NA - CVE-2025-25429 - Trendnet TEW-929DRU 1.0.0.10 contains a Stored...
Trendnet TEW-929DRU 1.0.0.10 contains a Stored Cross-site Scripting (XSS) vulnerability via the r_name variable inside the have_same_name function on the /addschedule.htm page.
NA - CVE-2025-25609 - TOTOlink A3002R V1.1.1-B20200824.0128 contains...
TOTOlink A3002R V1.1.1-B20200824.0128 contains a buffer overflow vulnerability. The vulnerability arises from the improper input validation of the static_ipv6 parameter in the formIpv6Setup...
NA - CVE-2025-25610 - TOTOlink A3002R V1.1.1-B20200824.0128 contains...
TOTOlink A3002R V1.1.1-B20200824.0128 contains a buffer overflow vulnerability. The vulnerability arises from the improper input validation of the static_gw parameter in the formIpv6Setup interface...
NA - CVE-2025-25635 - TOTOlink A3002R V1.1.1-B20200824.0128 contains...
TOTOlink A3002R V1.1.1-B20200824.0128 contains a buffer overflow vulnerability. The vulnerability arises from the improper input validation of the pppoe_dns1 parameter in the formIpv6Setup...
NA - CVE-2025-0769 - PixelYourSite - Your smart PIXEL (TAG) and API...
PixelYourSite - Your smart PIXEL (TAG) and API Manager 10.1.1.1 was found to be vulnerable. Unvalidated user input is used directly in an unserialize function in...
NA - CVE-2025-27410 - PwnDoc is a penetration test reporting...
PwnDoc is a penetration test reporting application. Prior to version 1.2.0, the backup restore functionality is vulnerable to path traversal in the TAR entry's name, allowing an attacker to...
NA - CVE-2025-27413 - PwnDoc is a penetration test reporting...
PwnDoc is a penetration test reporting application. Prior to version 1.2.0, the backup restore functionality allows an administrator to import raw data into the database, including Path Traversal...
NA - CVE-2025-27414 - MinIO is a high performance object storage....
MinIO is a high performance object storage. Starting in RELEASE.2024-06-06T09-36-42Z and prior to RELEASE.2025-02-28T09-55-16Z, a bug in evaluating the trust of the SSH key used in an SFTP...
NA - CVE-2024-1509 - Brocade ASCG before 3.2.0 Web Interface is not...
Brocade ASCG before 3.2.0 Web Interface is not enforcing HSTS, as defined by RFC 6797. HSTS is an optional response header that can be configured on the server to instruct the browser to only...