Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
Vulnerabilities by risk score
10
CVSSv2
CVE-2022-32054
Tenda AC10 US_AC10V1.0RTL_V15.03.06.26_multi_TD01 exists to contain a remote code execution (RCE) vulnerability via the lanIp parameter.
Tenda Ac10 Firmware 15.03.06.26
10
CVSSv2
CVE-2022-25046
A path traversal vulnerability in loader.php of CWP v0.9.8.1122 allows malicious users to execute arbitrary code via a crafted POST request.
Control-webpanel Webpanel
10
CVSSv2
CVE-2022-20083
In Modem 2G/3G CC, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution when decoding combined FACILITY with no additional execution privileges needed. User interaction is not needed for exploitation. Patch ID: MOLY008038...
Mediatek Lr11 -
Mediatek Lr12 -
Mediatek Lr12a -
Mediatek Lr13 -
Mediatek Nr15 -
Mediatek Lr9 -
Mediatek Nr16 -
10
CVSSv2
CVE-2022-21744
In Modem 2G RR, there is a possible out of bounds write due to a missing bounds check. This could lead to remote code execution when decoding GPRS Packet Neighbour Cell Data (PNCD) improper neighbouring cell size with no additional execution privileges needed. User interaction is...
Mediatek Lr11 -
Mediatek Lr12 -
Mediatek Lr12a -
Mediatek Lr13 -
Mediatek Nr15 -
Mediatek Lr9 -
Mediatek Nr16 -
10
CVSSv2
CVE-2022-25900
All versions of package git-clone are vulnerable to Command Injection due to insecure usage of the --upload-pack feature of git.
Git-clone Project Git-clone
10
CVSSv2
CVE-2022-32032
Tenda AX1806 v1.0.0.1 exists to contain a stack overflow via the deviceList parameter in the function formAddMacfilterRule.
Tenda Ax1806 Firmware 1.0.0.1
10
CVSSv2
CVE-2022-2274
The OpenSSL 3.0.4 release introduced a serious bug in the RSA implementation for X86_64 CPUs supporting the AVX512IFMA instructions. This issue makes the RSA implementation with 2048 bit private keys incorrect on such machines and memory corruption will happen during the computat...
Openssl Openssl 3.0.4
Netapp Snapcenter -
Netapp H410c Firmware -
Netapp H300s Firmware -
Netapp H500s Firmware -
Netapp H700s Firmware -
Netapp H410s Firmware -
3 Github repositories
10
CVSSv2
CVE-2022-2197
By using a specific credential string, an attacker with network access to the device’s web interface could circumvent the authentication scheme and perform administrative operations.
Exemys Rme1 Firmware
10
CVSSv2
CVE-2021-41506
Xiaongmai AHB7008T-MH-V2, AHB7804R-ELS, AHB7804R-MH-V2, AHB7808R-MS-V2, AHB7808R-MS, AHB7808T-MS-V2, AHB7804R-LMS, HI3518_50H10L_S39 V4.02.R11.7601.Nat.Onvif.20170420, V4.02.R11.Nat.Onvif.20160422, V4.02.R11.7601.Nat.Onvif.20170424, V4.02.R11.Nat.Onvif.20170327, V4.02.R11.Nat.Onv...
Xiongmaitech Ahb7008t-mh-v2 Firmware 4.02.r11.7601.nat.onvif.20170420
Xiongmaitech Ahb7804r-els Firmware 4.02.r11.nat.onvif.20160422
Xiongmaitech Ahb7804r-mh-v2 Firmware 4.02.r11.7601.nat.onvif.20170424
Xiongmaitech Ahb7808r-ms-v2 Firmware 4.02.r11.nat.onvif.20170327
Xiongmaitech Ahb7808r-ms Firmware 4.02.r11.nat.onvif.20160328
Xiongmaitech Ahb7808t-ms-v2 Firmware 4.02.r11.nat.onvifc.20161205
Xiongmaitech Ahb7804r-lms Firmware 4.02.r11.nat.20170301
Xiongmaitech Hi3518e 50h10l S39 Firmware 4.02.r12.nat.onvifs.20170727
10
CVSSv2
CVE-2021-40643
EyesOfNetwork prior to 07-07-2021 has a Remote Code Execution vulnerability on the mail options configuration page. In the location of the "sendmail" application in the "cacti" configuration page (by default/usr/sbin/sendmail) it is possible to execute any com...
Eyesofnetwork Eyesofnetwork
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-4761
command injection
CVE-2024-3676
IDOR
CVE-2024-30039
CVE-2024-32113
CVE-2024-30049
CVE-2024-4776
SQL injection
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »