|
1601
|
7.3 |
HIGH
Network
|
-
|
-
|
A flaw has been found in AV Stumpfl Pixera Two Media Server up to 25.2 R2. Impacted is an unknown function of the component Websocket API. This manipulation causes code injection. The attack can be i…
Update
|
CWE-74 CWE-94
Injection Code Injection
|
CVE-2026-7703
|
2026-05-6 04:13 |
2026-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1602
|
4.3 |
MEDIUM
Adjacent
|
-
|
-
|
A vulnerability has been found in AV Stumpfl Pixera Two Media Server up to 25.1 R2. The affected element is an unknown function of the component Service Port 1338. Such manipulation leads to path tra…
Update
|
CWE-22
Path Traversal
|
CVE-2026-7704
|
2026-05-6 04:13 |
2026-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1603
|
4.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability has been found in Open5GS up to 2.7.7. This issue affects the function gmm_handle_service_request of the file /src/amf/gmm-handler.c of the component AMF. The manipulation leads to de…
Update
|
CWE-404
Improper Resource Shutdown or Release
|
CVE-2026-7706
|
2026-05-6 04:13 |
2026-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1604
|
4.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability was determined in Open5GS up to 2.7.7. The affected element is the function ogs_dbi_subscription_data in the library /lib/dbi/subscription.c of the component UDR. This manipulation of…
Update
|
CWE-404
Improper Resource Shutdown or Release
|
CVE-2026-7708
|
2026-05-6 04:13 |
2026-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1605
|
7.3 |
HIGH
Network
|
-
|
-
|
A weakness has been identified in MindsDB up to 26.01. This impacts the function exec of the file mindsdb/integrations/handlers/byom_handler/proc_wrapper.py of the component Engine Handler. Executing…
Update
|
CWE-284 CWE-434
Improper Access Control Unrestricted Upload of File with Dangerous Type
|
CVE-2026-7711
|
2026-05-6 04:13 |
2026-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1606
|
6.3 |
MEDIUM
Network
|
-
|
-
|
A security vulnerability has been detected in MindsDB up to 26.01. Affected is the function pickle.loads of the component Pickle Handler. The manipulation leads to deserialization. The attack is poss…
Update
|
CWE-20 CWE-502
Improper Input Validation Deserialization of Untrusted Data
|
CVE-2026-7712
|
2026-05-6 04:13 |
2026-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1607
|
7.3 |
HIGH
Network
|
-
|
-
|
A vulnerability has been found in Acrel Electrical EEMS Enterprise Power Operation and Maintenance Cloud Platform 1.3.0. This affects an unknown function of the file /SubstationWEBV2/main/elecMaxMinA…
Update
|
CWE-74 CWE-89
Injection SQL Injection
|
CVE-2026-7695
|
2026-05-6 04:11 |
2026-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1608
|
6.3 |
MEDIUM
Network
|
-
|
-
|
A vulnerability was found in Acrel Electrical EEMS Enterprise Power Operation and Maintenance Cloud Platform 1.3.0. This impacts an unknown function of the file /SubstationWEBV2/main/uploadH5Files. T…
Update
|
CWE-284 CWE-434
Improper Access Control Unrestricted Upload of File with Dangerous Type
|
CVE-2026-7696
|
2026-05-6 04:11 |
2026-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1609
|
4.7 |
MEDIUM
Network
|
-
|
-
|
A vulnerability was determined in AMTT Hotel Broadband Operation System 1.0. Affected is an unknown function of the file /manager/card/cardhand_submit.php. This manipulation of the argument ID causes…
Update
|
CWE-74 CWE-89
Injection SQL Injection
|
CVE-2026-7697
|
2026-05-6 04:11 |
2026-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1610
|
7.3 |
HIGH
Network
|
-
|
-
|
A vulnerability was identified in Tiandy Easy7 Integrated Management Platform 7.17.0. Affected by this vulnerability is an unknown functionality of the file /Easy7/rest/systemInfo/updateDbBackupInfo.…
Update
|
CWE-77 CWE-78
Command Injection OS Command
|
CVE-2026-7698
|
2026-05-6 04:11 |
2026-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|