Vulnerability index

Browse CVEs

3,666 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Command InjectionCWE-77 × clear
CRITICAL 9.8 CVE-2025-6620 A vulnerability was found in TOTOLINK CA300-PoE 6.2c.884. It has been rated as critical. Affected by this issue is the function setUpgradeUboot of th… Ca300 Poe Firmware Mitigation only Fix from $2,3002025-06-25 CRITICAL 9.8 CVE-2025-6621 A vulnerability classified as critical has been found in TOTOLINK CA300-PoE 6.2c.884. This affects the function QuickSetting of the file ap.so. The m… Ca300 Poe Firmware Mitigation only Fix from $2,3002025-06-25 CRITICAL 9.8 CVE-2025-6618 A vulnerability was found in TOTOLINK CA300-PoE 6.2c.884. It has been classified as critical. Affected is the function SetWLanApcliSettings of the fi… Ca300 Poe Firmware Mitigation only Fix from $2,3002025-06-25 CRITICAL 9.8 CVE-2025-6619 A vulnerability was found in TOTOLINK CA300-PoE 6.2c.884. It has been declared as critical. Affected by this vulnerability is the function setUpgrade… Ca300 Poe Firmware Mitigation only Fix from $2,3002025-06-25 CRITICAL 9.8 CVE-2025-52483 Registrator is a GitHub app that automates creation of registration pull requests for julia packages to the General registry. Prior to version 1.9.5,… Registrator 1.9.5+ Fix from $2,3002025-06-25 MEDIUM 6.3 CVE-2025-6485EPSS 7% A vulnerability was found in TOTOLINK A3002R 1.1.1-B20200824.0128. It has been classified as critical. This affects the function formWlSiteSurvey of … A3002r Firmware No fix yet Fix from $1,6002025-06-22 HIGH 7.2 CVE-2025-6335EPSS 7% A vulnerability was found in DedeCMS up to 5.7.2 and classified as critical. This issue affects some unknown processing of the file /include/dedetag.… Dedecms 5.7.2+ Fix from $1,9502025-06-20 MEDIUM 6.7 CVE-2025-23170 The Versa Director SD-WAN orchestration platform includes functionality to initiate SSH sessions to remote CPEs and the Director shell via Shell-In-A… Mitigation only Fix from $1,6002025-06-19 HIGH 8.8 CVE-2025-6104 A vulnerability, which was classified as critical, was found in Wifi-soft UniBox Controller up to 20250506. This affects an unknown part of the file … Mitigation only Fix from $1,9502025-06-16 HIGH 8.8 CVE-2025-6102 A vulnerability classified as critical was found in Wifi-soft UniBox Controller up to 20250506. Affected by this vulnerability is an unknown function… Mitigation only Fix from $1,9502025-06-16 HIGH 8.8 CVE-2025-6103 A vulnerability, which was classified as critical, has been found in Wifi-soft UniBox Controller up to 20250506. Affected by this issue is some unkno… Mitigation only Fix from $1,9502025-06-16 CRITICAL 9.8 CVE-2025-45985EPSS 7% Blink routers BL-WR9000 V2.4.9 , BL-AC2100_AZ3 V1.0.4, BL-X10_AC8 v1.0.5 , BL-LTE300 v1.2.3, BL-F1200_AT1 v1.0.0, BL-X26_AC8 v1.2.8, BLAC450M_AE4 v4.… Bl Wr9000 Firmware Mitigation only Fix from $2,3002025-06-13 CRITICAL 9.8 CVE-2025-45986 Blink routers BL-WR9000 V2.4.9 , BL-AC2100_AZ3 V1.0.4, BL-X10_AC8 v1.0.5 , BL-LTE300 v1.2.3, BL-F1200_AT1 v1.0.0, BL-X26_AC8 v1.2.8, BLAC450M_AE4 v4.… Bl X10 Ac8 Firmware Mitigation only Fix from $2,3002025-06-13 CRITICAL 9.8 CVE-2025-45987 Blink routers BL-WR9000 V2.4.9 , BL-AC2100_AZ3 V1.0.4, BL-X10_AC8 v1.0.5 , BL-LTE300 v1.2.3, BL-F1200_AT1 v1.0.0, BL-X26_AC8 v1.2.8, BLAC450M_AE4 v4.… Bl Wr9000 Firmware Mitigation only Fix from $2,3002025-06-13 CRITICAL 9.8 CVE-2025-45988EPSS 11% Blink routers BL-WR9000 V2.4.9 , BL-AC2100_AZ3 V1.0.4, BL-X10_AC8 v1.0.5 , BL-LTE300 v1.2.3, BL-F1200_AT1 v1.0.0, BL-X26_AC8 v1.2.8, BLAC450M_AE4 v4.