CVE Feed

    Dashboard / CVE

    9.1
    Critical

    CVE-2022-46025

    Last Modified: 21 Nov 2024

    Totolink N200RE_V5 V9.3.5u.6255_B20211224 is vulnerable to Incorrect Access Control. The device allows remote attackers to obtain Wi-Fi system information, such as Wi-Fi SSID and Wi-Fi password, without logging into the management page.

    Published: 10 Jan 2024
    9.8
    Critical

    CVE-2023-51959

    Last Modified: 17 Apr 2025

    Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function formGetIptv.

    Published: 10 Jan 2024
    9.8
    Critical

    CVE-2023-51968

    Last Modified: 16 Jun 2025

    Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the function getIptvInfo.

    Published: 10 Jan 2024
    9.8
    Critical

    CVE-2023-31446

    Last Modified: 20 Jun 2025

    In Cassia Gateway firmware XC1000_2.1.1.2303082218 and XC2000_2.1.1.2303090947, the queueUrl parameter in /bypass/config is not sanitized. This leads to injecting Bash code and executing it with root privileges on device startup.

    Published: 10 Jan 2024
    9.8
    Critical

    CVE-2023-31488

    Last Modified: 21 Nov 2024

    Hyland Perceptive Filters releases before 2023-12-08 (e.g., 11.4.0.2647), as used in Cisco IronPort Email Security Appliance Software, Cisco Secure Email Gateway, and various non-Cisco products, allow attackers to trigger a segmentation fault and execute arbitrary code via a crafted document.

    Published: 10 Jan 2024
    7.5
    High

    CVE-2023-45139

    Last Modified: 3 Jun 2025

    fontTools is a library for manipulating fonts, written in Python. The subsetting module has a XML External Entity Injection (XXE) vulnerability which allows an attacker to resolve arbitrary entities when a candidate font (OT-SVG fonts), which contains a SVG table, is parsed. This allows attackers to include arbitrary files from the filesystem fontTools is running on or make web requests from the host system. This vulnerability has been patched in version 4.43.0.

    Published: 10 Jan 2024
    7.5
    High

    CVE-2023-48864

    Last Modified: 20 Jun 2025

    SEMCMS v4.8 was discovered to contain a SQL injection vulnerability via the languageID parameter in /web_inc.php.

    Published: 10 Jan 2024
    6.1
    Medium

    CVE-2023-49394

    Last Modified: 3 Jun 2025

    Zentao versions 4.1.3 and before has a URL redirect vulnerability, which prevents the system from functioning properly.

    Published: 10 Jan 2024
    8.8
    High

    CVE-2023-49471

    Last Modified: 3 Jun 2025

    Blind Server-Side Request Forgery (SSRF) vulnerability in karlomikus Bar Assistant before version 3.2.0 does not validate a parameter before making a request through Image::make(), which could allow authenticated remote attackers to execute arbitrary code.

    Published: 10 Jan 2024
    5.5
    Medium

    CVE-2023-50120

    Last Modified: 17 Jun 2025

    MP4Box GPAC version 2.3-DEV-rev636-gfbd7e13aa-master was discovered to contain an infinite loop in the function av1_uvlc at media_tools/av_parsers.c. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted MP4 file.

    Published: 10 Jan 2024
    7.2
    High

    CVE-2023-50916

    Last Modified: 3 Jun 2025

    Kyocera Device Manager before 3.1.1213.0 allows NTLM credential exposure during UNC path authentication via a crafted change from a local path to a UNC path. It allows administrators to configure the backup location of the database used by the application. Attempting to change this location to a UNC path via the GUI is rejected due to the use of a \ (backslash) character, which is supposed to be disallowed in a pathname. Intercepting and modifying this request via a proxy, or sending the request directly to the application endpoint, allows UNC paths to be set for the backup location. Once such a location is set, Kyocera Device Manager attempts to confirm access and will try to authenticate to the UNC path; depending on the configuration of the environment, this may authenticate to the UNC with Windows NTLM hashes. This could allow NTLM credential relaying or cracking attacks.

