Vulnerability index

Browse CVEs

88 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.8 CVE-2025-4043 An admin user can gain unauthorized write access to the /etc/rc.local file on the device, which is executed on a system boot. Ug65 868m Ea Firmware 60.0.0.46+ Fix from $1,6002025-05-07 HIGH 7.5 CVE-2024-36390 MileSight DeviceHub - CWE-20 Improper Input Validation may allow Denial of Service Devicehub Mitigation only Fix from $1,9502024-06-02 HIGH 7.4 CVE-2024-36391 MileSight DeviceHub - CWE-320: Key Management Errors may allow Authentication Bypass and Man-In-The-Middle Traffic Devicehub Mitigation only Fix from $1,9502024-06-02 MEDIUM 6.1 CVE-2024-36392 MileSight DeviceHub - CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Devicehub No fix yet Fix from $1,6002024-06-02 CRITICAL 9.8 CVE-2024-36388 MileSight DeviceHub - CWE-305 Missing Authentication for Critical Function Devicehub No fix yet Fix from $2,3002024-06-02 CRITICAL 9.8 CVE-2024-36389 MileSight DeviceHub - CWE-330 Use of Insufficiently Random Values may allow Authentication Bypass Devicehub Mitigation only Fix from $2,3002024-06-02 CRITICAL 9.8 CVE-2024-27776 MileSight DeviceHub - CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') may allow Unauthenticated RCE Devicehub Mitigation only Fix from $2,3002024-06-02 HIGH 8.8 CVE-2023-47166 A firmware update vulnerability exists in the luci2-io file-import functionality of Milesight UR32L v32.3.0.7-r2. A specially crafted network request… Ur32l Firmware Mitigation only Fix from $1,9502024-05-01 MEDIUM 6.1 CVE-2023-43260 Milesight UR5X, UR32L, UR32, UR35, UR41 before v35.3.0.7 was discovered to contain a cross-site scripting (XSS) vulnerability via the admin panel. Ur51 Firmware 35.3.0.7+ Fix from $1,6002023-10-05 HIGH 7.5 CVE-2023-43261EPSS 59% An information disclosure in Milesight UR5X, UR32L, UR32, UR35, UR41 before v35.3.0.7 allows attackers to access sensitive router components. Ur5x Firmware 35.3.0.7+ Fix from $1,9502023-10-04 HIGH 7.2 CVE-2023-25117 Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A s… Ur32l Firmware No fix yet Fix from $1,9502023-07-06 HIGH 7.2 CVE-2023-25118 Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A s… Ur32l Firmware No fix yet Fix from $1,9502023-07-06 HIGH 7.2 CVE-2023-25119 Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A s… Ur32l Firmware No fix yet Fix from $1,9502023-07-06 HIGH 7.2 CVE-2023-25120 Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A s… Ur32l Firmware No fix yet Fix from $1,9502023-07-06 HIGH 7.2 CVE-2023-25121 Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A s… Ur32l Firmware No fix yet Fix from $1,9502023-07-06 HIGH 7.2 CVE-2023-25122 Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A s… Ur32l Firmware No fix yet Fix from $1,9502023-07-06 HIGH 7.2 CVE-2023-25123 Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A s… Ur32l Firmware No fix yet Fix from $1,9502023-07-06 HIGH 7.2 CVE-2023-25124 Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A s… Ur32l Firmware No fix yet Fix from $1,9502023-07-06 HIGH 7.2 CVE-2023-25582 Two OS command injection vulnerabilities exist in the zebra vlan_name functionality of Milesight UR32L v32.3.0.5. A specially crafted network request… Ur32l Firmware No fix yet Fix from $1,9502023-07-06 HIGH 7.2 CVE-2023-25583 Two OS command injection vulnerabilities exist in the zebra vlan_name functionality of Milesight UR32L v32.3.0.5. A specially crafted network request… Ur32l Firmware No fix yet Fix from $1,9502023-07-06 HIGH 7.2 CVE-2023-25103 Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A s… Ur32l Firmware No fix yet Fix from $1,9502023-07-06 HIGH 7.2 CVE-2023-25104 Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A s… Ur32l Firmware No fix yet Fix from $1,9502023-07-06 HIGH 7.2 CVE-2023-25105 Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A s… Ur32l Firmware No fix yet Fix from $1,9502023-07-06 HIGH 7.2 CVE-2023-25106 Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A s… Ur32l Firmware No fix yet Fix from $1,9502023-07-06 HIGH 7.2 CVE-2023-25107 Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A s… Ur32l Firmware No fix yet Fix from $1,9502023-07-06 HIGH 7.2 CVE-2023-25108 Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A s… Ur32l Firmware No fix yet Fix from $1,9502023-07-06 HIGH 7.2 CVE-2023-25109 Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A s… Ur32l Firmware No fix yet Fix from $1,9502023-07-06 HIGH 7.2 CVE-2023-25110 Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A s… Ur32l Firmware No fix yet Fix from $1,9502023-07-06 HIGH 7.2 CVE-2023-25111 Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A s… Ur32l Firmware No fix yet Fix from $1,9502023-07-06 HIGH 7.2 CVE-2023-25112 Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A s… Ur32l Firmware No fix yet Fix from $1,9502023-07-06