… Bl Wr9000 Firmware Mitigation only Fix from $2,3002025-06-13 CRITICAL 9.8 CVE-2025-45984 Blink routers BL-WR9000 V2.4.9, BL-AC1900 V1.0.2, BL-AC2100_AZ3 V1.0.4, BL-X10_AC8 V1.0.5, BL-LTE300 V1.2.3, BL-F1200_AT1 V1.0.0, BL-X26_AC8 V1.2.8, … Bl Wr9000 Firmware Mitigation only Fix from $2,3002025-06-13 MEDIUM 6.7 CVE-2025-22237 An attacker with access to a minion key can exploit the 'on demand' pillar functionality with a specially crafted git url which could cause and arbit… Mitigation only Fix from $1,6002025-06-13 HIGH 7.1 CVE-2025-47959EPSS 7% Improper neutralization of special elements used in a command ('command injection') in Visual Studio allows an authorized attacker to execute code ov… Visual Studio 2022 17.8.22 / 17.10.16+ Fix from $1,9502025-06-13 HIGH 7.2 CVE-2025-4231 A command injection vulnerability in Palo Alto Networks PAN-OS® enables an authenticated administrative user to perform actions as the root user. Th… Pan Os 10.2.8 / 11.0.3+ Fix from $1,9502025-06-13 HIGH 7.0 CVE-2025-4653 Improper Neutralization of Special Elements in the backup name field may allow OS command injection. This issue affects Pandora ITSM 5.0.105. Mitigation only Fix from $1,9502025-06-10 HIGH 7.0 CVE-2025-4678 Improper Neutralization of Special Elements in the chromium_path variable may allow OS command injection. This issue affects Pandora ITSM 5.0.105. Mitigation only Fix from $1,9502025-06-10 HIGH 7.3 CVE-2025-5952 A vulnerability, which was classified as critical, has been found in Zend.To up to 6.10-6 Beta. This issue affects the function exec of the file NSSD… Mitigation only Fix from $1,9502025-06-10 MEDIUM 6.3 CVE-2025-5836 A vulnerability was found in Tenda AC9 15.03.02.13. It has been rated as critical. This issue affects the function formSetIptv of the file /goform/Se… Ac9 Firmware No fix yet Fix from $1,6002025-06-07 HIGH 8.8 CVE-2025-22481 A command injection vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow rem… Qts Mitigation only Fix from $1,9502025-06-06 HIGH 8.8 CVE-2025-5763 A vulnerability has been found in Tenda CP3 11.10.00.2311090948 and classified as critical. Affected by this vulnerability is the function sub_F3C8C … Cp3 Firmware No fix yet Fix from $1,9502025-06-06 CRITICAL 9.8 CVE-2025-5620EPSS 7% A vulnerability, which was classified as critical, was found in D-Link DIR-816 1.10CNB05. Affected is the function setipsec_config of the file /gofor… Dir 816 Firmware Mitigation only Fix from $2,3002025-06-05 CRITICAL 9.8 CVE-2025-5621EPSS 7% A vulnerability has been found in D-Link DIR-816 1.10CNB05 and classified as critical. Affected by this vulnerability is the function qosClassifier o… Dir 816 Firmware No fix yet Fix from $2,3002025-06-05 CRITICAL 9.8 CVE-2025-5606 A vulnerability was found in Tenda AC18 15.03.05.05. It has been declared as critical. This vulnerability affects the function formSetIptv of the fil… Ac18 Firmware Mitigation only Fix from $2,3002025-06-04 MEDIUM 6.7 CVE-2025-20278 A vulnerability in the CLI of multiple Cisco Unified Communications products could allow an authenticated, local attacker to execute arbitrary comman… Finesse 12.6+ Fix from $1,6002025-06-04 HIGH 8.8 CVE-2025-5571EPSS 10% A vulnerability was found in D-Link DCS-932L 2.18.01. It has been classified as critical. Affected is the function setSystemAdmin of the file /setSys… Dcs 932l Firmware No fix yet Fix from $1,9502025-06-04