Vulnerability index

Browse CVEs

3,562 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Stack-based Buffer OverflowCWE-121 × clear
A7000r Firmware HIGH 7.5
CVE-2025-63461

Totolink A7000R v9.1.0u.6115_B20201022 was discovered to contain a stack overflow via the ssid5g parameter in the urldecode function. This vulnerabil…

No fix yet
Fix from $1,950 2025-10-31
A7000r Firmware HIGH 7.5
CVE-2025-63462

Totolink A7000R v9.1.0u.6115_B20201022 was discovered to contain a stack overflow via the wifiOff parameter in the sub_421A04 function. This vulnerab…

No fix yet
Fix from $1,950 2025-10-31
Lr350 Firmware HIGH 7.5
CVE-2025-63463

Totolink LR350 v9.3.5u.6369_B20220309 was discovered to contain a stack overflow via the wifiOff parameter in the sub_4232EC function. This vulnerabi…

No fix yet
Fix from $1,950 2025-10-31
Lr350 Firmware HIGH 7.5
CVE-2025-63464

Totolink LR350 v9.3.5u.6369_B20220309 was discovered to contain a stack overflow via the ssid parameter in the sub_42396C function. This vulnerabilit…

No fix yet
Fix from $1,950 2025-10-31
Lr350 Firmware HIGH 7.5
CVE-2025-63468

Totolink LR350 v9.3.5u.6369_B20220309 was discovered to contain a stack overflow via the http_host parameter in the sub_426EF8 function. This vulnera…

No fix yet
Fix from $1,950 2025-10-31
Lr350 Firmware HIGH 7.5
CVE-2025-63469

Totolink LR350 v9.3.5u.6369_B20220309 was discovered to contain a stack overflow via the ssid parameter in the sub_421BAC function. This vulnerabilit…

No fix yet
Fix from $1,950 2025-10-31
Lr350 Firmware HIGH 7.5
CVE-2025-63466

Totolink LR350 v9.3.5u.6369_B20220309 was discovered to contain a stack overflow via the password parameter in the sub_426EF8 function. This vulnerab…

No fix yet
Fix from $1,950 2025-10-31
Lr350 Firmware HIGH 7.5
CVE-2025-63467

Totolink LR350 v9.3.5u.6369_B20220309 was discovered to contain a stack overflow via the ssid parameter in the sub_425400 function. This vulnerabilit…

No fix yet
Fix from $1,950 2025-10-31
Ac8 Firmware HIGH 7.5
CVE-2025-61498

A buffer overflow in the UPnP service of Tenda AC8 Hardware v03.03.10.01 allows attackers to cause a Denial of Service (DoS) via supplying a crafted …

Mitigation only
Fix from $1,950 2025-10-30
Cryptolib HIGH 8.8
CVE-2025-64096

CryptoLib provides a software-only solution using the CCSDS Space Data Link Security Protocol - Extended Procedures (SDLS-EP) to secure communication…

Fix: 1.4.2+
Fix from $1,950 2025-10-30
Gimp HIGH 7.8
CVE-2025-10925

GIMP ILBM File Parsing Stack-based Buffer Overflow Remote Code Execution Vulnerability. This vulnerability allows remote attackers to execute arbitra…

Patch available
Fix from $1,950 2025-10-29
Unclassified CRITICAL 9.8
CVE-2024-45162

A stack-based buffer overflow issue was discovered in the phddns client in Blu-Castle BCUM221E 1.0.0P220507 via the password field.

Mitigation only
Fix from $2,300 2025-10-29
Codechecker HIGH 7.8
CVE-2025-40843

CodeChecker is an analyzer tooling, defect database and viewer extension for the Clang Static Analyzer and Clang Tidy. CodeChecker versions up t…

Fix: 6.26.2+
Fix from $1,950 2025-10-28
Unclassified CRITICAL 9.1
CVE-2025-61128

Stack-based buffer overflow vulnerability in WAVLINK QUANTUM D3G/WL-WN530HG3 firmware M30HG3_V240730, and possibly other wavlink models allows attack…

Mitigation only
Fix from $2,300 2025-10-28
A3300r Firmware HIGH 8.8
CVE-2025-12258

