Vulnerability index

Browse CVEs

3,666 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Command InjectionCWE-77 × clear
Ca300 Poe Firmware CRITICAL 9.8
CVE-2025-6620

A vulnerability was found in TOTOLINK CA300-PoE 6.2c.884. It has been rated as critical. Affected by this issue is the function setUpgradeUboot of th…

Mitigation only
Fix from $2,300 2025-06-25
Ca300 Poe Firmware CRITICAL 9.8
CVE-2025-6621

A vulnerability classified as critical has been found in TOTOLINK CA300-PoE 6.2c.884. This affects the function QuickSetting of the file ap.so. The m…

Mitigation only
Fix from $2,300 2025-06-25
Ca300 Poe Firmware CRITICAL 9.8
CVE-2025-6618

A vulnerability was found in TOTOLINK CA300-PoE 6.2c.884. It has been classified as critical. Affected is the function SetWLanApcliSettings of the fi…

Mitigation only
Fix from $2,300 2025-06-25
Ca300 Poe Firmware CRITICAL 9.8
CVE-2025-6619

A vulnerability was found in TOTOLINK CA300-PoE 6.2c.884. It has been declared as critical. Affected by this vulnerability is the function setUpgrade…

Mitigation only
Fix from $2,300 2025-06-25
Registrator CRITICAL 9.8
CVE-2025-52483

Registrator is a GitHub app that automates creation of registration pull requests for julia packages to the General registry. Prior to version 1.9.5,…

Fix: 1.9.5+
Fix from $2,300 2025-06-25
A3002r Firmware MEDIUM 6.3
CVE-2025-6485EPSS 7%

A vulnerability was found in TOTOLINK A3002R 1.1.1-B20200824.0128. It has been classified as critical. This affects the function formWlSiteSurvey of …

No fix yet
Fix from $1,600 2025-06-22
Dedecms HIGH 7.2
CVE-2025-6335EPSS 7%

A vulnerability was found in DedeCMS up to 5.7.2 and classified as critical. This issue affects some unknown processing of the file /include/dedetag.…

Fix: 5.7.2+
Fix from $1,950 2025-06-20
Unclassified MEDIUM 6.7
CVE-2025-23170

The Versa Director SD-WAN orchestration platform includes functionality to initiate SSH sessions to remote CPEs and the Director shell via Shell-In-A…

Mitigation only
Fix from $1,600 2025-06-19
Unclassified HIGH 8.8
CVE-2025-6104

A vulnerability, which was classified as critical, was found in Wifi-soft UniBox Controller up to 20250506. This affects an unknown part of the file …

Mitigation only
Fix from $1,950 2025-06-16
Unclassified HIGH 8.8
CVE-2025-6102

A vulnerability classified as critical was found in Wifi-soft UniBox Controller up to 20250506. Affected by this vulnerability is an unknown function…

Mitigation only
Fix from $1,950 2025-06-16
Unclassified HIGH 8.8
CVE-2025-6103

A vulnerability, which was classified as critical, has been found in Wifi-soft UniBox Controller up to 20250506. Affected by this issue is some unkno…

Mitigation only
Fix from $1,950 2025-06-16
Bl Wr9000 Firmware CRITICAL 9.8
CVE-2025-45985EPSS 7%

Blink routers BL-WR9000 V2.4.9 , BL-AC2100_AZ3 V1.0.4, BL-X10_AC8 v1.0.5 , BL-LTE300 v1.2.3, BL-F1200_AT1 v1.0.0, BL-X26_AC8 v1.2.8, BLAC450M_AE4 v4.…

Mitigation only
Fix from $2,300 2025-06-13
Bl X10 Ac8 Firmware CRITICAL 9.8
CVE-2025-45986

Blink routers BL-WR9000 V2.4.9 , BL-AC2100_AZ3 V1.0.4, BL-X10_AC8 v1.0.5 , BL-LTE300 v1.2.3, BL-F1200_AT1 v1.0.0, BL-X26_AC8 v1.2.8, BLAC450M_AE4 v4.…

Mitigation only
Fix from $2,300 2025-06-13
Bl Wr9000 Firmware CRITICAL 9.8
CVE-2025-45987

Blink routers BL-WR9000 V2.4.9 , BL-AC2100_AZ3 V1.0.4, BL-X10_AC8 v1.0.5 , BL-LTE300 v1.2.3, BL-F1200_AT1 v1.0.0, BL-X26_AC8 v1.2.8, BLAC450M_AE4 v4.…

Mitigation only
Fix from $2,300 2025-06-13
Bl Wr9000 Firmware CRITICAL 9.8
CVE-2025-45988EPSS 11%

