⚠️ CVE-2025-12618: HIGH A vulnerability has been found in Tenda AC8 16.03.34.06. This impacts an unknown function of the file /goform/DatabaseIniSet. The manipulation of the argument Time leads to buffer overflow. The attack can be initiated remotely. The exploit has been disclosed to the public and may be used. Source : https://lnkd.in/eYHy73Rc #CVE202512618 #CVE #CyberSecurity #Vulnerability #CVEFind #CVEFindAlert
Tenda AC8 vulnerability CVE-2025-12618: buffer overflow
More Relevant Posts
-
⚠️ CVE-2023-7305: CRITICAL SmartBI versions 8, 9, and 10 had a critical file upload flaw allowing attackers to perform dangerous operations. The vendor issued a patch in July 2023. Notably, Rondo botnet has exploited this vulnerability, according to VulnCheck. Source : https://lnkd.in/efGFB52h #CVE20237305 #CVE #CyberSecurity #Vulnerability #CVEFind #CVEFindAlert
To view or add a comment, sign in
-
-
⚠️ CVE-2025-62712: CRITICAL JumpServer had a security vulnerability allowing an authenticated user to access connection tokens of other users. This flaw was fixed in versions v3.10.20-lts and v4.10.11-lts, preventing unauthorized access to sensitive systems. Source : https://lnkd.in/ekJr9s3m #CVE202562712 #CVE #CyberSecurity #Vulnerability #CVEFind #CVEFindAlert
To view or add a comment, sign in
-
-
⚠️ CVE-2025-21078: HIGH Use of insufficiently random value of secretKey in Smart Switch prior to version 3.7.68.6 allows adjacent attackers to access backup data from applications. Source : https://lnkd.in/eV6MFgUU #CVE202521078 #CVE #CyberSecurity #Vulnerability #CVEFind #CVEFindAlert
To view or add a comment, sign in
-
-
⚠️ CVE-2025-10352: CRITICAL Vulnerability in the melis-core module of Melis Technology's Melis Platform, which, if exploited, allows an unauthenticated attacker to create an administrator account via a request to '/melis/MelisCore/ToolUser/addNewUser'. Source : https://lnkd.in/eEQRWrEU #CVE202510352 #CVE #CyberSecurity #Vulnerability #CVEFind #CVEFindAlert
To view or add a comment, sign in
-
-
⚠️ CVE-2025-46784: CRITICAL Denial of service vulnerability found in Entr'ouvert Lasso 2.5.1 due to lasso_node_init_from_message_with_format flaw. Crafted SAML response causes memory depletion, leading to denial of service. Attackers can exploit by sending a malicious SAML response. Source : https://lnkd.in/epJRk7Ji #CVE202546784 #CVE #CyberSecurity #Vulnerability #CVEFind #CVEFindAlert
To view or add a comment, sign in
-
-
⚠️ CVE-2025-62353: CRITICAL A path traversal vulnerability in all versions of the Windsurf IDE enables a threat actor to read and write arbitrary local files in and outside of current projects on an end user’s system. The vulnerability can be reached directly and through indirect prompt injection. Source : https://lnkd.in/e3TKNTdC #CVE202562353 #CVE #CyberSecurity #Vulnerability #CVEFind #CVEFindAlert
To view or add a comment, sign in
-
-
⚠️ CVE-2025-11899: CRITICAL Agentflow by Flowring has a Critical Vulnerability - Use of Hard-coded Cryptographic Key. Attackers can exploit the fixed key to impersonate any user. To do this, the attacker needs to acquire a user ID first. Source : https://lnkd.in/ee_FbFcd #CVE202511899 #CVE #CyberSecurity #Vulnerability #CVEFind #CVEFindAlert
To view or add a comment, sign in
-
-
⚠️ CVE-2025-41699: HIGH An low privileged remote attacker with an account for the Web-based management can change the system configuration to perform a command injection as root, resulting in a total loss of confidentiality, availability and integrity due to improper control of generation of code ('Code Injection'). Source : https://lnkd.in/ejvkuNYm #CVE202541699 #CVE #CyberSecurity #Vulnerability #CVEFind #CVEFindAlert
To view or add a comment, sign in
-
-
🚨 New High Impact CVE Detected! 🚨 CVE-2025-61955 affects F5 / F5OS - Appliance Details: A vulnerability exists in F5OS-A and F5OS-C systems that may allow an authenticated attacker with local access to escalate their privileges. A successful exploit may allow the attacker to cross a sec... 🔗 https://lnkd.in/deYWu9px 🔍 Could this affect your systems? 🎯 We map threats to your infrastructure and help you respond smart and fast. 📩 Let's talk: https://openthreat.ro #CVE #CyberSecurity #SMBSecurity #VulnerabilityManagement #OpenThreatRO
To view or add a comment, sign in
-
⚠️ CVE-2025-41723: CRITICAL The importFile SOAP method is vulnerable to a directory traversal attack. An unauthenticated remote attacker bypass the path restriction and upload files to arbitrary locations. Source : https://lnkd.in/ecYqwKH9 #CVE202541723 #CVE #CyberSecurity #Vulnerability #CVEFind #CVEFindAlert
To view or add a comment, sign in
-
Explore content categories
- Career
- Productivity
- Finance
- Soft Skills & Emotional Intelligence
- Project Management
- Education
- Technology
- Leadership
- Ecommerce
- User Experience
- Recruitment & HR
- Customer Experience
- Real Estate
- Marketing
- Sales
- Retail & Merchandising
- Science
- Supply Chain Management
- Future Of Work
- Consulting
- Writing
- Economics
- Artificial Intelligence
- Employee Experience
- Workplace Trends
- Fundraising
- Networking
- Corporate Social Responsibility
- Negotiation
- Communication
- Engineering
- Hospitality & Tourism
- Business Strategy
- Change Management
- Organizational Culture
- Design
- Innovation
- Event Planning
- Training & Development