All CVEs — page 157 of 242
The complete archive, 25 per page, newest first. 6034 records. Search instead.
The vulnerability in BioStar VALKYRIE 2.10.2411.0800 allows for a write-what-where condition via manipulation of the PhysicalAddress argument, which can be exploited locally. This flaw is significant as it can lead to remote code execution or other severe impacts.
The flaw allows local attackers to manipulate the AssociatedIrp argument, leading to a write-what-where condition, potentially enabling unauthorized code execution.
The vulnerability allows for a buffer overflow through the manipulation of the wan_num argument, leading to potential remote code execution or system compromise.
The flaw is a buffer overflow vulnerability in the Netcore NBR200V2 1.3.241127.071246 firmware, specifically in the wan_config_set_vlan function. This allows remote attackers to exploit the vulnerability by manipulating the vlan_wanX.ports argument, leading to potential system compromise.
A command injection vulnerability exists in the Netcore NBR200V2 1.3.241127.071246, allowing remote attackers to execute arbitrary commands via the QUERY_STRING argument in the file restore.cgi.
The vulnerability allows for command injection via the QUERY_STRING argument in the Firmware Upgrade CGI Endpoint, enabling remote execution of arbitrary commands.
A command injection vulnerability exists in the Netcore NBR200V2 1.3.241127.071246, allowing remote attackers to execute arbitrary commands via crafted arguments.
A command injection vulnerability exists in the Netcore NBR200V2 1.3.241127.071246, allowing remote attackers to execute arbitrary commands via the ipv4 argument in the network_tools file.
A command injection vulnerability exists in the Traceroute Diagnostic Feature of Netcore NBR200V2 1.3.241127.071246, allowing remote attackers to execute arbitrary commands via the manipulation of the 'url' argument.
This vulnerability allows for a stack-based buffer overflow through the manipulation of the id/password arguments in the /webfa_authentication.cgi file, leading to potential remote code execution.