5.1

CVSS4.0

CVE-2020-36908 - Secure Computing SnapGear Management Console SG560 3.1.5 Cross-Site Request Forgery via Admin Users

SnapGear Management Console SG560 version 3.1.5 contains a cross-site request forgery vulnerability that allows attackers to perform administrative actions without user consent. Attackers can craft a malicious web page that automatically submits a form to create a new super user account with full a…

πŸ“… Published: Jan. 6, 2026, 3:52 p.m. πŸ”„ Last Modified: Feb. 23, 2026, 7 p.m.

8.7

CVSS4.0

CVE-2020-36907 - Extreme Networks Aerohive HiveOS <=11.x 11.x Unauthenticated Remote Denial of Service

Aerohive HiveOS contains a denial of service vulnerability in the NetConfig UI that allows unauthenticated attackers to render the web interface unusable. Attackers can send a crafted HTTP request to the action.php5 script with specific parameters to trigger a 5-minute service disruption.

πŸ“… Published: Jan. 6, 2026, 3:52 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.3

CVSS4.0

CVE-2020-36906 - P5 FNIP-8x16A FNIP-4xSH 1.0.20 Cross-Site Request Forgery via User Management

P5 FNIP-8x16A FNIP-4xSH 1.0.20 contains a cross-site request forgery vulnerability that allows attackers to perform administrative actions without user consent. Attackers can craft malicious web pages to add new admin users, change passwords, and modify system configurations by tricking authenticat…

πŸ“… Published: Jan. 6, 2026, 3:52 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

5.1

CVSS4.0

CVE-2020-36905 - FIBARO System Home Center 5.021 Remote File Inclusion via Proxy API

FIBARO System Home Center 5.021 contains a remote file inclusion vulnerability in the undocumented proxy API that allows attackers to include arbitrary client-side scripts. Attackers can exploit the 'url' GET parameter to inject malicious JavaScript and potentially hijack user sessions or manipulat…

πŸ“… Published: Jan. 6, 2026, 3:52 p.m. πŸ”„ Last Modified: April 15, 2026, 12:35 a.m.

8.7

CVSS4.0

CVE-2026-0640 - Tenda AC23 PowerSaveSet sscanf buffer overflow

A weakness has been identified in Tenda AC23 16.03.07.52. This affects the function sscanf of the file /goform/PowerSaveSet. Executing a manipulation of the argument Time can lead to buffer overflow. The attack can be launched remotely. The exploit has been made available to the public and could be…

πŸ“… Published: Jan. 6, 2026, 3:32 p.m. πŸ”„ Last Modified: April 18, 2026, 5 p.m.

8.5

CVSS4.0

CVE-2025-14979 - Eddie VPN 2.24.6 - Local Privilege Escalation

AirVPN Eddie on MacOS contains an insecure XPC service that allows local, unprivileged users to escalate their privileges to root.This issue affects Eddie: 2.24.6.

πŸ“… Published: Jan. 6, 2026, 3:15 p.m. πŸ”„ Last Modified: April 9, 2026, 9:17 p.m.

0.0

CVE-2026-22162 -

Not used

πŸ“… Published: Jan. 6, 2026, 3:01 p.m. πŸ”„ Last Modified: Jan. 7, 2026, 3:55 a.m.

0.0

CVE-2026-22158 -

Not used

πŸ“… Published: Jan. 6, 2026, 3:01 p.m. πŸ”„ Last Modified: Jan. 7, 2026, 3:55 a.m.

0.0

CVE-2026-22157 -

Not used

πŸ“… Published: Jan. 6, 2026, 3:01 p.m. πŸ”„ Last Modified: Jan. 7, 2026, 3:55 a.m.

0.0

CVE-2026-22161 -

Not used

πŸ“… Published: Jan. 6, 2026, 3:01 p.m. πŸ”„ Last Modified: Jan. 7, 2026, 3:55 a.m.
Total resulsts: 347738
Page 2128 of 34,774
Β« previous page Β» next page
Filters