Search Results (332590 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2022-37864 1 Siemens 1 Solid Edge 2024-11-21 7.8 High
A vulnerability has been identified in Solid Edge (All Versions < SE2022MP9). The affected application contains an out of bounds write past the fixed-length heap-based buffer while parsing specially crafted DWG files. This could allow an attacker to execute code in the context of the current process. (ZDI-CAN-17627)
CVE-2022-37861 1 Tenhot 2 Tws-100, Tws-100 Firmware 2024-11-21 9.8 Critical
There is a remote code execution (RCE) vulnerability in Tenhot TWS-100 V4.0-201809201424 router device. It is necessary to know that the device account password is allowed to escape the execution system command through the network tools in the network diagnostic component.
CVE-2022-37860 1 Tp-link 2 M7350, M7350 Firmware 2024-11-21 9.8 Critical
The web configuration interface of the TP-Link M7350 V3 with firmware version 190531 is affected by a pre-authentication command injection vulnerability.
CVE-2022-37857 1 Hauk Project 1 Hauk 2024-11-21 7.5 High
bilde2910 Hauk v1.6.1 requires a hardcoded password which by default is blank. This hardcoded password is hashed but stored within the config.php file server-side as well as in clear-text on the android client device by default.
CVE-2022-37843 1 Totolink 2 A860r, A860r Firmware 2024-11-21 9.8 Critical
In TOTOLINK A860R V4.1.2cu.5182_B20201027 in cstecgi.cgi, the acquired parameters are directly put into the system for execution without filtering, resulting in a command injection vulnerability.
CVE-2022-37842 1 Totolink 2 A860r, A860r Firmware 2024-11-21 9.8 Critical
In TOTOLINK A860R V4.1.2cu.5182_B20201027, the parameters in infostat.cgi are not filtered, causing a buffer overflow vulnerability.
CVE-2022-37841 1 Totolink 2 A860r, A860r Firmware 2024-11-21 7.5 High
In TOTOLINK A860R V4.1.2cu.5182_B20201027 there is a hard coded password for root in /etc/shadow.sample.
CVE-2022-37840 1 Totolink 2 A860r, A860r Firmware 2024-11-21 9.8 Critical
In TOTOLINK A860R V4.1.2cu.5182_B20201027, the main function in downloadfile.cgi has a buffer overflow vulnerability.
CVE-2022-37839 1 Totolink 2 A860r, A860r Firmware 2024-11-21 9.8 Critical
TOTOLINK A860R V4.1.2cu.5182_B20201027 is vulnerable to Buffer Overflow via Cstecgi.cgi.
CVE-2022-37835 1 Torguard 1 Vpn 2024-11-21 7.5 High
Torguard VPN 4.8, has a vulnerability that allows an attacker to dump sensitive information, such as credentials and information about the server, without admin privileges.
CVE-2022-37830 1 Webjet 1 Webjet Cms 2024-11-21 9.6 Critical
Interway a.s WebJET CMS 8.6.896 is vulnerable to Cross Site Scripting (XSS).
CVE-2022-37824 1 Tenda 2 Ax1803, Ax1803 Firmware 2024-11-21 7.8 High
Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow via the shareSpeed parameter in the function fromSetWifiGusetBasic.
CVE-2022-37823 1 Tenda 2 Ax1803, Ax1803 Firmware 2024-11-21 7.8 High
Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow via the list parameter in the function formSetVirtualSer.
CVE-2022-37822 1 Tenda 2 Ax1803, Ax1803 Firmware 2024-11-21 7.8 High
Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow via the function fromSetRouteStatic.
CVE-2022-37821 1 Tenda 2 Ax1803, Ax1803 Firmware 2024-11-21 7.8 High
Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow via the ProvinceCode parameter in the function formSetProvince.
CVE-2022-37820 1 Tenda 2 Ax1803, Ax1803 Firmware 2024-11-21 7.8 High
Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow via the ddnsEn parameter in the function formSetSysToolDDNS.
CVE-2022-37819 1 Tenda 2 Ax1803, Ax1803 Firmware 2024-11-21 7.8 High
Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow via the timezone parameter in the function fromSetSysTime.
CVE-2022-37818 1 Tenda 2 Ax1803, Ax1803 Firmware 2024-11-21 7.8 High
Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow via the list parameter at the function formSetQosBand.
CVE-2022-37817 1 Tenda 2 Ax1803, Ax1803 Firmware 2024-11-21 7.8 High
Tenda AX1803 v1.0.0.1 was discovered to contain a stack overflow via the function fromSetIpMacBind.
CVE-2022-37816 1 Tenda 2 Ac1206, Ac1206 Firmware 2024-11-21 9.8 Critical
Tenda AC1206 V15.03.06.23 was discovered to contain a stack overflow via the function fromSetIpMacBind.