Export limit exceeded: 363372 CVEs match your query. Please refine your search to export 10,000 CVEs or fewer.

Search

Search Results (363372 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2024-30598 1 Tenda 2 Fh1203, Fh1203 Firmware 2025-03-13 6.5 Medium
Tenda FH1203 v2.0.1.6 firmware has a stack overflow vulnerability in the security_5g parameter of the formWifiBasicSet function.
CVE-2024-30599 1 Tenda 2 Fh1203, Fh1203 Firmware 2025-03-13 8.8 High
Tenda FH1203 v2.0.1.6 has a stack overflow vulnerability in the deviceMac parameter of the addWifiMacFilter function.
CVE-2024-30600 1 Tenda 2 Fh1203, Fh1203 Firmware 2025-03-13 8.0 High
Tenda FH1203 v2.0.1.6 has a stack overflow vulnerability in the schedEndTime parameter of the setSchedWifi function.
CVE-2024-30601 1 Tenda 2 Fh1203, Fh1203 Firmware 2025-03-13 8.0 High
Tenda FH1203 v2.0.1.6 has a stack overflow vulnerability in the time parameter of the saveParentControlInfo function.
CVE-2024-30603 1 Tenda 2 Fh1203, Fh1203 Firmware 2025-03-13 6.5 Medium
Tenda FH1203 v2.0.1.6 has a stack overflow vulnerability in the urls parameter of the saveParentControlInfo function.
CVE-2024-30604 1 Tenda 2 Fh1203, Fh1203 Firmware 2025-03-13 7.5 High
Tenda FH1203 v2.0.1.6 has a stack overflow vulnerability in the list1 parameter of the fromDhcpListClient function.
CVE-2024-28547 1 Tenda 2 Ac18, Ac18 Firmware 2025-03-13 6.5 Medium
Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the firewallEn parameter of formSetFirewallCfg function.
CVE-2024-28537 1 Tenda 2 Ac18, Ac18 Firmware 2025-03-13 9.8 Critical
Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the page parameter of fromNatStaticSetting function.
CVE-2024-28550 1 Tenda 2 Ac18, Ac18 Firmware 2025-03-13 4.3 Medium
Tenda AC18 V15.03.05.05 has a stack overflow vulnerability in the filePath parameter of formExpandDlnaFile function.
CVE-2024-28383 1 Tenda 2 Ax12, Ax12 Firmware 2025-03-13 9.8 Critical
Tenda AX12 v1.0 v22.03.01.16 was discovered to contain a stack overflow via the ssid parameter in the sub_431CF0 function.
CVE-2024-25746 1 Tenda 3 Ac9, Ac9 Firmware, Ac9v3.0 Firmware 2025-03-13 8.8 High
Stack Based Buffer Overflow vulnerability in Tenda AC9 v.3.0 with firmware version v.15.03.06.42_multi allows a remote attacker to execute arbitrary code via the add_white_node function.
CVE-2024-25748 1 Tenda 3 Ac9, Ac9 Firmware, Ac9v3.0 Firmware 2025-03-13 8.8 High
A Stack Based Buffer Overflow vulnerability in tenda AC9 AC9 v.3.0 with firmware version v.15.03.06.42_multi allows a remote attacker to execute arbitrary code via the fromSetIpMacBind function.
CVE-2024-25753 1 Tenda 2 Ac9, Ac9 Firmware 2025-03-13 8.8 High
Stack Based Buffer Overflow vulnerability in Tenda AC9 v.3.0 with firmware version v.15.03.06.42_multi allows a remote attacker to execute arbitrary code via the formSetDeviceName function.
CVE-2024-25756 1 Tenda 3 Ac9, Ac9 Firmware, Ac9v3.0 Firmware 2025-03-13 8 High
A Stack Based Buffer Overflow vulnerability in Tenda AC9 v.3.0 with firmware version v.15.03.06.42_multi allows a remote attacker to execute arbitrary code via the formWifiBasicSet function.
CVE-2024-25751 1 Tenda 2 Ac9, Ac9 Firmware 2025-03-13 9.8 Critical
A Stack Based Buffer Overflow vulnerability in Tenda AC9 v.3.0 with firmware version v.15.03.06.42_multi allows a remote attacker to execute arbitrary code via the fromSetSysTime function.
CVE-2023-42958 1 Apple 1 Macos 2025-03-13 7.8 High
A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Ventura 13.4. An app may be able to gain elevated privileges.
CVE-2024-46595 1 Draytek 2 Vigor3910, Vigor3910 Firmware 2025-03-13 7.5 High
Draytek Vigor 3910 v4.3.2.6 was discovered to contain a buffer overflow in the saveitem parameter at lan2lan.cgi. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted input.
CVE-2024-43084 1 Google 1 Android 2025-03-13 6.2 Medium
In visitUris of multiple files, there is a possible information disclosure due to a confused deputy. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.
CVE-2024-41890 1 Apache 1 Answer 2025-03-13 5.3 Medium
Missing Release of Resource after Effective Lifetime vulnerability in Apache Answer. This issue affects Apache Answer: through 1.3.5. User sends multiple password reset emails, each containing a valid link. Within the link's validity period, this could potentially lead to the link being misused or hijacked. Users are recommended to upgrade to version 1.3.6, which fixes the issue.
CVE-2024-41593 1 Draytek 48 Vigor1000b, Vigor1000b Firmware, Vigor165 and 45 more 2025-03-13 9.8 Critical
DrayTek Vigor310 devices through 4.3.2.6 allow a remote attacker to execute arbitrary code via the function ft_payload_dns(), because a byte sign-extension operation occurs for the length argument of a _memcpy call, leading to a heap-based Buffer Overflow.