    Published: 10 Jan 2024
    9.8
    Critical

    CVE-2023-51123

    Last Modified: 20 Jun 2025

    An issue discovered in D-Link dir815 v.1.01SSb08.bin allows a remote attacker to execute arbitrary code via a crafted POST request to the service parameter in the soapcgi_main function of the cgibin binary component.

    Published: 10 Jan 2024
    5.4
    Medium

    CVE-2023-51252

    Last Modified: 20 Jun 2025

    PublicCMS 4.0 is vulnerable to Cross Site Scripting (XSS). Because files can be uploaded and online preview function is provided, pdf files and html files containing malicious code are uploaded, an XSS popup window is realized through online viewing.

    Published: 10 Jan 2024
    9.8
    Critical

    CVE-2023-51952

    Last Modified: 20 Jun 2025

    Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function formSetIptv.

    Published: 10 Jan 2024
    9.8
    Critical

    CVE-2023-51953

    Last Modified: 20 Jun 2025

    Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.stb.mode parameter in the function formSetIptv.

    Published: 10 Jan 2024
    9.8
    Critical

    CVE-2023-51954

    Last Modified: 3 Jun 2025

    Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.stb.port parameter in the function formSetIptv.

    Published: 10 Jan 2024
    9.8
    Critical

    CVE-2023-51955

    Last Modified: 6 Jun 2025

    Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the function formSetIptv.

    Published: 10 Jan 2024
    9.8
    Critical

    CVE-2023-51956

    Last Modified: 3 Jun 2025

    Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function formSetIptv

    Published: 10 Jan 2024
    9.8
    Critical

    CVE-2023-51957

    Last Modified: 21 Nov 2024

    Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.stb.mode parameter in the function formGetIptv.

    Published: 10 Jan 2024
    9.8
    Critical

    CVE-2023-51958

    Last Modified: 21 Nov 2024

    Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.stb.port parameter in the function formGetIptv.

    Published: 10 Jan 2024
    9.8
    Critical

    CVE-2023-51960

    Last Modified: 16 Jun 2025

    Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function formGetIptv.

    Published: 10 Jan 2024
    9.8
    Critical

    CVE-2023-51961

    Last Modified: 21 Nov 2024

    Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the function formGetIptv.

    Published: 10 Jan 2024
    9.8
    Critical

    CVE-2023-51962

    Last Modified: 17 Apr 2025

    Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.stb.mode parameter in the function setIptvInfo.

    Published: 10 Jan 2024
    9.8
    Critical

    CVE-2023-51963

    Last Modified: 20 Jun 2025

    Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function setIptvInfo.

    Published: 10 Jan 2024
    9.8
    Critical

    CVE-2023-51964

    Last Modified: 3 Jun 2025

    Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.stb.port parameter in the function setIptvInfo.

    Published: 10 Jan 2024
    9.8
    Critical

    CVE-2023-51965

    Last Modified: 20 Jun 2025

    Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function setIptvInfo.

    Published: 10 Jan 2024
    9.8
    Critical

    CVE-2023-51966

    Last Modified: 20 Jun 2025

    Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stballvlans parameter in the function setIptvInfo.

    Published: 10 Jan 2024
    9.8
    Critical

    CVE-2023-51969

    Last Modified: 20 Jun 2025

    Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.city.vlan parameter in the function getIptvInfo.

    Published: 10 Jan 2024
    9.8
    Critical

    CVE-2023-51970

    Last Modified: 20 Jun 2025

    Tenda AX1803 v1.0.0.1 contains a stack overflow via the iptv.stb.mode parameter in the function formSetIptv.

    Published: 10 Jan 2024
    9.8
    Critical

    CVE-2023-51971

    Last Modified: 3 Jun 2025

    Tenda AX1803 v1.0.0.1 contains a stack overflow via the adv.iptv.stbpvid parameter in the function getIptvInfo.

    Published: 10 Jan 2024
    9.8
    Critical

    CVE-2023-51972

    Last Modified: 21 Nov 2024

    Tenda AX1803 v1.0.0.1 was discovered to contain a command injection vulnerability via the function fromAdvSetLanIp.

