|
2171
|
7.3 |
HIGH
Network
|
-
|
-
|
A security flaw has been discovered in A-G-U-P-T-A wireshark-mcp edaf604416fbc94a201b4043092d4a1b09a12275/400c3da70074f22f3cce7ccb65304cafc7089c89. This affects the function quick_capture of the file…
|
CWE-77 CWE-78
Command Injection OS Command
|
CVE-2026-7785
|
2026-05-5 09:16 |
2026-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2172
|
7.3 |
HIGH
Network
|
-
|
-
|
A vulnerability has been found in RTGS2017 NagaAgent up to 5.1.0. This issue affects some unknown processing of the file apiserver/routes/extensions.py of the component Skills Endpoint. Such manipula…
|
CWE-22
Path Traversal
|
CVE-2026-7784
|
2026-05-5 09:16 |
2026-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2173
|
6.3 |
MEDIUM
Network
|
-
|
-
|
A flaw has been found in CodeCanyon Perfex CRM up to 3.4.1. This vulnerability affects the function AbstractKanban::applySortQuery of the file application/services/AbstractKanban.php of the component…
|
CWE-74 CWE-89
Injection SQL Injection
|
CVE-2026-7783
|
2026-05-5 09:16 |
2026-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2174
|
8.8 |
HIGH
Network
|
dbitnet
|
dbit_n300_t1_pro_firmware
|
A Cross-Site Request Forgery (CSRF) vulnerability exists in the web management interface of the Dbit N300 T1 Pro wireless router V1.0.0. The router fails to implement proper CSRF protection mechanism…
|
CWE-352
Origin Validation Error
|
CVE-2026-36956
|
2026-05-5 09:09 |
2026-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2175
|
7.8 |
HIGH
Local
|
wireshark
|
wireshark
|
RDP protocol dissector crash in Wireshark 4.6.0 to 4.6.4 and 4.4.0 to 4.4.14 allows denial of service and possible code execution
|
CWE-122 CWE-787
Heap-based Buffer Overflow Out-of-bounds Write
|
CVE-2026-5405
|
2026-05-5 05:16 |
2026-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2176
|
- |
|
-
|
-
|
Rejected reason: DO NOT USE THIS CVE RECORD. ConsultIDs: CVE-2026-6074. Reason: This record is a reservation duplicate of CVE-2026-6074. Notes: All CVE users should reference CVE-2026-6074 instead of…
|
-
|
CVE-2026-34882
|
2026-05-5 05:16 |
2026-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2177
|
5.5 |
MEDIUM
Local
|
absolute
|
secure_access
|
CVE-2026-40951 is a memory corruption vulnerability on Secure Access
Windows clients prior to 14.50. Attackers with local control of the
Windows client can send malformed data to an API and trigger…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2026-40951
|
2026-05-5 03:54 |
2026-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2178
|
9.8 |
CRITICAL
Network
|
tenda
|
w308r_firmware
|
Tenda W308R v2 V5.07.48 contains a cookie session weakness vulnerability that allows unauthenticated attackers to modify DNS settings by exploiting insufficient session validation. Attackers can send…
|
CWE-290
Authentication Bypass by Spoofing
|
CVE-2018-25316
|
2026-05-5 03:42 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2179
|
9.8 |
CRITICAL
Network
|
tenda
|
fh303_firmware a300_firmware
|
Tenda FH303/A300 firmware V5.07.68_EN contains a session weakness vulnerability that allows unauthenticated attackers to modify DNS settings by exploiting insufficient cookie validation. Attackers ca…
|
CWE-290
Authentication Bypass by Spoofing
|
CVE-2018-25318
|
2026-05-5 03:40 |
2026-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
2180
|
5.0 |
MEDIUM
Network
|
cloudfoundry
|
cf-deployment routing_release
|
Route Services can be leveraged to send app traffic to network destinations outside of an app's configured egress rules. As a result, a malicious developer with access to Cloudfoundry could configure…
|
CWE-923
Improper Restriction of Communication Channel to Intended Endpoints
|
CVE-2026-22726
|
2026-05-5 03:30 |
2026-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|