CVE tracker
237 subscribers
3.17K links
News monitoring: @irnewsagency

Main channel: @orgsecuritygate

Site: SecurityGate.org
Download Telegram
CVE-2025-60548 - D-Link DIR600L Ax Buffer Overflow Vulnerability

CVE ID : CVE-2025-60548
Published : Oct. 24, 2025, 4:17 p.m. | 3 hours, 1 minute ago
Description : D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formLanSetupRouterSettings.
Severity: 9.8 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-60549 - D-Link DIR600L Ax Buffer Overflow Vulnerability

CVE ID : CVE-2025-60549
Published : Oct. 24, 2025, 4:18 p.m. | 3 hours ago
Description : D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formAutoDetecWAN_wizard4.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-60550 - D-Link DIR600L Ax Buffer Overflow Vulnerability

CVE ID : CVE-2025-60550
Published : Oct. 24, 2025, 4:18 p.m. | 3 hours ago
Description : D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formEasySetTimezone.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-60551 - D-Link DIR600L Ax Buffer Overflow

CVE ID : CVE-2025-60551
Published : Oct. 24, 2025, 4:19 p.m. | 2 hours, 59 minutes ago
Description : D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the next_page parameter in the function formDeviceReboot.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-60552 - D-Link DIR600L Ax Buffer Overflow

CVE ID : CVE-2025-60552
Published : Oct. 24, 2025, 4:19 p.m. | 2 hours, 59 minutes ago
Description : D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formTcpipSetup.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-60553 - D-Link DIR600L Ax Buffer Overflow

CVE ID : CVE-2025-60553
Published : Oct. 24, 2025, 4:20 p.m. | 2 hours, 58 minutes ago
Description : D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formSetWAN_Wizard52.
Severity: 9.8 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-60554 - D-Link DIR600L Ax Buffer Overflow Vulnerability

CVE ID : CVE-2025-60554
Published : Oct. 24, 2025, 4:20 p.m. | 2 hours, 58 minutes ago
Description : D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formSetEnableWizard.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-60555 - D-Link DIR600L Ax Buffer Overflow Vulnerability

CVE ID : CVE-2025-60555
Published : Oct. 24, 2025, 4:21 p.m. | 2 hours, 57 minutes ago
Description : D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formSetWizardSelectMode.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-60556 - D-Link DIR600L Ax Buffer Overflow Vulnerability

CVE ID : CVE-2025-60556
Published : Oct. 24, 2025, 4:21 p.m. | 2 hours, 57 minutes ago
Description : D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formSetWizard1.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-60557 - D-Link DIR600L Ax Buffer Overflow Vulnerability

CVE ID : CVE-2025-60557
Published : Oct. 24, 2025, 4:22 p.m. | 2 hours, 56 minutes ago
Description : D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formSetEasy_Wizard.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-60558 - D-Link DIR600L Ax Buffer Overflow Vulnerability

CVE ID : CVE-2025-60558
Published : Oct. 24, 2025, 4:22 p.m. | 2 hours, 56 minutes ago
Description : D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formVirtualServ.
Severity: 0.0 | NA
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-60559 - D-Link DIR600L Ax Buffer Overflow Vulnerability

CVE ID : CVE-2025-60559
Published : Oct. 24, 2025, 4:22 p.m. | 2 hours, 56 minutes ago
Description : D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formSetDomainFilter.
Severity: 7.5 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-60561 - D-Link DIR600L Ax Buffer Overflow in formSetEmail

CVE ID : CVE-2025-60561
Published : Oct. 24, 2025, 4:23 p.m. | 2 hours, 55 minutes ago
Description : D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formSetEmail.
Severity: 7.5 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-60562 - D-Link DIR600L Ax Buffer Overflow Vulnerability

CVE ID : CVE-2025-60562
Published : Oct. 24, 2025, 4:23 p.m. | 2 hours, 55 minutes ago
Description : D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formWlSiteSurvey.
Severity: 7.5 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-60563 - D-Link DIR600L Ax Buffer Overflow

CVE ID : CVE-2025-60563
Published : Oct. 24, 2025, 4:24 p.m. | 2 hours, 54 minutes ago
Description : D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formSetPortTr.
Severity: 7.5 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-60564 - D-Link DIR600L Ax Buffer Overflow

CVE ID : CVE-2025-60564
Published : Oct. 24, 2025, 4:24 p.m. | 2 hours, 54 minutes ago
Description : D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formSetLog.
Severity: 7.5 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-60565 - D-Link DIR600L Ax Buffer Overflow Vulnerability

CVE ID : CVE-2025-60565
Published : Oct. 24, 2025, 4:25 p.m. | 2 hours, 53 minutes ago
Description : D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formSchedule.
Severity: 7.5 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-60566 - D-Link DIR600L Ax Buffer Overflow Vulnerability

CVE ID : CVE-2025-60566
Published : Oct. 24, 2025, 4:25 p.m. | 2 hours, 53 minutes ago
Description : D-Link DIR600L Ax FW116WWb01 was discovered to contain a buffer overflow via the curTime parameter in the function formSetMACFilter.
Severity: 7.5 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-60801 - jshERP Unauthenticated Remote Code Execution Vulnerability

CVE ID : CVE-2025-60801
Published : Oct. 24, 2025, 4:26 p.m. | 2 hours, 52 minutes ago
Description : jshERP up to commit fbda24da was discovered to contain an unauthenticated remote code execution (RCE) vulnerability via the jsh_erp function.
Severity: 8.2 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-60803 - Antabot White-Jotter RCE

CVE ID : CVE-2025-60803
Published : Oct. 24, 2025, 4:26 p.m. | 2 hours, 52 minutes ago
Description : Antabot White-Jotter up to commit 9bcadc was discovered to contain an unauthenticated remote code execution (RCE) vulnerability via the component /api/aaa;/../register.
Severity: 9.8 | CRITICAL
Visit the link for more details, such as CVSS details, affected products, timeline, and more...
CVE-2025-62714 - Karmada Dashboard API Unauthorized Access Vulnerability

CVE ID : CVE-2025-62714
Published : Oct. 24, 2025, 4:28 p.m. | 2 hours, 50 minutes ago
Description : Karmada Dashboard is a general-purpose, web-based control panel for Karmada which is a multi-cluster management project. Prior to version 0.2.0, there is an authentication bypass vulnerability in the Karmada Dashboard API. The backend API endpoints (e.g., /api/v1/secret, /api/v1/service) did not enforce authentication, allowing unauthenticated users to access sensitive cluster information such as Secrets and Services directly. Although the web UI required a valid JWT for access, the API itself remained exposed to direct requests without any authentication checks. Any user or entity with network access to the Karmada Dashboard service could exploit this vulnerability to retrieve sensitive data.
Severity: 8.7 | HIGH
Visit the link for more details, such as CVSS details, affected products, timeline, and more...