A vulnerability was detected in TOTOLINK A3300R 17.0.0cu.557_B20221024. Impacted is the function setOpModeCfg of the file /cgi-bin/cstecgi.cg of the …

No fix yet
Fix from $1,950 2025-10-27
A3300r Firmware HIGH 8.8
CVE-2025-12259

A flaw has been found in TOTOLINK A3300R 17.0.0cu.557_B20221024. The affected element is the function setScheduleCfg of the file /cgi-bin/cstecgi.cgi…

No fix yet
Fix from $1,950 2025-10-27
A3300r Firmware HIGH 8.8
CVE-2025-12260

A vulnerability has been found in TOTOLINK A3300R 17.0.0cu.557_B20221024. The impacted element is the function setSyslogCfg of the file /cgi-bin/cste…

No fix yet
Fix from $1,950 2025-10-27
A3300r Firmware HIGH 8.8
CVE-2025-12241

A vulnerability was detected in TOTOLINK A3300R 17.0.0cu.557_B20221024. This impacts the function setLanguageCfg of the file /cgi-bin/cstecgi.cgi of …

No fix yet
Fix from $1,950 2025-10-27
Ac6 Firmware HIGH 8.8
CVE-2025-12225

A vulnerability has been found in Tenda AC6 15.03.06.50. This issue affects some unknown processing of the file /goform/WifiGuestSet of the component…

No fix yet
Fix from $1,950 2025-10-27
O3 Firmware1.0.0.10\(2478\) HIGH 8.8
CVE-2025-12214

A vulnerability was detected in Tenda O3 1.0.0.10(2478). This issue affects the function SetValue/GetValue of the file /goform/sysAutoReboot. Perform…

No fix yet
Fix from $1,950 2025-10-27
O3 Firmware1.0.0.10\(2478\) HIGH 8.8
CVE-2025-12213

A security vulnerability has been detected in Tenda O3 1.0.0.10(2478). This vulnerability affects the function SetValue/GetValue of the file /goform/…

No fix yet
Fix from $1,950 2025-10-27
O3 Firmware1.0.0.10\(2478\) HIGH 8.8
CVE-2025-12212

A weakness has been identified in Tenda O3 1.0.0.10(2478). This affects the function SetValue/GetValue of the file /goform/setNetworkService. This ma…

No fix yet
Fix from $1,950 2025-10-27
O3 Firmware1.0.0.10\(2478\) CRITICAL 9.8
CVE-2025-12211

A security flaw has been discovered in Tenda O3 1.0.0.10(2478). Affected by this issue is the function SetValue/GetValue of the file /goform/setDmzIn…

Mitigation only
Fix from $2,300 2025-10-27
O3 Firmware1.0.0.10\(2478\) HIGH 8.8
CVE-2025-12209

A vulnerability was determined in Tenda O3 1.0.0.10(2478). Affected is the function SetValue/GetValue of the file /goform/setDhcpConfig. Executing a …

No fix yet
Fix from $1,950 2025-10-27
O3 Firmware1.0.0.10\(2478\) CRITICAL 9.8
CVE-2025-12210

A vulnerability was identified in Tenda O3 1.0.0.10(2478). Affected by this vulnerability is the function SetValue/GetValue of the file /goform/AdvSe…

Mitigation only
Fix from $2,300 2025-10-27
Dir 600l Firmware HIGH 7.5
CVE-2025-60566

D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formSetMACFilter.

No fix yet
Fix from $1,950 2025-10-24
Dir 600l Firmware HIGH 7.5
CVE-2025-60565

D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formSchedule.

Mitigation only
Fix from $1,950 2025-10-24
Dir 600l Firmware HIGH 7.5
CVE-2025-60564

D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formSetLog.

Mitigation only
Fix from $1,950 2025-10-24
Dir 600l Firmware HIGH 7.5
CVE-2025-60563

D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formSetPortTr.

Mitigation only
Fix from $1,950 2025-10-24
Dir 600l Firmware HIGH 7.5
CVE-2025-60562

D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formWlSiteSurvey.

Mitigation only
Fix from $1,950 2025-10-24