Vulnerability index

Browse CVEs

4,222 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Classic Buffer OverflowCWE-120 × clear
512w Firmware HIGH 8.8
CVE-2025-15431

A flaw has been found in UTT 进取 512W 1.7.7-171114. This affects the function strcpy of the file /goform/formFtpServerDirConfig. Executing a manipul…

Fix: after 1.7.7-171114
Fix from $1,950 2026-01-02
512w Firmware HIGH 8.8
CVE-2025-15429

A security vulnerability has been detected in UTT 进取 512W 1.7.7-171114. Affected by this vulnerability is the function strcpy of the file /goform/f…

Fix: after 1.7.7-171114
Fix from $1,950 2026-01-02
512w Firmware HIGH 8.8
CVE-2025-15430

A vulnerability was detected in UTT 进取 512W 1.7.7-171114. Affected by this issue is the function strcpy of the file /goform/formFtpServerShareDirSe…

Fix: after 1.7.7-171114
Fix from $1,950 2026-01-02
512w Firmware HIGH 8.8
CVE-2025-15428

A weakness has been identified in UTT 进取 512W 1.7.7-171114. Affected is the function strcpy of the file /goform/formRemoteControl. This manipulatio…

Fix: after 1.7.7-171114
Fix from $1,950 2026-01-02
Ac20 Firmware HIGH 8.8
CVE-2025-15356

A vulnerability has been found in Tenda AC20 up to 16.03.08.12. The impacted element is the function sscanf of the file /goform/PowerSaveSet. The man…

Fix: after 16.03.08.12
Fix from $1,950 2025-12-30
Ac10u Firmware HIGH 8.8
CVE-2025-15218

A weakness has been identified in Tenda AC10U 15.03.06.48/15.03.06.49. Affected by this vulnerability is the function fromadvsetlanip of the file /go…

No fix yet
Fix from $1,950 2025-12-30
Ac23 Firmware HIGH 8.8
CVE-2025-15217

A security flaw has been discovered in Tenda AC23 16.03.07.52. Affected is the function formSetPPTPUserList of the component HTTP POST Request Handle…

No fix yet
Fix from $1,950 2025-12-30
Ac10u Firmware HIGH 8.8
CVE-2025-15215

A vulnerability was determined in Tenda AC10U 15.03.06.48/15.03.06.49. This affects the function formSetPPTPUserList of the file /goform/setPptpUserL…

No fix yet
Fix from $1,950 2025-12-30
Dwr M920 Firmware HIGH 8.8
CVE-2025-15193

A vulnerability was detected in D-Link DWR-M920 up to 1.1.50. This affects the function sub_423848 of the file /boafrm/formParentControl. Performing …

Fix: after 1.1.50
Fix from $1,950 2025-12-29
Dwr M920 Firmware HIGH 8.8
CVE-2025-15189

A vulnerability was identified in D-Link DWR-M920 up to 1.1.50. This issue affects the function sub_464794 of the file /boafrm/formDefRoute. The mani…

Fix: after 1.1.50
Fix from $1,950 2025-12-29
512w Firmware CRITICAL 9.8
CVE-2025-15092

A vulnerability was identified in UTT 进取 512W up to 1.7.7-171114. Impacted is the function strcpy of the file /goform/ConfigExceptMSN. Such manipul…

Fix: after 1.7.7-171114
Fix from $2,300 2025-12-26
512w Firmware CRITICAL 9.8
CVE-2025-15091

A vulnerability was determined in UTT 进取 512W up to 1.7.7-171114. This issue affects the function strcpy of the file /goform/formPictureUrl. This m…

Fix: after 1.7.7-171114
Fix from $2,300 2025-12-26
512w Firmware CRITICAL 9.8
CVE-2025-15089

A vulnerability has been found in UTT 进取 512W up to 1.7.7-171114. This affects the function strcpy of the file /goform/APSecurity. The manipulation…

Fix: after 1.7.7-171114
Fix from $2,300 2025-12-25
512w Firmware CRITICAL 9.8
CVE-2025-15090

A vulnerability was found in UTT 进取 512W up to 1.7.7-171114. This vulnerability affects the function strcpy of the file /goform/formConfigNoticeCon…

Fix: after 1.7.7-171114
Fix from $2,300 2025-12-25
Backup 11 MEDIUM 5.5
CVE-2022-50687

