Vulnerabilities (CVE)

Total 398677 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2025-44952 1 Open5gs 1 Open5gs 2026-06-17 N/A 7.8 HIGH
A missing length check in `ogs_pfcp_subnet_add` function from PFCP library, used by both smf and upf in open5gs 2.7.2 and earlier, allows a local attacker to cause a Buffer Overflow by changing the `session.dnn` field with a value with length greater than 101.
CVE-2025-44951 1 Open5gs 1 Open5gs 2026-06-17 N/A 7.1 HIGH
A missing length check in `ogs_pfcp_dev_add` function from PFCP library, used by both smf and upf in open5gs 2.7.2 and earlier, allows a local attacker to cause a Buffer Overflow by changing the `session.dev` field with a value with length greater than 32.
CVE-2025-44906 1 Jhead Project 1 Jhead 2026-06-17 N/A 7.8 HIGH
jhead v3.08 was discovered to contain a heap-use-after-free via the ProcessFile function at jhead.c.
CVE-2025-44905 1 Hdfgroup 1 Hdf5 2026-06-17 N/A 8.8 HIGH
hdf5 v1.14.6 was discovered to contain a heap buffer overflow via the H5Z__filter_scaleoffset function.
CVE-2025-44904 1 Hdfgroup 1 Hdf5 2026-06-17 N/A 8.8 HIGH
hdf5 v1.14.6 was discovered to contain a heap buffer overflow via the H5VM_memcpyvv function.
CVE-2025-44900 1 Tenda 2 Rx3, Rx3 Firmware 2026-06-17 N/A 6.5 MEDIUM
In Tenda RX3 V1.0br_V16.03.13.11 in the GetParentControlInfo function of the web url /goform/GetParentControlInfo, the manipulation of the parameter mac leads to stack overflow.
CVE-2025-44899 1 Tenda 2 Rx3, Rx3 Firmware 2026-06-17 N/A 9.8 CRITICAL
There is a stack overflow vulnerability in Tenda RX3 V1.0br_V16.03.13.11 In the fromSetWifiGusetBasic function of the web url /goform/ WifiGuestSet, the manipulation of the parameter shareSpeed leads to stack overflow.
CVE-2025-44898 1 Planet 2 Wgs-804hpt, Wgs-804hpt Firmware 2026-06-17 N/A 9.8 CRITICAL
FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the theauthName parameter in the web_aaa_loginAuthlistEdit function.
CVE-2025-44897 1 Planet 2 Wgs-804hpt, Wgs-804hpt Firmware 2026-06-17 N/A 9.8 CRITICAL
FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the bytftp_srvip parameter in the web_tool_upgradeManager_post function.
CVE-2025-44896 1 Planet 2 Wgs-804hpt, Wgs-804hpt Firmware 2026-06-17 N/A 9.8 CRITICAL
FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the bindEditMACName parameter in the web_acl_bindEdit_post function.
CVE-2025-44895 1 Planet 2 Wgs-804hpt, Wgs-804hpt Firmware 2026-06-17 N/A 6.5 MEDIUM
FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the ipv4Aclkey parameter in the web_acl_ipv4BasedAceAdd function.
CVE-2025-44894 1 Planet 2 Wgs-804hpt, Wgs-804hpt Firmware 2026-06-17 N/A 9.8 CRITICAL
FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the radDftParamKey parameter in the web_radiusSrv_dftParam_post function.
CVE-2025-44893 1 Planet 2 Wgs-804hpt, Wgs-804hpt Firmware 2026-06-17 N/A 9.8 CRITICAL
FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the ruleNamekey parameter in the web_acl_mgmt_Rules_Apply_post function.
CVE-2025-44892 1 Planet 2 Wgs-804hpt, Wgs-804hpt Firmware 2026-06-17 N/A 6.5 MEDIUM
FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the ownekey parameter in the web_rmon_alarm_post_rmon_alarm function.
CVE-2025-44891 1 Planet 2 Wgs-804hpt, Wgs-804hpt Firmware 2026-06-17 N/A 9.8 CRITICAL
FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the host_ip parameter in the web_snmp_v3host_add_post function.
CVE-2025-44890 1 Planet 2 Wgs-804hpt, Wgs-804hpt Firmware 2026-06-17 N/A 9.8 CRITICAL
FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the host_ip parameter in the web_snmp_notifyv3_add_post function.
CVE-2025-44888 1 Planet 2 Wgs-804hpt, Wgs-804hpt Firmware 2026-06-17 N/A 9.8 CRITICAL
FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the stp_conf_name parameter in the web_stp_globalSetting_post function.
CVE-2025-44887 1 Planet 2 Wgs-804hpt, Wgs-804hpt Firmware 2026-06-17 N/A 9.8 CRITICAL
FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the radIpkey parameter in the web_radiusSrv_post function.
CVE-2025-44886 1 Planet 2 Wgs-804hpt, Wgs-804hpt Firmware 2026-06-17 N/A 9.8 CRITICAL
FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the byruleEditName parameter in the web_acl_mgmt_Rules_Edit_postcontains function.
CVE-2025-44885 1 Planet 2 Wgs-804hpt, Wgs-804hpt Firmware 2026-06-17 N/A 9.8 CRITICAL
FW-WGS-804HPT v1.305b241111 was discovered to contain a stack overflow via the remote_ip parameter in the web_snmpv3_remote_engineId_add_post function.