NA - CVE-2025-22599 - WeGIA is a web manager for charitable...
WeGIA is a web manager for charitable institutions. A Reflected Cross-Site Scripting (XSS) vulnerability was identified in the home.php endpoint of the WeGIA application. This vulnerability allows...
NA - CVE-2025-22600 - WeGIA is a web manager for charitable...
WeGIA is a web manager for charitable institutions. A Reflected Cross-Site Scripting (XSS) vulnerability was identified in the configuracao_doacao.php endpoint of the WeGIA application. This...
NA - CVE-2024-54846 - An issue in CP Plus CP-VNR-3104 B3223P22C02424...
An issue in CP Plus CP-VNR-3104 B3223P22C02424 allows attackers to obtain the EC private key and access sensitive data or execute a man-in-the-middle attack.
NA - CVE-2024-54847 - An issue in CP Plus CP-VNR-3104 B3223P22C02424...
An issue in CP Plus CP-VNR-3104 B3223P22C02424 allows attackers to access the Diffie-Hellman (DH) parameters and access sensitive data or execute a man-in-the-middle attack.
NA - CVE-2024-54848 - Improper handling and storage of certificates...
Improper handling and storage of certificates in CP Plus CP-VNR-3104 B3223P22C02424 allow attackers to decrypt communications or execute a man-in-the-middle attacks.
NA - CVE-2024-54849 - An issue in CP Plus CP-VNR-3104 B3223P22C02424...
An issue in CP Plus CP-VNR-3104 B3223P22C02424 allows attackers to obtain the second RSA private key and access sensitive data or execute a man-in-the-middle attack.
NA - CVE-2024-57211 - TOTOLINK A6000R V1.0.1-B20201211.2000 was...
TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the modifyOne parameter in the enable_wsh function.
NA - CVE-2024-57212 - TOTOLINK A6000R V1.0.1-B20201211.2000 was...
TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the opmode parameter in the action_reboot function.
NA - CVE-2024-57213 - TOTOLINK A6000R V1.0.1-B20201211.2000 was...
TOTOLINK A6000R V1.0.1-B20201211.2000 was discovered to contain a command injection vulnerability via the newpasswd parameter in the action_passwd function.