Cobian Backup 11 Gravity 11.2.0.582 contains a denial of service vulnerability in the FTP password input field that allows attackers to crash the app…

No fix yet
Fix from $1,600 2025-12-22
Reflector MEDIUM 5.5
CVE-2022-50689

Cobian Reflector 0.9.93 RC1 contains a denial of service vulnerability that allows attackers to crash the application by overflowing the password inp…

No fix yet
Fix from $1,600 2025-12-22
Tapo C200 Firmware MEDIUM 6.5
CVE-2025-8065

A stack-based buffer overflow vulnerability was identified in the ONVIF SOAP XML Parser in Tapo C200 v3 and C520WS v2.6. When processing XML tags wit…

Mitigation only
Fix from $1,600 2025-12-20
Igmpproxy HIGH 7.5
CVE-2025-50681

igmpproxy 0.4 before commit 2b30c36 allows remote attackers to cause a denial of service (application crash) via a crafted IGMPv3 membership report p…

Patch available
Fix from $1,950 2025-12-19
Qam8255p Firmware HIGH 8.4
CVE-2025-47372

Memory Corruption when a corrupted ELF image with an oversized file size is read into a buffer without authentication.

Mitigation only
Fix from $1,950 2025-12-18
Ar8031 Firmware HIGH 7.8
CVE-2025-47321

Memory corruption while copying packets received from unix clients.

No fix yet
Fix from $1,950 2025-12-18
Capstone CRITICAL 9.8
CVE-2025-68114

Capstone is a disassembly framework. In versions 6.0.0-Alpha5 and prior, an unchecked vsnprintf return in SStream_concat lets a malicious cs_opt_mem.…

Fix: 6.0.0+
Fix from $2,300 2025-12-17
Riot CRITICAL 9.8
CVE-2025-66647

RIOT is an open-source microcontroller operating system, designed to match the requirements of Internet of Things (IoT) devices and other embedded de…

Fix: 2025.10+
Fix from $2,300 2025-12-17
Ac10 Firmware CRITICAL 9.8
CVE-2025-67073

A Buffer overflow vulnerability in function fromAdvSetMacMtuWan of bin httpd in Tenda AC10V4.0 V16.03.10.20 allows remote attackers to cause denial o…

Mitigation only
Fix from $2,300 2025-12-17
Ac10 Firmware MEDIUM 6.5
CVE-2025-67074

A Buffer overflow vulnerability in function fromAdvSetMacMtuWan of bin httpd in Tenda AC10V4.0 V16.03.10.20 allows remote attackers to cause denial o…

No fix yet
Fix from $1,600 2025-12-17
Shotcut CRITICAL 9.8
CVE-2025-65834

Meltytech Shotcut 25.10.31 is vulnerable to Buffer Overflow. A memory access violation occurs when processing MLT project files with manipulated widt…

Mitigation only
Fix from $2,300 2025-12-16
D196g Firmware CRITICAL 9.8
CVE-2025-50401

Mercury D196G d196gv1-cn-up_2020-01-09_11.21.44 is vulnerable to Buffer Overflow in the function sub_404CAEDC via the parameter password.

Mitigation only
Fix from $2,300 2025-12-16
D196g Firmware CRITICAL 9.8
CVE-2025-50398

Mercury D196G d196gv1-cn-up_2020-01-09_11.21.44 is vulnerable to Buffer Overflow in the function sub_404CAEDC via the parameter fac_password.

Mitigation only
Fix from $2,300 2025-12-16
Shared Components HIGH 7.8
CVE-2025-10886

A maliciously crafted MODEL file, when parsed through certain Autodesk products, can force a Memory corruption vulnerability. A malicious actor can l…

Fix: 2026.5+
Fix from $1,950 2025-12-16
Shared Components HIGH 7.8
CVE-2025-10887

A maliciously crafted MODEL file, when parsed through certain Autodesk products, can force a Memory corruption vulnerability. A malicious actor can l…

Fix: 2026.5+
Fix from $1,950 2025-12-16
Shared Components HIGH 7.8
CVE-2025-10889

A maliciously crafted CATPART file, when parsed through certain Autodesk products, can force a Memory corruption vulnerability. A malicious actor can…

Fix: 2026.5+
Fix from $1,950 2025-12-16