Vulnerabilities
Vulnerable Software
Security Vulnerabilities - CVEs Published In 2022
Tenda F1203 V2.0.1.6 was discovered to contain a buffer overflow via the page parameter at /goform/VirtualSer.
CVSS Score
7.5
EPSS Score
0.001
Published
2022-12-20
Tenda F1203 V2.0.1.6 was discovered to contain a buffer overflow via the page parameter at /goform/DhcpListClient.
CVSS Score
7.5
EPSS Score
0.001
Published
2022-12-20
Tenda F1203 V2.0.1.6 was discovered to contain a buffer overflow via the deviceId parameter at /goform/saveParentControlInfo.
CVSS Score
7.5
EPSS Score
0.001
Published
2022-12-20
pfSense pfBlockerNG through 2.1.4_27 allows remote attackers to execute arbitrary OS commands as root via the HTTP Host header, a different vulnerability than CVE-2022-31814.
CVSS Score
9.8
EPSS Score
0.9
Published
2022-12-20
A vulnerability in the label-based access control of Grafana Labs Grafana Enterprise Metrics allows an attacker more access than intended. If an access policy which has label selector restrictions also has been granted access to all tenants in the system, the label selector restrictions will not be applied when using this policy with the affected versions of the software. This issue affects: Grafana Labs Grafana Enterprise Metrics GEM 1.X versions prior to 1.7.1 on AMD64; GEM 2.X versions prior to 2.3.1 on AMD64.
CVSS Score
5.7
EPSS Score
0.001
Published
2022-12-20
Tenda i22 V1.0.0.3(4687) was discovered to contain a buffer overflow via the funcpara1 parameter in the formSetCfm function.
CVSS Score
7.5
EPSS Score
0.001
Published
2022-12-20
Tenda i22 V1.0.0.3(4687) was discovered to contain a buffer overflow via the list parameter in the formwrlSSIDset function.
CVSS Score
7.5
EPSS Score
0.001
Published
2022-12-20
Tenda F1203 V2.0.1.6 was discovered to contain a buffer overflow via the mac parameter at /goform/GetParentControlInfo.
CVSS Score
7.5
EPSS Score
0.001
Published
2022-12-20
Tenda F1203 V2.0.1.6 was discovered to contain a buffer overflow via the deviceId parameter at /goform/addWifiMacFilter.
CVSS Score
7.5
EPSS Score
0.001
Published
2022-12-20
A Remote Code Execution (RCE) vulnerability was found in includes/baijiacms/common.inc.php in baijiacms v4.
CVSS Score
8.8
EPSS Score
0.272
Published
2022-12-20


Contact Us

Shodan ® - All rights reserved