NA - CVE-2023-41884 - ZoneMinder is a free, open source...
ZoneMinder is a free, open source Closed-circuit television software application. In WWW/AJAX/watch.php, Line: 51 takes a few parameter in sql query without sanitizing it which makes it vulnerable...
NA - CVE-2024-42741 - In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the...
In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability in setL2tpServerCfg. Authenicated Attackers can send malicious packet to...
NA - CVE-2024-42742 - In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the...
In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability in setUrlFilterRules. Authenicated Attackers can send malicious packet to...
NA - CVE-2024-42743 - In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the...
In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability in setSyslogCfg . Authenicated Attackers can send malicious packet to...
NA - CVE-2024-42744 - In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the...
In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability in setModifyVpnUser. Authenicated Attackers can send malicious packet to...
NA - CVE-2024-42745 - In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the...
In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability in setUPnPCfg. Authenicated Attackers can send malicious packet to execute...
NA - CVE-2024-42747 - In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the...
In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability in setWanIeCfg. Authenticated Attackers can send malicious packet to execute...
NA - CVE-2024-42748 - In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the...
In TOTOLINK X5000r v9.1.0cu.2350_b20230313, the file /cgi-bin/cstecgi.cgi contains an OS command injection vulnerability in setWiFiWpsCfg. Authenticated Attackers can send malicious packet to...
NA - CVE-2024-43227 - Improper Neutralization of Input During Web...
Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WPDeveloper BetterDocs allows Stored XSS.This issue affects BetterDocs: from...