Posts

Showing posts from March, 2026

CVE-2026-5240 - code-projects BloodBank Managing System admin_state.php cross site scripting

CVE ID : CVE-2026-5240 Published : April 1, 2026, 12:16 a.m. | 2 hours, 20 minutes ago Description : A security vulnerability has been detected in code-projects BloodBank Managing System 1.0. This affects an unknown part of the file /admin_state.php. The manipulation of the argument statename leads to cross site scripting. It is possible to initiate the attack remotely. The exploit has been disclosed publicly and may be used. Severity: 5.3 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/HUf1TtB via IFTTT

CVE-2026-30877 - baserCMS: OS Command Injection in the baserCMS Update Functionality

CVE ID : CVE-2026-30877 Published : March 31, 2026, 1:16 a.m. | 1 hour, 17 minutes ago Description : baserCMS is a website development framework. Prior to version 5.2.3, there is an OS command injection vulnerability in the update functionality. Due to this issue, an authenticated user with administrator privileges in baserCMS can execute arbitrary OS commands on the server with the privileges of the user account running baserCMS. This issue has been patched in version 5.2.3. Severity: 9.1 | CRITICAL Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/hwmvVTH via IFTTT

CVE-2026-34005 - Xiongmai DVR/NVR Command Injection Vulnerability

CVE ID : CVE-2026-34005 Published : March 29, 2026, 5:16 p.m. | 1 hour, 15 minutes ago Description : In Sofia on Xiongmai DVR/NVR (AHB7008T-MH-V2 and NBD7024H-P) 4.03.R11 devices, root OS command injection can occur via shell metacharacters in the HostName value via an authenticated DVRIP protocol (TCP port 34567) request to the NetWork.NetCommon configuration handler, because system() is used. Severity: 8.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/tqKlbvH via IFTTT

CVE-2025-15604 - Amon2 versions before 6.17 for Perl use an insecure random_string implementation for security functions

CVE ID : CVE-2025-15604 Published : March 28, 2026, 7:16 p.m. | 1 hour, 13 minutes ago Description : Amon2 versions before 6.17 for Perl use an insecure random_string implementation for security functions. In versions 6.06 through 6.16, the random_string function will attempt to read bytes from the /dev/urandom device, but if that is unavailable then it generates bytes by concatenating a SHA-1 hash seeded with the built-in rand() function, the PID, and the high resolution epoch time. The PID will come from a small set of numbers, and the epoch time may be guessed, if it is not leaked from the HTTP Date header. The built-in rand function is unsuitable for cryptographic usage. Before version 6.06, there was no fallback when /dev/urandom was not available. Before version 6.04, the random_string function used the built-in rand() function to generate a mixed-case alphanumeric string. This function may be used for generating session ids, generating secrets for signing or encrypti...

CVE-2026-5002 - PromtEngineer localGPT LLM Prompt server.py _route_using_overviews injection

CVE ID : CVE-2026-5002 Published : March 28, 2026, 5:16 p.m. | 1 hour, 13 minutes ago Description : A vulnerability has been found in PromtEngineer localGPT up to 4d41c7d1713b16b216d8e062e51a5dd88b20b054. The impacted element is the function _route_using_overviews of the file backend/server.py of the component LLM Prompt Handler. Such manipulation leads to injection. The attack may be performed from remote. The exploit has been disclosed to the public and may be used. This product utilizes a rolling release system for continuous delivery, and as such, version information for affected or updated releases is not disclosed. The vendor was contacted early about this disclosure but did not respond in any way. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/9WGkQeb via IFTTT

CVE-2026-28369 - Undertow: undertow: request smuggling via malformed http request headers

CVE ID : CVE-2026-28369 Published : March 27, 2026, 5:16 p.m. | 1 hour, 12 minutes ago Description : A flaw was found in Undertow. When Undertow receives an HTTP request where the first header line starts with one or more spaces, it incorrectly processes the request by stripping these leading spaces. This behavior, which violates HTTP standards, can be exploited by a remote attacker to perform request smuggling. Request smuggling allows an attacker to bypass security mechanisms, access restricted information, or manipulate web caches, potentially leading to unauthorized actions or data exposure. Severity: 8.7 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/uqrQFZO via IFTTT

CVE-2026-27828 - EVerest: ISO15118 session_setup use-after-free can crash EVSE process