    Published: 10 Jan 2024
    9.8
    Critical

    CVE-2023-51126

    Last Modified: 17 Oct 2025

    Command injection vulnerability in /usr/www/res.php in FLIR AX8 up to 1.46.16 allows attackers to run arbitrary commands via the value parameter. NOTE: The vendor has stated that with the introduction of firmware version 1.49.16 (Jan 2023) the FLIR AX8 should no longer be affected by the vulnerability reported. Latest firmware version (as of Oct 2025, was released Jun 2024) is 1.55.16.

    Published: 10 Jan 2024
    7.5
    High

    CVE-2023-51127

    Last Modified: 17 Oct 2025

    FLIR AX8 thermal sensor cameras up to and including 1.46.16 are vulnerable to Directory Traversal due to improper access restriction. This vulnerability allows an unauthenticated, remote attacker to obtain arbitrary sensitive file contents by uploading a specially crafted symbolic link file. NOTE: The vendor has stated that with the introduction of firmware version 1.49.16 (Jan 2023) the FLIR AX8 should no longer be affected by the vulnerability reported. Latest firmware version (as of Oct 2025, was released Jun 2024) is 1.55.16.

    Published: 10 Jan 2024
    6.4
    Medium

    CVE-2023-49295

    Last Modified: 17 Jun 2025

    quic-go is an implementation of the QUIC protocol (RFC 9000, RFC 9001, RFC 9002) in Go. An attacker can cause its peer to run out of memory sending a large number of PATH_CHALLENGE frames. The receiver is supposed to respond to each PATH_CHALLENGE frame with a PATH_RESPONSE frame. The attacker can prevent the receiver from sending out (the vast majority of) these PATH_RESPONSE frames by collapsing the peers congestion window (by selectively acknowledging received packets) and by manipulating the peer's RTT estimate. This vulnerability has been patched in versions 0.37.7, 0.38.2 and 0.39.4.

    Published: 10 Jan 2024
    5.5
    Medium

    CVE-2024-0364

    Last Modified: 3 Jun 2025

    A vulnerability, which was classified as critical, was found in PHPGurukul Hospital Management System 1.0. This affects an unknown part of the file admin/query-details.php. The manipulation of the argument adminremark leads to sql injection. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-250131.

    Published: 9 Jan 2024
    5.5
    Medium

    CVE-2024-0363

    Last Modified: 17 Apr 2025

    A vulnerability, which was classified as critical, has been found in PHPGurukul Hospital Management System 1.0. Affected by this issue is some unknown functionality of the file admin/patient-search.php. The manipulation of the argument searchdata leads to sql injection. The exploit has been disclosed to the public and may be used. VDB-250130 is the identifier assigned to this vulnerability.

    Published: 9 Jan 2024
    8.3
    High

    CVE-2023-37297

    Last Modified: 3 Jun 2025

    AMI’s SPx contains a vulnerability in the BMC where an Attacker may cause a heap memory corruption via an adjacent network. A successful exploitation of this vulnerability may lead to a loss of confidentiality, integrity, and/or availability.

    Published: 9 Jan 2024
    8.3
    High

    CVE-2023-37296

    Last Modified: 17 Jun 2025

    AMI’s SPx contains a vulnerability in the BMC where an Attacker may cause a stack memory corruption via an adjacent network. A successful exploitation of this vulnerability may lead to a loss of confidentiality, integrity, and/or availability.

    Published: 9 Jan 2024
    8.3
    High

    CVE-2023-37295

    Last Modified: 17 Jun 2025

    AMI’s SPx contains a vulnerability in the BMC where an Attacker may cause a heap memory corruption via an adjacent network. A successful exploitation of this vulnerability may lead to a loss of confidentiality, integrity, and/or availability.

    Published: 9 Jan 2024
    8.3
    High

    CVE-2023-37294

    Last Modified: 17 Jun 2025

    AMI’s SPx contains a vulnerability in the BMC where an Attacker may cause a heap memory corruption via an adjacent network. A successful exploitation of this vulnerability may lead to a loss of confidentiality, integrity, and/or availability.