Blink routers BL-WR9000 V2.4.9 , BL-AC2100_AZ3 V1.0.4, BL-X10_AC8 v1.0.5 , BL-LTE300 v1.2.3, BL-F1200_AT1 v1.0.0, BL-X26_AC8 v1.2.8, BLAC450M_AE4 v4.…

Mitigation only
Fix from $2,300 2025-06-13
Bl Wr9000 Firmware CRITICAL 9.8
CVE-2025-45984

Blink routers BL-WR9000 V2.4.9, BL-AC1900 V1.0.2, BL-AC2100_AZ3 V1.0.4, BL-X10_AC8 V1.0.5, BL-LTE300 V1.2.3, BL-F1200_AT1 V1.0.0, BL-X26_AC8 V1.2.8, …

Mitigation only
Fix from $2,300 2025-06-13
Unclassified MEDIUM 6.7
CVE-2025-22237

An attacker with access to a minion key can exploit the 'on demand' pillar functionality with a specially crafted git url which could cause and arbit…

Mitigation only
Fix from $1,600 2025-06-13
Visual Studio 2022 HIGH 7.1
CVE-2025-47959EPSS 7%

Improper neutralization of special elements used in a command ('command injection') in Visual Studio allows an authorized attacker to execute code ov…

Fix: 17.8.22 / 17.10.16+
Fix from $1,950 2025-06-13
Pan Os HIGH 7.2
CVE-2025-4231

A command injection vulnerability in Palo Alto Networks PAN-OS® enables an authenticated administrative user to perform actions as the root user. Th…

Fix: 10.2.8 / 11.0.3+
Fix from $1,950 2025-06-13
Unclassified HIGH 7.0
CVE-2025-4653

Improper Neutralization of Special Elements in the backup name field may allow OS command injection. This issue affects Pandora ITSM 5.0.105.

Mitigation only
Fix from $1,950 2025-06-10
Unclassified HIGH 7.0
CVE-2025-4678

Improper Neutralization of Special Elements in the chromium_path variable may allow OS command injection. This issue affects Pandora ITSM 5.0.105.

Mitigation only
Fix from $1,950 2025-06-10
Unclassified HIGH 7.3
CVE-2025-5952

A vulnerability, which was classified as critical, has been found in Zend.To up to 6.10-6 Beta. This issue affects the function exec of the file NSSD…

Mitigation only
Fix from $1,950 2025-06-10
Ac9 Firmware MEDIUM 6.3
CVE-2025-5836

A vulnerability was found in Tenda AC9 15.03.02.13. It has been rated as critical. This issue affects the function formSetIptv of the file /goform/Se…

No fix yet
Fix from $1,600 2025-06-07
Qts HIGH 8.8
CVE-2025-22481

A command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow rem…

Mitigation only
Fix from $1,950 2025-06-06
Cp3 Firmware HIGH 8.8
CVE-2025-5763

A vulnerability has been found in Tenda CP3 11.10.00.2311090948 and classified as critical. Affected by this vulnerability is the function sub_F3C8C …

No fix yet
Fix from $1,950 2025-06-06
Dir 816 Firmware CRITICAL 9.8
CVE-2025-5620EPSS 7%

A vulnerability, which was classified as critical, was found in D-Link DIR-816 1.10CNB05. Affected is the function setipsec_config of the file /gofor…

Mitigation only
Fix from $2,300 2025-06-05
Dir 816 Firmware CRITICAL 9.8
CVE-2025-5621EPSS 7%

A vulnerability has been found in D-Link DIR-816 1.10CNB05 and classified as critical. Affected by this vulnerability is the function qosClassifier o…

No fix yet
Fix from $2,300 2025-06-05
Ac18 Firmware CRITICAL 9.8
CVE-2025-5606

A vulnerability was found in Tenda AC18 15.03.05.05. It has been declared as critical. This vulnerability affects the function formSetIptv of the fil…

Mitigation only
Fix from $2,300 2025-06-04
Finesse MEDIUM 6.7
CVE-2025-20278

A vulnerability in the CLI of multiple Cisco Unified Communications products could allow an authenticated, local attacker to execute arbitrary comman…

Fix: 12.6+
Fix from $1,600 2025-06-04
Dcs 932l Firmware HIGH 8.8
CVE-2025-5571EPSS 10%

A vulnerability was found in D-Link DCS-932L 2.18.01. It has been classified as critical. Affected is the function setSystemAdmin of the file /setSys…

No fix yet
Fix from $1,950 2025-06-04