Cybersecurity & Regolamentazione UE

News & Sicurezza

Aggiornamenti da ENISA, NVD e le principali fonti di cybersecurity europee. Tutto quello che un Responsabile Tecnico deve sapere.

38099 risultati

VulnerabilitàAlta
CVE-2018-25277 - PixGPS 1.1.8 Buffer Overflow Denial of Service

CVE ID :CVE-2018-25277 Published : April 26, 2026, 1:19 p.m. | 4 hours, 55 minutes ago Description :PixGPS 1.1.8 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an oversized string to the folder path input field. Attackers can craft a payload exceeding 6000 bytes and paste it into the 'Folder with picture files' field to trigger a denial of service condition. Severity: 6.2 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE26 apr 2026
VulnerabilitàAlta
CVE-2018-25276 - RoboImport 1.2.0.72 Denial of Service via Registration Fields

CVE ID :CVE-2018-25276 Published : April 26, 2026, 1:19 p.m. | 2 hours, 55 minutes ago Description :RoboImport 1.2.0.72 contains a denial of service vulnerability that allows local attackers to crash the application by submitting oversized input to registration fields. Attackers can paste a 6000-byte buffer into the Registration Name and Registration Key fields and click Register to trigger an application crash. Severity: 5.5 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE26 apr 2026
VulnerabilitàAlta
CVE-2018-25275 - Faleemi Plus 1.0.2 Denial of Service via Buffer Overflow

CVE ID :CVE-2018-25275 Published : April 26, 2026, 1:19 p.m. | 2 hours, 55 minutes ago Description :Faleemi Plus 1.0.2 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying oversized input strings. Attackers can paste a 2000-byte payload into the Camera name and DID number fields during camera addition to trigger an application crash. Severity: 6.2 | MEDIUM Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE26 apr 2026
VulnerabilitàAlta
CVE-2026-7039 (CVSS 7.8)

A security vulnerability has been detected in tufantunc ssh-mcp up to 1.5.0. The affected element is the function shell.write of the file src/index.ts. Such manipulation of the argument Description leads to command injection. The attack must be carried out locally. The exploit has been disclosed publicly and may be used. The project was informed of the problem early through an issue report but has not responded yet.

NVD (NIST)26 apr 2026
VulnerabilitàCritica
CVE-2026-7037 (CVSS 9.8)

A security flaw has been discovered in Totolink A8000RU 7.1cu.643_b20200521. This issue affects the function setVpnPassCfg of the file /cgi-bin/cstecgi.cgi of the component CGI Handler. The manipulation of the argument pptpPassThru results in os command injection. The attack can be executed remotely. The exploit has been released to the public and may be used for attacks.

NVD (NIST)26 apr 2026
VulnerabilitàAlta
CVE-2026-7036 (CVSS 7.3)

A vulnerability was identified in Tenda i9 1.0.0.5(2204). This vulnerability affects the function R7WebsSecurityHandlerfunction of the component HTTP Handler. The manipulation leads to path traversal. Remote exploitation of the attack is possible. The exploit is publicly available and might be used.

NVD (NIST)26 apr 2026
VulnerabilitàAlta
CVE-2026-7035 (CVSS 8.8)

A vulnerability was determined in Tenda FH1202 1.2.0.14. This affects the function fromWrlclientSet of the file /goform/WrlclientSet of the component httpd. Executing a manipulation of the argument Go can lead to stack-based buffer overflow. The attack may be launched remotely. The exploit has been publicly disclosed and may be utilized.

NVD (NIST)26 apr 2026
VulnerabilitàAlta
CVE-2026-7034 (CVSS 8.8)

A vulnerability was found in Tenda FH1202 1.2.0.14(408). Affected by this issue is the function WrlExtraSet of the file /goform/WrlExtraSet of the component httpd. Performing a manipulation of the argument Go results in stack-based buffer overflow. The attack may be initiated remotely. The exploit has been made public and could be used.

NVD (NIST)26 apr 2026
VulnerabilitàAlta
CVE-2026-7033 (CVSS 8.8)

A vulnerability has been found in Tenda F456 1.0.0.5. Affected by this vulnerability is the function fromSafeClientFilter of the file /goform/SafeClientFilter. Such manipulation of the argument menufacturer/Go leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used.

NVD (NIST)26 apr 2026
VulnerabilitàAlta
CVE-2026-7032 (CVSS 8.8)

A flaw has been found in Tenda F456 1.0.0.5. Affected is the function SafeEmailFilter of the file /goform/SafeEmailFilter. This manipulation of the argument page causes buffer overflow. The attack can be initiated remotely. The exploit has been published and may be used.

NVD (NIST)26 apr 2026
VulnerabilitàAlta
CVE-2026-7032 - Tenda F456 SafeEmailFilter buffer overflow

CVE ID :CVE-2026-7032 Published : April 26, 2026, 11:16 a.m. | 58 minutes ago Description :A flaw has been found in Tenda F456 1.0.0.5. Affected is the function SafeEmailFilter of the file /goform/SafeEmailFilter. This manipulation of the argument page causes buffer overflow. The attack can be initiated remotely. The exploit has been published and may be used. Severity: 9.0 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE26 apr 2026
VulnerabilitàAlta
CVE-2026-7033 - Tenda F456 SafeClientFilter fromSafeClientFilter buffer overflow

CVE ID :CVE-2026-7033 Published : April 26, 2026, 11:16 a.m. | 58 minutes ago Description :A vulnerability has been found in Tenda F456 1.0.0.5. Affected by this vulnerability is the function fromSafeClientFilter of the file /goform/SafeClientFilter. Such manipulation of the argument menufacturer/Go leads to buffer overflow. The attack can be launched remotely. The exploit has been disclosed to the public and may be used. Severity: 9.0 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVEfeed CVE26 apr 2026

Pagina 2076 di 3175

Resta aggiornato sulla cybersecurity

Iscriviti a CodersRegistry per ricevere gli aggiornamenti più importanti su regolamentazione EU e vulnerabilità critiche.