    Published: 9 Jan 2024
    9.6
    Critical

    CVE-2023-37293

    Last Modified: 17 Jun 2025

    AMI’s SPx contains a vulnerability in the BMC where an Attacker may cause a stack-based buffer overflow via an adjacent network. A successful exploitation of this vulnerability may lead to a loss of confidentiality, integrity, and/or availability.

    Published: 9 Jan 2024
    7.8
    High

    CVE-2023-34333

    Last Modified: 17 Jun 2025

    AMI’s SPx contains a vulnerability in the BMC where an Attacker may cause an untrusted pointer to dereference via a local network. A successful exploitation of this vulnerability may lead to a loss of confidentiality, integrity, and/or availability.

    Published: 9 Jan 2024
    9.6
    Critical

    CVE-2023-3043

    Last Modified: 17 Jun 2025

    AMI’s SPx contains a vulnerability in the BMC where an Attacker may cause a stack-based buffer overflow via an adjacent network. A successful exploitation of this vulnerability may lead to a loss of confidentiality, integrity, and/or availability.

    Published: 9 Jan 2024
    7.8
    High

    CVE-2023-34332

    Last Modified: 17 Jun 2025

    AMI’s SPx contains a vulnerability in the BMC where an Attacker may cause an untrusted pointer to dereference by a local network. A successful exploitation of this vulnerability may lead to a loss of confidentiality, integrity, and/or availability.

    Published: 9 Jan 2024
    5.3
    Medium

    CVE-2023-5770

    Last Modified: 3 Jun 2025

    Proofpoint Enterprise Protection contains a vulnerability in the email delivery agent that allows an unauthenticated attacker to inject improperly encoded HTML into the email body of a message through the email subject. The vulnerability is caused by inappropriate encoding when rewriting the email before delivery.This issue affects Proofpoint Enterprise Protection: from 8.20.2 before patch 4809, from 8.20.0 before patch 4805, from 8.18.6 before patch 4804 and all other prior versions.

    Published: 9 Jan 2024
    5.5
    Medium

    CVE-2024-0362

    Last Modified: 9 May 2025

    A vulnerability classified as critical was found in PHPGurukul Hospital Management System 1.0. Affected by this vulnerability is an unknown functionality of the file admin/change-password.php. The manipulation of the argument cpass leads to sql injection. The exploit has been disclosed to the public and may be used. The identifier VDB-250129 was assigned to this vulnerability.

    Published: 9 Jan 2024
    5.5
    Medium

    CVE-2024-0361

    Last Modified: 17 Jun 2025

    A vulnerability classified as critical has been found in PHPGurukul Hospital Management System 1.0. Affected is an unknown function of the file admin/contact.php. The manipulation of the argument mobnum leads to sql injection. The exploit has been disclosed to the public and may be used. The identifier of this vulnerability is VDB-250128.

    Published: 9 Jan 2024
    5.5
    Medium

    CVE-2024-0360

    Last Modified: 21 Nov 2024

    A vulnerability was found in PHPGurukul Hospital Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file admin/edit-doctor-specialization.php. The manipulation of the argument doctorspecilization leads to sql injection. The exploit has been disclosed to the public and may be used. The associated identifier of this vulnerability is VDB-250127.

    Published: 9 Jan 2024
    7.3
    High

    CVE-2024-0359

    Last Modified: 17 Jun 2025

    A vulnerability was found in code-projects Simple Online Hotel Reservation System 1.0. It has been declared as critical. This vulnerability affects unknown code of the file login.php. The manipulation of the argument username/password leads to sql injection. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. VDB-250126 is the identifier assigned to this vulnerability.

    Published: 9 Jan 2024
    5.3
    Medium

    CVE-2024-0358

    Last Modified: 3 Jun 2025

    A vulnerability was found in DeShang DSO2O up to 4.1.0. It has been classified as critical. This affects an unknown part of the file /install/install.php. The manipulation leads to improper access controls. It is possible to initiate the attack remotely. The exploit has been disclosed to the public and may be used. The identifier VDB-250125 was assigned to this vulnerability.

    Published: 9 Jan 2024