Vulnerabilities (CVE)

Total 396949 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2024-30593 1 Tenda 2 Fh1202, Fh1202 Firmware 2026-06-17 N/A 9.8 CRITICAL
Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability located in the deviceName parameter of the formSetDeviceName function.
CVE-2024-30592 1 Tenda 2 Fh1202, Fh1202 Firmware 2026-06-17 N/A 8.0 HIGH
Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the page parameter of the fromAddressNat function.
CVE-2024-30591 1 Tenda 2 Fh1202, Fh1202 Firmware 2026-06-17 N/A 8.8 HIGH
Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the time parameter of the saveParentControlInfo function.
CVE-2024-30590 1 Tenda 2 Fh1202, Fh1202 Firmware 2026-06-17 N/A 6.5 MEDIUM
Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the schedEndTime parameter of the setSchedWifi function.
CVE-2024-30589 1 Tenda 2 Fh1202, Fh1202 Firmware 2026-06-17 N/A 9.8 CRITICAL
Tenda FH1202 v1.2.0.14(408) firmware has a stack overflow vulnerability in the entrys parameter of the fromAddressNat function.
CVE-2024-30588 1 Tenda 2 Fh1202, Fh1202 Firmware 2026-06-17 N/A 4.3 MEDIUM
Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the schedStartTime parameter of the setSchedWifi function.
CVE-2024-30587 1 Tenda 2 Fh1202, Fh1202 Firmware 2026-06-17 N/A 9.8 CRITICAL
Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the urls parameter of the saveParentControlInfo function.
CVE-2024-30586 1 Tenda 2 Fh1202, Fh1202 Firmware 2026-06-17 N/A 6.5 MEDIUM
Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the security_5g parameter of the formWifiBasicSet function.
CVE-2024-30585 1 Tenda 2 Fh1202, Fh1202 Firmware 2026-06-17 N/A 6.5 MEDIUM
Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the deviceId parameter of the saveParentControlInfo function.
CVE-2024-30584 1 Tenda 2 Fh1202, Fh1202 Firmware 2026-06-17 N/A 9.8 CRITICAL
Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the security parameter of the formWifiBasicSet function.
CVE-2024-30583 1 Tenda 2 Fh1202, Fh1202 Firmware 2026-06-17 N/A 8.0 HIGH
Tenda FH1202 v1.2.0.14(408) has a stack overflow vulnerability in the mitInterface parameter of the fromAddressNat function.
CVE-2024-30572 1 Netgear 2 R6850, R6850 Firmware 2026-06-17 N/A 8.0 HIGH
Netgear R6850 1.1.0.88 was discovered to contain a command injection vulnerability via the ntp_server parameter.
CVE-2024-30571 1 Netgear 2 R6850, R6850 Firmware 2026-06-17 N/A 7.5 HIGH
An information leak in the BRS_top.html component of Netgear R6850 v1.1.0.88 allows attackers to obtain sensitive information without any authentication required.
CVE-2024-30570 1 Netgear 2 R6850, R6850 Firmware 2026-06-17 N/A 5.3 MEDIUM
An information leak in debuginfo.htm of Netgear R6850 v1.1.0.88 allows attackers to obtain sensitive information without any authentication required.
CVE-2024-30569 1 Netgear 2 R6850, R6850 Firmware 2026-06-17 N/A 7.5 HIGH
An information leak in currentsetting.htm of Netgear R6850 v1.1.0.88 allows attackers to obtain sensitive information without any authentication required.
CVE-2024-30568 1 Netgear 2 R6850, R6850 Firmware 2026-06-17 N/A 9.8 CRITICAL
Netgear R6850 1.1.0.88 was discovered to contain a command injection vulnerability via the c4-IPAddr parameter.
CVE-2024-30567 2026-06-17 N/A 6.3 MEDIUM
An issue in JNT Telecom JNT Liftcom UMS V1.J Core Version JM-V15 allows a remote attacker to execute arbitrary code via the Network Troubleshooting functionality.
CVE-2024-30565 1 Seacms 1 Seacms 2026-06-17 N/A 8.8 HIGH
An issue was discovered in SeaCMS version 12.9, allows remote attackers to execute arbitrary code via admin notify.php.
CVE-2024-30564 2026-06-17 N/A 9.8 CRITICAL
An issue inandrei-tatar nora-firebase-common between v.1.0.41 and v.1.12.2 allows a remote attacker to execute arbitrary code via a crafted script to the updateState parameter of the updateStateInternal method.
CVE-2024-30561 2026-06-17 N/A 7.1 HIGH
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Scientech It Solution Appointment Calendar allows Reflected XSS.This issue affects Appointment Calendar: from n/a through 2.9.6.