Search Results (19553 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2022-37415 1 Uniwill 1 Sparkio.sys 2024-11-21 7.8 High
The Uniwill SparkIO.sys driver 1.0 is vulnerable to a stack-based buffer overflow via IOCTL 0x40002008.
CVE-2022-37398 1 Asustor 1 Adm 2024-11-21 7.1 High
A stack-based buffer overflow vulnerability was found inside ADM when using WebDAV due to the lack of data size validation. An attacker can exploit this vulnerability to run arbitrary code. Affected ADM versions include: 3.5.9.RUE3 and below, 4.0.5.RVI1 and below as well as 4.1.0.RJD1 and below.
CVE-2022-37331 1 Openbabel 1 Open Babel 2024-11-21 7.3 High
An out-of-bounds write vulnerability exists in the Gaussian format orientation functionality of Open Babel 3.1.1 and master commit 530dbfa3. A specially crafted malformed file can lead to arbitrary code execution. An attacker can provide a malicious file to trigger this vulnerability.
CVE-2022-37292 1 Tenda 2 Ax12, Ax12 Firmware 2024-11-21 5.5 Medium
Tenda AX12 V22.03.01.21_CN is vulnerable to Buffer Overflow. This overflow is triggered in the sub_42FDE4 function, which satisfies the request of the upper-level interface function sub_430124, that is, handles the post request under /goform/SetIpMacBind.
CVE-2022-37175 1 Tenda 2 Ac15, Ac15 Firmware 2024-11-21 9.8 Critical
Tenda ac15 firmware V15.03.05.18 httpd server has stack buffer overflow in /goform/formWifiBasicSet.
CVE-2022-37149 1 Wavlink 2 Wl-wn575a3, Wl-wn575a3 Firmware 2024-11-21 9.8 Critical
WAVLINK WL-WN575A3 RPT75A3.V4300.201217 was discovered to contain a command injection vulnerability when operating the file adm.cgi. This vulnerability allows attackers to execute arbitrary commands via the username parameter.
CVE-2022-37130 1 Dlink 2 Dir-816, Dir-816 Firmware 2024-11-21 9.8 Critical
In D-Link DIR-816 A2_v1.10CNB04, DIR-878 DIR_878_FW1.30B08.img a command injection vulnerability occurs in /goform/Diagnosis, after the condition is met, setnum will be spliced into v10 by snprintf, and the system will be executed, resulting in a command injection vulnerability
CVE-2022-37129 1 Dlink 2 Dir-816, Dir-816 Firmware 2024-11-21 8.8 High
D-Link DIR-816 A2_v1.10CNB04.img is vulnerable to Command Injection via /goform/SystemCommand. After the user passes in the command parameter, it will be spliced into byte_4836B0 by snprintf, and finally doSystem(&byte_4836B0); will be executed, resulting in a command injection.
CVE-2022-37123 1 Dlink 2 Dir-816, Dir-816 Firmware 2024-11-21 8.8 High
D-link DIR-816 A2_v1.10CNB04.img is vulnerable to Command injection via /goform/form2userconfig.cgi.
CVE-2022-37100 1 H3c 2 H200, H200 Firmware 2024-11-21 9.8 Critical
H3C H200 H200V100R004 was discovered to contain a stack overflow via the function UpdateMacClone.
CVE-2022-37099 1 H3c 2 H200, H200 Firmware 2024-11-21 9.8 Critical
H3C H200 H200V100R004 was discovered to contain a stack overflow via the function UpdateSnat.
CVE-2022-37098 1 H3c 2 H200, H200 Firmware 2024-11-21 9.8 Critical
H3C H200 H200V100R004 was discovered to contain a stack overflow via the function UpdateIpv6Params.
CVE-2022-37097 1 H3c 2 H200, H200 Firmware 2024-11-21 9.8 Critical
H3C H200 H200V100R004 was discovered to contain a stack overflow via the function SetAPInfoById.
CVE-2022-37096 1 H3c 2 H200, H200 Firmware 2024-11-21 9.8 Critical
H3C H200 H200V100R004 was discovered to contain a stack overflow via the function EnableIpv6.
CVE-2022-37095 1 H3c 2 H200, H200 Firmware 2024-11-21 9.8 Critical
H3C H200 H200V100R004 was discovered to contain a stack overflow via the function UpdateWanParams.
CVE-2022-37094 1 H3c 2 H200, H200 Firmware 2024-11-21 9.8 Critical
H3C H200 H200V100R004 was discovered to contain a stack overflow via the function Edit_BasicSSID_5G.
CVE-2022-37093 1 H3c 2 H200, H200 Firmware 2024-11-21 9.8 Critical
H3C H200 H200V100R004 was discovered to contain a stack overflow via the function AddMacList.
CVE-2022-37092 1 H3c 2 H200, H200 Firmware 2024-11-21 9.8 Critical
H3C H200 H200V100R004 was discovered to contain a stack overflow via the function SetAPWifiorLedInfoById.
CVE-2022-37091 1 H3c 2 H200, H200 Firmware 2024-11-21 9.8 Critical
H3C H200 H200V100R004 was discovered to contain a stack overflow via the function EditWlanMacList.
CVE-2022-37090 1 H3c 2 H200, H200 Firmware 2024-11-21 9.8 Critical
H3C H200 H200V100R004 was discovered to contain a stack overflow via the function Edit_BasicSSID.