CVE ID : CVE-2026-27828 Published : March 26, 2026, 5:16 p.m. | 25 minutes ago Description : EVerest is an EV charging software stack. Prior to version 2026.02.0, ISO15118_chargerImpl::handle_session_setup uses v2g_ctx after it has been freed when ISO15118 initialization fails (e.g., no IPv6 link-local address). The EVSE process can be crashed remotely by an attacker with MQTT access who issues a session_setup command while v2g_ctx has been released. Version 2026.02.0 contains a patch. Severity: 5.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/AlufWat via IFTTT

CVE-2026-32531 - WordPress Kunco theme < 1.4.5 - Local File Inclusion vulnerability

CVE ID : CVE-2026-32531 Published : March 25, 2026, 5:17 p.m. | 1 hour, 8 minutes ago Description : Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in gavias Kunco kunco allows PHP Local File Inclusion.This issue affects Kunco: from n/a through < 1.4.5. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/7H4W1fM via IFTTT

CVE-2026-29839 - DedeCMS CSRF

CVE ID : CVE-2026-29839 Published : March 24, 2026, 4:16 p.m. | 2 hours, 7 minutes ago Description : DedeCMS v5.7.118 was discovered to contain a Cross-Site Request Forgery (CSRF) vulnerability in /sys_task_add.php. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/xTDoIa8 via IFTTT

CVE-2026-4591 - kalcaddle kodbox fileThumb Endpoint app.php checkBin os command injection

CVE ID : CVE-2026-4591 Published : March 23, 2026, 3:15 p.m. | 1 hour, 7 minutes ago Description : A weakness has been identified in kalcaddle kodbox 1.64. This affects the function checkBin of the file /workspace/source-code/plugins/fileThumb/app.php of the component fileThumb Endpoint. Executing a manipulation can lead to os command injection. The attack can be executed remotely. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/AP0CkmQ via IFTTT

CVE-2026-33292 - AVideo has Authorization Bypass via Path Traversal in HLS Endpoint Allows Streaming Private/Paid Videos

CVE ID : CVE-2026-33292 Published : March 22, 2026, 5:17 p.m. | 1 hour, 3 minutes ago Description : WWBN AVideo is an open source video platform. Prior to version 26.0, the HLS streaming endpoint (`view/hls.php`) is vulnerable to a path traversal attack that allows an unauthenticated attacker to stream any private or paid video on the platform. The `videoDirectory` GET parameter is used in two divergent code paths — one for authorization (which truncates at the first `/` segment) and one for file access (which preserves `..` traversal sequences) — creating a split-oracle condition where authorization is checked against one video while content is served from another. Version 26.0 contains a fix for the issue. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/qmFfN2w via IFTTT

CVE-2026-4529 - D-Link DHP-1320 SOAP redirect_count_down_page stack-based overflow

CVE ID : CVE-2026-4529 Published : March 21, 2026, 11:16 p.m. | 1 hour, 3 minutes ago Description : A vulnerability was identified in D-Link DHP-1320 1.00WWB04. This affects the function redirect_count_down_page of the component SOAP Handler. Such manipulation leads to stack-based buffer overflow. The attack can be executed remotely. The exploit is publicly available and might be used. This vulnerability only affects products that are no longer supported by the maintainer. Severity: 9.0 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/EK7VnMm via IFTTT

CVE-2026-4528 - trueleaf ApiFlow URL Validation http_proxy.service.ts validateUrlSecurity server-side request forgery

CVE ID : CVE-2026-4528 Published : March 21, 2026, 10:02 p.m. | 17 minutes ago Description : A vulnerability was determined in trueleaf ApiFlow 0.9.7. The impacted element is the function validateUrlSecurity of the file packages/server/src/service/proxy/http_proxy.service.ts of the component URL Validation Handler. This manipulation causes server-side request forgery. Remote exploitation of the attack is possible. The exploit has been publicly disclosed and may be utilized. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/5LMySWm via IFTTT

CVE-2026-2756 - OmniPEMF NeoRhythm BLE missing authentication

CVE ID : CVE-2026-2756 Published : March 21, 2026, 5:32 p.m. | 47 minutes ago Description : A security vulnerability has been detected in OmniPEMF NeoRhythm up to 20260308. This affects an unknown function of the component BLE Interface. Such manipulation leads to missing authentication. The attack can only be initiated within the local network. This attack is characterized by high complexity. The exploitability is reported as difficult. The vendor was contacted early about this disclosure but did not respond in any way. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/8viT4U9 via IFTTT

