Lädt...


🕵️ CVE-2024-7715 | D-Link DNS-1550-04 up to 20240812 photocenter_mgr.cgi sprintf filter command injection (SAP10383)


Nachrichtenbereich: 🕵️ Sicherheitslücken
🔗 Quelle: vuldb.com

A vulnerability was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, DNS-326, DNS-327L, DNR-326, DNS-340L, DNS-343, DNS-345, DNS-726-4, DNS-1100-4, DNS-1200-05 and DNS-1550-04 up to 20240812. It has been classified as critical. This affects the function sprintf of the file /cgi-bin/photocenter_mgr.cgi. The manipulation of the argument filter leads to command injection. NOTE: This vulnerability only affects products that are no longer supported by the maintainer. This vulnerability is uniquely identified as CVE-2024-7715. It is possible to initiate the attack remotely. Furthermore, there is an exploit available. Vendor was contacted early and confirmed that the product is end-of-life. It should be retired and replaced. It is recommended to replace the affected component with an alternative. ...

🕵️ Vivotek FD8136 set_getparam.cgi sprintf/vlocal_buff_4326 memory corruption


📈 33.91 Punkte
🕵️ Sicherheitslücken

🕵️ Xymon up to 4.3.28 CGI Script csvinfo sprintf srcdb memory corruption


📈 33.91 Punkte
🕵️ Sicherheitslücken

🕵️ CVE-2022-2487 | WAVLINK WN535K2/WN535K3 /cgi-bin/nightled.cgi start_hour os command injection


📈 28.31 Punkte
🕵️ Sicherheitslücken

🕵️ CVE-2022-36553 | Hytec Inter HWL-2511-SS up to 1.05 /www/cgi-bin/popen.cgi command injection


📈 28.31 Punkte
🕵️ Sicherheitslücken

🕵️ CVE-2023-6612 | Totolink X5000R 9.1.0cu.2300_B20230112 /cgi-bin/cstecgi.cgi os command injection


📈 28.31 Punkte
🕵️ Sicherheitslücken

🕵️ CVE-2023-50651 | Totolink X6000R 9.4.0cu.852_B20230719 /cgi-bin/cstecgi.cgi os command injection


📈 28.31 Punkte
🕵️ Sicherheitslücken

🕵️ Barracuda Web Filter 5.0.0.012 Admin Interface /cgi-mod/index.cgi privilege escalation


📈 27.57 Punkte
🕵️ Sicherheitslücken

🕵️ Zivif PR115-204-P-RS 2.3.4.2103 cgi-bin/iptest.cgi url command injection


📈 27.17 Punkte
🕵️ Sicherheitslücken

🕵️ ThinStation up to 6.1.1 cgi-bin/CdControl.cgi action command injection


📈 27.17 Punkte
🕵️ Sicherheitslücken

🕵️ WAVLINK WN530H4 M30H4.V5030.190403 /cgi-bin/live_api.cgi command injection


📈 27.17 Punkte
🕵️ Sicherheitslücken

🕵️ CVE-2022-36587 | Tenda G3 15.11.0.6(7663)_EN_TDE httpd sprintf buffer overflow


📈 25.98 Punkte
🕵️ Sicherheitslücken

🕵️ CVE-2018-17878 | ABUS TVIP String sprintf buffer overflow


📈 25.98 Punkte
🕵️ Sicherheitslücken

🕵️ CVE-2019-5186 | WAGO PFC 200 iocheckd Service sprintf Crafted Packet buffer overflow


📈 25.98 Punkte
🕵️ Sicherheitslücken

🕵️ CVE-2019-5185 | WAGO PFC 200 iocheckd Service sprintf Crafted Packet buffer overflow


📈 25.98 Punkte
🕵️ Sicherheitslücken

🕵️ CVE-2007-4278 | ESRI ArcGIS 9.2 sprintf memory corruption (XFDB-36042 / BID-25334)


📈 25.98 Punkte
🕵️ Sicherheitslücken

📰 heise+ | DNS-Verschlüsselung: Raspi mit DNS-Filter für Fritzbox & Co.


📈 25.76 Punkte
📰 IT Nachrichten

🕵️ Ruby bis 2.2.7/2.3.4/2.4.1 format/sprintf Information Disclosure


📈 24.83 Punkte
🕵️ Sicherheitslücken

🕵️ Netgear WNDR3700v4 up to 1.0.1.42 (Rev. 4) sprintf memory corruption


📈 24.83 Punkte
🕵️ Sicherheitslücken

🕵️ OpenBSD Perl sprintf memory corruption


📈 24.83 Punkte
🕵️ Sicherheitslücken

🕵️ Veritas NetBackup 4.5.0/5.1/6.0 Catalog Daemon bpdbm.exe sprintf memory corruption


📈 24.83 Punkte
🕵️ Sicherheitslücken

🕵️ [8381] Remove risky and useless sprintf() calls


📈 24.83 Punkte
🕵️ Sicherheitslücken

🕵️ Ruby up to 2.2.7/2.3.4/2.4.1 format/sprintf information disclosure


📈 24.83 Punkte
🕵️ Sicherheitslücken

🕵️ mruby 1.4.1 CHECK Macro sprintf.c mrb_str_resize Negative Length memory corruption


📈 24.83 Punkte
🕵️ Sicherheitslücken

🕵️ GNU C Library up to 2.22 sysdeps/i386/ldbl2mpn.c sprintf stack-based overflow


📈 24.83 Punkte
🕵️ Sicherheitslücken

🕵️ GNU Samba up to 3.0.23d VFS Plugin afsacl.so sprintf infinite loop


📈 24.83 Punkte
🕵️ Sicherheitslücken

🎥 ALPACA, EA Breach, sprintf Lives, Go Fuzzing, K8s Goat, & OT Basics - ASW #154


📈 24.83 Punkte
🎥 IT Security Video

matomo