Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
HIGH 7.2
CVE-2023-25088
Multiple buffer overflow vulnerabilities exist in the vtysh_ubus binary of Milesight UR32L v32.3.0.5 due to the use of an unsafe sprintf pattern. A s…
Ur32l Firmware
No fix yet
CRITICAL 9.8
CVE-2023-22844
An authentication bypass vulnerability exists in the requestHandlers.js verifyToken functionality of Milesight VPN v2.0.2. A specially-crafted networ…
Milesightvpn
No fix yet
CRITICAL 9.8
CVE-2023-23902
A buffer overflow vulnerability exists in the uhttpd login functionality of Milesight UR32L v32.3.0.5. A specially crafted network request can lead t…
Ur32l Firmware
No fix yet
HIGH 8.8
CVE-2023-22653EPSS 6%
An OS command injection vulnerability exists in the vtysh_ubus tcpdump_start_cb functionality of Milesight UR32L v32.3.0.5. A specially crafted HTTP …
Ur32l Firmware
No fix yet
HIGH 8.8
CVE-2023-24018
A stack-based buffer overflow vulnerability exists in the libzebra.so.0.0.0 security_decrypt_password functionality of Milesight UR32L v32.3.0.5. A s…
Ur32l Firmware
No fix yet
HIGH 8.1
CVE-2023-22371
An os command injection vulnerability exists in the liburvpn.so create_private_key functionality of Milesight VPN v2.0.2. A specially-crafted network…
Milesightvpn
No fix yet
HIGH 8.1
CVE-2023-23546
A misconfiguration vulnerability exists in the urvpn_client functionality of Milesight UR32L v32.3.0.5. A specially-crafted man-in-the-middle attack …
Ur32l Firmware
No fix yet
HIGH 8.1
CVE-2023-24019
A stack-based buffer overflow vulnerability exists in the urvpn_client http_connection_readcb functionality of Milesight UR32L v32.3.0.5. A specially…
Ur32l Firmware
No fix yet
HIGH 7.5
CVE-2023-23571
An access violation vulnerability exists in the eventcore functionality of Milesight UR32L v32.3.0.5. A specially crafted network request can lead to…
Ur32l Firmware
No fix yet
HIGH 7.5
CVE-2023-23907
A directory traversal vulnerability exists in the server.js start functionality of Milesight VPN v2.0.2. A specially-crafted network request can lead…
Milesightvpn
No fix yet
HIGH 7.2
CVE-2023-22659
An os command injection vulnerability exists in the libzebra.so change_hostname functionality of Milesight UR32L v32.3.0.5. A specially-crafted netwo…
Ur32l Firmware
No fix yet
HIGH 7.2
CVE-2023-23550
An OS command injection vulnerability exists in the ys_thirdparty user_delete functionality of Milesight UR32L v32.3.0.5. A specially crafted network…
Ur32l Firmware
No fix yet
MEDIUM 6.5
CVE-2023-23547
A directory traversal vulnerability exists in the luci2-io file-export mib functionality of Milesight UR32L v32.3.0.5. A specially crafted network re…
Ur32l Firmware
No fix yet
CRITICAL 9.8
CVE-2023-22319
A sql injection vulnerability exists in the requestHandlers.js LoginAuth functionality of Milesight VPN v2.0.2. A specially-crafted network request c…
Milesightvpn
No fix yet
HIGH 8.8
CVE-2023-22299
An OS command injection vulnerability exists in the vtysh_ubus _get_fw_logs functionality of Milesight UR32L v32.3.0.5. A specially crafted network r…
Ur32l Firmware
No fix yet
HIGH 7.2
CVE-2023-22306
An OS command injection vulnerability exists in the libzebra.so bridge_group functionality of Milesight UR32L v32.3.0.5. A specially crafted network …
Ur32l Firmware
No fix yet
HIGH 7.2
CVE-2023-22365
An OS command injection vulnerability exists in the ys_thirdparty check_system_user functionality of Milesight UR32L v32.3.0.5. A specially crafted s…
Ur32l Firmware
Mitigation only
CRITICAL 9.8
CVE-2023-32220
Milesight NCR/camera version 71.8.0.6-r5 allows authentication bypass through an unspecified method.
Ncr\/camera Firmware
No fix yet
HIGH 7.5
CVE-2023-24505
Milesight NCR/camera version 71.8.0.6-r5 discloses sensitive information through an unspecified request.
Ncr\/camera Firmware
No fix yet
HIGH 7.5
CVE-2023-24506
Milesight NCR/camera version 71.8.0.6-r5 exposes credentials through an unspecified request.
Ncr\/camera Firmware
Mitigation only
CRITICAL 9.8
CVE-2023-30467
This vulnerability exists in Milesight 4K/H.265 Series NVR models (MS-Nxxxx-xxG, MS-Nxxxx-xxE, MS-Nxxxx-xxT, MS-Nxxxx-xxH and MS-Nxxxx-xxC), due to i…
Ms N5008 Uc Firmware
71.9.0.18-r2 / 73.9.0.18-r2+
CRITICAL 9.8
CVE-2023-30466
This vulnerability exists in Milesight 4K/H.265 Series NVR models (MS-Nxxxx-xxG, MS-Nxxxx-xxE, MS-Nxxxx-xxT, MS-Nxxxx-xxH and MS-Nxxxx-xxC), due to a…
Ms N5008 Uc Firmware
71.9.0.18-r2 / 73.9.0.18-r2+
HIGH 7.5
CVE-2022-3001
This vulnerability exists in Milesight Video Management Systems (VMS), all firmware versions prior to 40.7.0.79-r1, due to improper input handling at…
Video Management Systems Firmware
40.7.0.79+
CRITICAL 9.8
CVE-2016-2356
Milesight IP security cameras through 2016-11-14 have a buffer overflow in a web application via a long username or password.
Ip Security Camera Firmware
after 2016-11-14
CRITICAL 9.8
CVE-2016-2357
Milesight IP security cameras through 2016-11-14 have a hardcoded SSL private key under the /etc/config directory.
Ip Security Camera Firmware
after 2016-11-14
CRITICAL 9.8
CVE-2016-2358
Milesight IP security cameras through 2016-11-14 have a default set of 10 privileged accounts with hardcoded credentials. They are accessible if the …
Ip Security Camera Firmware
after 2016-11-14
CRITICAL 9.8
CVE-2016-2359
Milesight IP security cameras through 2016-11-14 allow remote attackers to bypass authentication and access a protected resource by simultaneously ma…
Ip Security Camera Firmware
after 2016-11-14
CRITICAL 9.8
CVE-2016-2360
Milesight IP security cameras through 2016-11-14 have a default root password in /etc/shadow that is the same across different customers' installatio…
Ip Security Camera Firmware
after 2016-11-14