CVE-2026-4492 - Tenda A18 Pro formSetQosBand set_qosMib_list stack-based overflow

CVE ID : CVE-2026-4492 Published : March 20, 2026, 5:02 p.m. | 1 hour, 15 minutes ago Description : A vulnerability was found in Tenda A18 Pro 02.03.02.28. The affected element is the function set_qosMib_list of the file /goform/formSetQosBand. Performing a manipulation of the argument list results in stack-based buffer overflow. The attack is possible to be carried out remotely. The exploit has been made public and could be used. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/2A3JwK6 via IFTTT

CVE-2026-30404 - wgcloud SSRF

CVE ID : CVE-2026-30404 Published : March 19, 2026, 4:16 p.m. | 1 hour, 23 minutes ago Description : The backend database management connection test feature in wgcloud v3.6.3 has a server-side request forgery (SSRF) vulnerability. This issue can be exploited to make the server send requests to probe the internal network, remotely download malicious files, and perform other dangerous operations. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/oZQjU2T via IFTTT

CVE-2025-55040 - MuraCMS CSRF Form Definition Upload Vulnerability

CVE ID : CVE-2025-55040 Published : March 18, 2026, 4:16 p.m. | 23 minutes ago Description : The import form CSRF vulnerability in MuraCMS through 10.1.10 allows attackers to upload and install malicious form definitions through a CSRF attack. The vulnerable cForm.importform function lacks CSRF token validation, enabling malicious websites to forge file upload requests that install attacker-controlled forms when an authenticated administrator visits a crafted webpage. Full exploitation of this vulnerability would require the victim to select a malicious ZIP file containing form definitions, which can be automatically generated by the exploit page and used to create data collection forms that steal sensitive information. Successful exploitation of the import form CSRF vulnerability could result in the installation of malicious data collection forms on the target MuraCMS website that can steal sensitive user information. When an authenticated administrator visits a malicious webpa...

CVE-2026-4319 - code-projects Simple Food Order System add-item.php sql injection

CVE ID : CVE-2026-4319 Published : March 17, 2026, 5:02 p.m. | 1 hour, 11 minutes ago Description : A vulnerability was identified in code-projects Simple Food Order System 1.0. Affected by this vulnerability is an unknown functionality of the file /routers/add-item.php. Such manipulation of the argument price leads to sql injection. The attack can be launched remotely. The exploit is publicly available and might be used. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/ML6rtnN via IFTTT

CVE-2025-53517 - Cisco None Vulnerability

CVE ID : CVE-2025-53517 Published : March 16, 2026, 5:16 p.m. | 1 hour, 22 minutes ago Description : Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: The CNA or individual who requested this candidate did not associate it with any vulnerability during 2025. Notes: none. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/axi8Xgf via IFTTT

CVE-2026-4181 - D-Link DIR-816 goahead form2RepeaterStep2.cgi stack-based overflow

CVE ID : CVE-2026-4181 Published : March 15, 2026, 4:02 p.m. | 2 hours, 8 minutes ago Description : A security flaw has been discovered in D-Link DIR-816 1.10CNB05. This affects an unknown function of the file /goform/form2RepeaterStep2.cgi of the component goahead. The manipulation of the argument key1/key2/key3/key4/pskValue results in stack-based buffer overflow. The attack may be launched remotely. The exploit has been released to the public and may be used for attacks. This vulnerability only affects products that are no longer supported by the maintainer. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/LI45AkJ via IFTTT

CVE-2026-4179 - stm32: usb: Infinite while loop in Interrupt Handler

CVE ID : CVE-2026-4179 Published : March 14, 2026, 9:51 p.m. | 2 hours, 15 minutes ago Description : Issues in stm32 USB device driver (drivers/usb/device/usb_dc_stm32.c) can lead to an infinite while loop. Severity: 6.1 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/fvZ3Isw via IFTTT

CVE-2026-0849 - crypto: ATAES132A response length allows stack buffer overflow

CVE ID : CVE-2026-0849 Published : March 14, 2026, 9:05 p.m. | 1 hour ago Description : Malformed ATAES132A responses with an oversized length field overflow a 52-byte stack buffer in the Zephyr crypto driver, allowing a compromised device or bus attacker to corrupt kernel memory and potentially hijack execution. Severity: 3.8 | LOW Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/OfFLq2X via IFTTT

CVE-2026-4092 - Google Apps Script Path Traversal Remote Code Execution Vulnerability

