Filters