CVE ID : CVE-2026-4092 Published : March 13, 2026, 4:20 p.m. | 1 hour, 17 minutes ago Description : Path Traversal in Clasp impacting versions < 3.2.0 allows a remote attacker to perform remote code execution via a malicious Google Apps Script project containing specially crafted filenames with directory traversal sequences. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/pRK4CDA via IFTTT

CVE-2019-25534 - Netartmedia PHP Car Dealer SQL Injection via features parameter

CVE ID : CVE-2019-25534 Published : March 12, 2026, 4:16 p.m. | 1 hour, 21 minutes ago Description : Netartmedia PHP Car Dealer contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the features[] parameter. Attackers can submit POST requests to index.php with crafted SQL payloads in the features[] parameter to extract sensitive database information or manipulate database queries. Severity: 8.2 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/YCOQ8Ld via IFTTT

CVE-2019-25469 - Folder Lock 7.7.9 Denial of Service via Serial Number Field

CVE ID : CVE-2019-25469 Published : March 11, 2026, 7:16 p.m. | 21 minutes ago Description : Folder Lock 7.7.9 contains a buffer overflow vulnerability in the serial number registration field that allows local attackers to crash the application by submitting an oversized payload. Attackers can paste a 6000-byte buffer of arbitrary data into the 'Serial Number and Registration Key' field to trigger a denial of service condition. Severity: 6.9 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/os1pLWC via IFTTT

CVE-2025-70082 - Lantronix EDS3000PS Remote Code Execution and Information Disclosure Vulnerability

CVE ID : CVE-2025-70082 Published : March 11, 2026, 5:16 p.m. | 20 minutes ago Description : An issue in Lantronix EDS3000PS v.3.1.0.0R2 allows an attacker to execute arbitrary code and obtain sensitive information via the ltrx_evo component Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/idYoGVh via IFTTT

CVE-2026-30982 - iccDEV has a heap out-of-bounds read in CIccPcsXform::pushXYZConvert()

CVE ID : CVE-2026-30982 Published : March 10, 2026, 6:18 p.m. | 1 hour, 5 minutes ago Description : iccDEV provides a set of libraries and tools for working with ICC color management profiles. Prior to 2.3.1.5, there is a heap out-of-bounds read in CIccPcsXform::pushXYZConvert() causing crash and potentially leaking memory contents. This vulnerability is fixed in 2.3.1.5. Severity: 6.1 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/7CH3RMS via IFTTT

CVE-2024-14027 - xattr: switch to CLASS(fd)

CVE ID : CVE-2024-14027 Published : March 9, 2026, 4:16 p.m. | 1 hour, 2 minutes ago Description : In the Linux kernel, the following vulnerability has been resolved: fs/xattr: missing fdput() in fremovexattr error path In the Linux kernel, the fremovexattr() syscall calls fdget() to acquire a file reference but returns early without calling fdput() when strncpy_from_user() fails on the name argument. In multi-threaded processes where fdget() takes the slow path, this permanently leaks one file reference per call, pinning the struct file and associated kernel objects in memory. An unprivileged local user can exploit this to cause kernel memory exhaustion. The issue was inadvertently fixed by commit a71874379ec8 ("xattr: switch to CLASS(fd)"). Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/LwCPNjn via IFTTT

CVE-2026-3757 - projectworlds Online Art Gallery Shop pass sql injection

CVE ID : CVE-2026-3757 Published : March 8, 2026, 6:02 p.m. | 1 hour, 13 minutes ago Description : A security flaw has been discovered in projectworlds Online Art Gallery Shop 1.0. Affected by this vulnerability is an unknown functionality of the file /?pass=1. The manipulation of the argument fnm results in sql injection. The attack may be launched remotely. The exploit has been released to the public and may be used for attacks. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/GyXfzD1 via IFTTT

CVE-2026-29779 - UptimeFlare: Montior config / Credentials in `workerConfig` exposed in client-side JavaScript bundle

CVE ID : CVE-2026-29779 Published : March 7, 2026, 4:15 p.m. | 56 minutes ago Description : UptimeFlare is a serverless uptime monitoring & status page solution, powered by Cloudflare Workers. Prior to commit 377a596, configuration file uptime.config.ts exports both pageConfig (safe for client use) and workerConfig (server-only, contains sensitive data) from the same module. Due to pages/incidents.tsx importing and using workerConfig directly inside client-side component code, the entire workerConfig object was included in the client-side JavaScript bundle served to all visitors. This issue has been patched via commit 377a596. Severity: 7.5 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/p4KcVxa via IFTTT

CVE-2025-70363 - Ibexa Ciril GROUP eZ Platform Unauthenticated Data Access Vulnerability

CVE ID : CVE-2025-70363 Published : March 6, 2026, 5:16 p.m. | 1 hour, 36 minutes ago Description : Incorrect access control in the REST API of Ibexa & Ciril GROUP eZ Platform / Ciril Platform 2.x allows unauthenticated attackers to access sensitive data via enumerating object IDs. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/59GxSe6 via IFTTT

CVE-2025-64166 - Mercurius: Incorrect Content-Type parsing can lead to CSRF attack

CVE ID : CVE-2025-64166 Published : March 5, 2026, 4:16 p.m. | 1 hour, 38 minutes ago Description : Mercurius is a GraphQL adapter for Fastify. Prior to version 16.4.0, a cross-site request forgery (CSRF) vulnerability was identified. The issue arises from incorrect parsing of the Content-Type header in requests. Specifically, requests with Content-Type values such as application/x-www-form-urlencoded, multipart/form-data, or text/plain could be misinterpreted as application/json. This misinterpretation bypasses the preflight checks performed by the fetch() API, potentially allowing unauthorized actions to be performed on behalf of an authenticated user. This issue has been patched in version 16.4.0. Severity: 5.4 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/nOUgFiq via IFTTT

CVE-2026-28783 - Craft has a Twig Function Blocklist Bypass

CVE ID : CVE-2026-28783 Published : March 4, 2026, 5:16 p.m. | 33 minutes ago Description : Craft is a content management system (CMS). Prior to 5.9.0-beta.1 and 4.17.0-beta.1, Craft CMS implements a blocklist to prevent potentially dangerous PHP functions from being called via Twig non-Closure arrow functions. In order to be able to successfully execute this attack, you need to either have allowAdminChanges enabled on production, or a compromised admin account, or an account with access to the System Messages utility. Several PHP functions are not included in the blocklist, which could allow malicious actors with the required permissions to execute various types of payloads, including RCEs, arbitrary file reads, SSRFs, and SSTIs. This vulnerability is fixed in 5.9.0-beta.1 and 4.17.0-beta.1. Severity: 9.4 | CRITICAL Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/YAP9e5w via IFTTT...

CVE-2025-62814 - Samsung Exynos Denial of Service Vulnerability

CVE ID : CVE-2025-62814 Published : March 3, 2026, 4:16 p.m. | 1 hour, 28 minutes ago Description : An issue was discovered in Samsung Mobile Processor Exynos 1280, 2200, 1380, 1480, and 2400. A NULL pointer dereference of ft_handle in load_fw_utc_vector() causes a denial of service. Severity: 0.0 | NA Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/6KOmlCy via IFTTT

CVE-2025-47384 - Reachable Assertion in FW

CVE ID : CVE-2025-47384 Published : March 2, 2026, 5:16 p.m. | 31 minutes ago Description : Transient DOS when MAC configures config id greater than supported maximum value. Severity: 6.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/SfazwBD via IFTTT

CVE-2026-3400 - Tenda AC15 TextEditingConversion stack-based overflow

CVE ID : CVE-2026-3400 Published : March 2, 2026, 12:16 a.m. | 1 hour, 28 minutes ago Description : A security flaw has been discovered in Tenda AC15 up to 15.13.07.13. Affected by this issue is some unknown functionality of the file /goform/TextEditingConversion. The manipulation of the argument wpapsk_crypto2_4g results in stack-based buffer overflow. The attack may be launched remotely. The exploit has been released to the public and may be used for attacks. Severity: 9.0 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/CmhzV18 via IFTTT

CVE-2026-3398 - Tenda F453 httpd AdvSetWan fromAdvSetWan buffer overflow

CVE ID : CVE-2026-3398 Published : March 1, 2026, 10:16 p.m. | 1 hour, 28 minutes ago Description : A vulnerability was determined in Tenda F453 1.0.0.3. Affected is the function fromAdvSetWan of the file /goform/AdvSetWan of the component httpd. Executing a manipulation of the argument wanmode/PPPOEPassword can lead to buffer overflow. The attack can be launched remotely. The exploit has been publicly disclosed and may be utilized. Severity: 9.0 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more... from Latest Vulnerabilities https://ift.tt/lAreIt0 via IFTTT